From b432695d2a653aaf5e1d1c2a492838bf3fbfeed0 Mon Sep 17 00:00:00 2001 From: Roland Haeder Date: Sat, 1 Nov 2014 11:46:41 +0100 Subject: [PATCH] Added 'safe_mode' (php.ini setting). MIME-Version: 1.0 Content-Type: text/plain; charset=utf8 Content-Transfer-Encoding: 8bit Signed-off-by: Roland Häder --- libs/lib_detector.php | 8 ++++---- 1 file changed, 4 insertions(+), 4 deletions(-) diff --git a/libs/lib_detector.php b/libs/lib_detector.php index 5c5a70b..7da613b 100644 --- a/libs/lib_detector.php +++ b/libs/lib_detector.php @@ -89,6 +89,9 @@ function initCrackerTrackerArrays () { 'bin/./tclsh', 'bin/nasm', 'bin/./nasm', '/perl', 'perl ', 'cmd.exe', 'nc.exe', 'ftp.exe', + // php.ini settings + 'allow_url_fopen', 'allow_url_include', 'auto_prepend_file', 'disable_functions', 'safe_mode', + // PHP commands/scripts 'fopen', 'fwrite', 'phpinfo()', '\', @@ -126,9 +129,6 @@ function initCrackerTrackerArrays () { // Attempts to insert links into a badly secured URL '%3E%3C', - // php.ini settings - 'allow_url_fopen', 'allow_url_include', 'auto_prepend_file', 'disable_functions', - // @TODO Misc/unsorted 'cgi-', '.eml', '$_request', '$_get', '$request', '$get', '.system', '&aim', 'new_password', '&icq', '.conf', 'motd ', 'HTTP/1.', @@ -136,7 +136,7 @@ function initCrackerTrackerArrays () { 'wwwacl', '.js', '.jsp', 'server-info', 'server-status', 'secure_site, ok', 'chunked', 'org.apache', '/servlet/con', '