444 lines
6.7 KiB
Plaintext
444 lines
6.7 KiB
Plaintext
# http://www.atomicorp.com/
|
|
# Atomicorp (Gotroot.com) ModSecurity rules
|
|
# Application Security Rules for modsec 2.x
|
|
#
|
|
# Created by Atomicorp (http://www.atomicorp.com)
|
|
# Copyright 2013-2021 by Atomic Corpate Industries Inc. , all rights reserved.
|
|
# Copyright 2005-2013 by Prometheus Global, all rights reserved.
|
|
# Redistribution is strictly prohibited in any form, including whole or in part.
|
|
#
|
|
# Distribution of this work or derivative of this work in any form is
|
|
# prohibited unless prior written permission is obtained from the
|
|
# copyright holder.
|
|
#
|
|
# THIS SOFTWARE IS PROVIDED BY THE COPYRIGHT HOLDERS AND CONTRIBUTORS AS IS
|
|
# AND ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE
|
|
# IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE
|
|
# ARE DISCLAIMED. IN NO EVENT SHALL THE COPYRIGHT OWNER OR CONTRIBUTORS BE
|
|
# LIABLE FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR
|
|
# CONSEQUENTIAL DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF
|
|
# SUBSTITUTE GOODS OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS
|
|
# INTERRUPTION) HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN
|
|
# CONTRACT, STRICT LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE)
|
|
# ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF
|
|
# THE POSSIBILITY OF SUCH DAMAGE.
|
|
#
|
|
#---ASL-CONFIG-FILE---
|
|
#
|
|
# Do not edit this file!
|
|
# This file is generated and changes will be overwritten.
|
|
#
|
|
# If you need to make changes to the rules, please follow the procedure here:
|
|
# http://www.atomicorp.com/wiki/index.php/Mod_security
|
|
0d4y.php
|
|
0day.gif
|
|
0day.jpg
|
|
0day.php
|
|
0wn3d.php
|
|
0wned.php
|
|
/11.php
|
|
/1ndex.php
|
|
/22419126.php
|
|
24l9khjt.php
|
|
/3xp.php
|
|
404.php.jpg
|
|
/70be.php
|
|
/70bex.php
|
|
/80cams.php
|
|
/90sec.php
|
|
ahihi.aspx
|
|
/allnet.jpg
|
|
allsoft.pl
|
|
/alwso.php
|
|
/anak.txt
|
|
antichat.php
|
|
antisecshell
|
|
antisux.php
|
|
/api/getn.php
|
|
appfileexplorer
|
|
/arab.indonesia.php
|
|
/asm/xyz/xyz/
|
|
autoshell.asp
|
|
autoshell.txt
|
|
/azenv.php
|
|
b374k-2.8.php
|
|
backdoor.php
|
|
/bad.php
|
|
/batuk.php
|
|
/bbb.php
|
|
bdotw44shell
|
|
/bhkt.php
|
|
/bkht.php
|
|
/blackmuscats
|
|
blackunix.php
|
|
/blekt.php
|
|
/borong.php
|
|
/botshell.jpg
|
|
/bshxgj.
|
|
/bt.php
|
|
/burung.php
|
|
/byroe.jpg
|
|
/byroe.php
|
|
c100.php
|
|
c100.txt
|
|
c99.php
|
|
c99.txt
|
|
cache/cachee.php
|
|
cache/css.php
|
|
cache.uniq_04793.php
|
|
/canz.php
|
|
ccccc.php
|
|
cfexec.cfm
|
|
.cgi?8
|
|
cgi-telnet
|
|
cgitelnet
|
|
/chinta.txt
|
|
cih.php
|
|
/cilik.php
|
|
cjpju91639.txt
|
|
/cliti.php
|
|
/clk.php?id=
|
|
cmd2.asp
|
|
cmd2.txt
|
|
cmd.asp
|
|
cmd-asp-5.1.asp
|
|
cmdasp.asp
|
|
cmd.dat
|
|
cmdjsp.jsp
|
|
/cmd.php
|
|
cmdshell
|
|
/cmdtvul.txt
|
|
cmdtvul.txt
|
|
/cmd.txt
|
|
/cocok.txt
|
|
/cok.php
|
|
colors/blue/engine_functions.php
|
|
command0.php
|
|
command0.txt
|
|
/command.php
|
|
/compiled/fwrite.php
|
|
conf_4cn.php
|
|
conf_7t9.php
|
|
/confgic.php
|
|
/confgi.php
|
|
Configss.php
|
|
/confi.php
|
|
conf_m46.php
|
|
content/engine/engine_config.php
|
|
coreunix.php
|
|
/count24.php
|
|
cpanel_cracker
|
|
/c.php
|
|
cr0t.php
|
|
crewid.txt
|
|
crypt/cipher/view.php
|
|
cse.dat
|
|
cse.php
|
|
custom-content-type-manager/auto-update.php
|
|
cx529.php
|
|
cx529.txt
|
|
/cxmqk.php
|
|
/cybercrime.php
|
|
cyberz
|
|
/daster.jpg
|
|
/ddos.txt
|
|
ddxdx.php
|
|
/diam.txt
|
|
diaosi.asp
|
|
/dm.php
|
|
/door.php
|
|
/dor/dor.php
|
|
/doyok.php
|
|
e7xue.php
|
|
efd7a0.php
|
|
elgass.cin
|
|
elrekt.php
|
|
engine/engine_restore.php
|
|
enigma2.php
|
|
equiangle.pl
|
|
/exposedbotnets.txt
|
|
/fdgq.php
|
|
fdgq.php
|
|
/firefoxz.php
|
|
/fonts_icon/15/icons.php
|
|
/fonts_icon/jg4/coder.php
|
|
fr33.php
|
|
fx29id
|
|
fx29sh
|
|
/ganteng.gif
|
|
.get.php
|
|
gh0st.php
|
|
google-assist.php
|
|
go.php.txt
|
|
gopni3g/story.php
|
|
haozk.asp
|
|
hardfind.php
|
|
hardfork.php
|
|
hijack.php
|
|
/hlep.php
|
|
horind.php
|
|
hospedagen.txt
|
|
/hphui.php
|
|
htacess.php
|
|
iblis.htm
|
|
/icons/brt/t.php
|
|
/icons/kntl/img.php
|
|
/ico/search.php
|
|
id1.txt
|
|
/id3.txt
|
|
/idl.txt
|
|
id-rfi.txt
|
|
/idscan
|
|
/id.txt
|
|
idx2.txt
|
|
/idx.txt
|
|
idxx.txt
|
|
/images/file.php5
|
|
imageshell.ph
|
|
images/Image/root
|
|
/images/stories/story.php
|
|
/inc/admin/cached.jpg
|
|
includes/cctm_communicator.php
|
|
/includes/joomla/database/database.php
|
|
includes/sysdata.php
|
|
indeeex.php
|
|
/indek.php
|
|
/indeks.php
|
|
/indice.pl
|
|
Indishell
|
|
indivision.pl
|
|
indoshell.php
|
|
/indx.php
|
|
/inedx.php
|
|
injectorthimthumb.php
|
|
injectortimthumb.php
|
|
/injektor.php
|
|
/injek.txt
|
|
_input_1_
|
|
_input_2_
|
|
_input_3_
|
|
_input__test
|
|
_input_test
|
|
jackrosejump_la
|
|
/jahat.php
|
|
/jgxfq.php
|
|
joomla_verkap.php
|
|
joomla_verzkd.php
|
|
js/bb.php
|
|
js/jquery.min.php
|
|
jsp-reverse.jsp
|
|
k4l0nk.php
|
|
kanjut.txt
|
|
khan.php
|
|
lala.php
|
|
/laravel.php
|
|
l_backuptoster
|
|
/lc_9.php
|
|
lib/fuck-the-usa.txt
|
|
/libraries/joomla/jmail.php
|
|
/libraries/lol.php
|
|
linuxdaybot
|
|
/lnnxy.php
|
|
/lobo-guara.txt
|
|
localroot.php
|
|
locus7shell
|
|
m3ksi.php
|
|
/mct.php
|
|
metri.php
|
|
mini-shell-backdoor
|
|
mistless.pl
|
|
/modar.php
|
|
morocanz.php
|
|
muakero.php
|
|
muieblackcat
|
|
/multiscan.txt
|
|
myluph.php
|
|
n3maplowercheck
|
|
naskleng.php
|
|
/neewsfeed.txt
|
|
/newinjector.txt
|
|
nigga.php
|
|
own3d.php
|
|
/owned.jpg
|
|
/owned.php
|
|
/ownz.txt
|
|
p0k3r
|
|
/parepare.txt
|
|
payment/datacash/fwrite.php
|
|
/payment/payment_authorizenet_aim_3_1.php
|
|
/payment_virtual_3D.php
|
|
/perasaan.php
|
|
perlcmd.cgi
|
|
peruzak.php
|
|
phpbb2_patch
|
|
phpbboops
|
|
phpbb_patch
|
|
/phpm3.txt
|
|
phpshell
|
|
/phpterm
|
|
/pithp.php
|
|
/plus/moon.php
|
|
/pmg.php
|
|
Portal0000.htm
|
|
pp104dd04a.php
|
|
/priv.php
|
|
/prolink.php
|
|
proxysx.gif
|
|
proxysx.php
|
|
proxysx.txt
|
|
pshyco
|
|
pwn3d.php
|
|
pwned.php
|
|
qiaogua.php
|
|
r00t.php
|
|
/r57.
|
|
r57-bd.txt
|
|
r57shell
|
|
rab3oun
|
|
racrew.php
|
|
/rebots.php
|
|
/.reg.php
|
|
/rel.php?id=
|
|
/reno.php
|
|
rms-script-ini
|
|
rms-script-mu
|
|
rms_unique_wp
|
|
/robots.txt.php
|
|
root~~
|
|
.root.php
|
|
/saerch.php
|
|
/sangatta.txt
|
|
scan1.0/scan/
|
|
searchreplacedb2.php
|
|
sec4ever.php
|
|
securi-fix.php
|
|
/sendme_old.txt
|
|
sfdg2
|
|
sh0.php
|
|
sh1.php
|
|
/sh2.php
|
|
sh3.php
|
|
sh4.php
|
|
shell0.php
|
|
shell1.php
|
|
shell2.php
|
|
shell3.php
|
|
shell4.php
|
|
shell5.php
|
|
shell6.php
|
|
shell7.php
|
|
shell8.php
|
|
shell9.php
|
|
shellbot.pl
|
|
sheller.txt
|
|
shell.php
|
|
/shellpvp.txt
|
|
shelltim.php
|
|
shell.txt
|
|
shell_vup
|
|
shelly.php
|
|
shipuden.php
|
|
/sh.php
|
|
/sh.txt
|
|
sinan.php
|
|
/skin/h2.php
|
|
som2.php
|
|
sourceinc15.php
|
|
sqlshell
|
|
src/up.txt
|
|
ssh2.php
|
|
/.stats.php
|
|
/stcp.php
|
|
/stmdu.php
|
|
/stph.php
|
|
suckmydick.php
|
|
suntzu
|
|
/sux.html
|
|
symchanger.php
|
|
sym/root
|
|
sys/cache.managed.php
|
|
/taisui.php
|
|
tangshi.php
|
|
terminatorx-exp
|
|
terminatorxexp
|
|
/teste.php
|
|
/themess.php
|
|
therules25
|
|
/tmp.php
|
|
too20.
|
|
tool20.php
|
|
/tool25.dat
|
|
/tool25.txt
|
|
/toolwar.php
|
|
trf/traf.php
|
|
trjnx/
|
|
/txt.php
|
|
/udd.php
|
|
UeXploiT
|
|
update_l8f.php
|
|
update_wjg.php
|
|
/upll.php
|
|
upload_5y9.php
|
|
upload_rry.php
|
|
upload_zco.php
|
|
upnew.php
|
|
USERNAME-WHMCS.TXT
|
|
uspas.txt
|
|
utf8gat
|
|
/viar.php
|
|
wdsadmin/autocomplete/error.php
|
|
/web.root
|
|
whm-myshop.TXT
|
|
wiki_up/gif.php
|
|
wiki_up/ion.php
|
|
wiki_up/jpeg.php
|
|
wiki_up/jpg.php
|
|
wp-2019.php
|
|
wp-autor.php
|
|
wp-cache.php
|
|
wp-conff.php
|
|
/wp_config.txt
|
|
wp-conns.php
|
|
wp-content/_input_
|
|
/wp-content/plugins/shell/
|
|
/wp-content/plugins/wp/
|
|
wpfootes.php
|
|
wpfoot.php
|
|
wp-fox.php
|
|
wp-includes/adodb.class.php
|
|
/wp-includes/css/modules.php
|
|
/wp-includes/ms-files-qu.php
|
|
wp-main.php
|
|
WPnBr.dll
|
|
/wp-sbb.php
|
|
wp-security.php
|
|
/wpstaff/wpstaff.php
|
|
/wp-strongs/wp-strongs.php
|
|
wp-system.php
|
|
wp-xmlrpc.php
|
|
wso.php
|
|
/wtheie.
|
|
xccc.php
|
|
xiaolei.php
|
|
/xia.php
|
|
xline7.php
|
|
xm1rpc.ph
|
|
xm1rpc.php
|
|
/xmlrpc-activate.php
|
|
xmlrpc-activate.php
|
|
/xmlrppc.php
|
|
xmlrppc.php
|
|
/xnjjj.php
|
|
xpl.php
|
|
/xsoul.php
|
|
/xt.txt
|
|
/xx.php
|
|
/ysyqq.php
|
|
ysyqq.php
|
|
/zaz.php
|
|
zbi_1.php
|
|
zbi_2.php
|
|
zbi_3.php
|
|
stager64
|
|
wp-plain.php
|