SQLiDumper 10.2 - different interface, likely real

Krematorij

Administrator
Staff member
ADMIN
BFD MEMBER
LEGEND
ULTIMATE
SUPREME
MEMBER
BFD Legacy
Joined
Oct 22, 2024
Messages
1,121
Reaction score
16,250
Website
bfdcrew.pro
Deposit
1,002$
SQLi Dumper tool is a very powerful windows tool to automate the process of Detection and Exploitation of SQL Injection vulnerabilities. SQLi Dumper tool will do everything for you from detection or identification of vulnerability to Exploitation of vulnerability automatically. It is very powerful than the most famous Havij ...
Click to expand...

Earlier I posted a found version of SQLiDumper that was dropped from a backdoored copy. I thought maybe since the clean version was dropped it would have been real, but users familiar with the real software (and who knew the author of SQLiDumper) pointed out interface differences in the 10.x versions so it seems likely this was a fake. You can see the old thread here: https://cyberarsenal.org/threads/sq...ly-not-really-10-x-version-skip-this-one.133/

I looked through a junk folder for these:

1664484583165.png



And only one of the versions actually looks like what the 10.x interface is supposed to look like, the 10.2 one I highlighted.

1664481683976.png



Virustotal goes nuts over it but many aren't trojan they are "hacktool" and similar. The community feedback is just some +1 votes. It seems likely this is legit. I ran it in a vm and saw no extra traffic (except a call to a checkip.dyndns.org which is just for determining one's own IP - this isn't a c2 or phonehome it's just a service you can check it out yourself). Anyway I can't say this is clean, but it does seem to be real and I didn't see backdoor activity or traffic so I'm posting it for the same reasons as before - to prevent others from downloading the for-sure trojaned versions out there.

As has been said and I agree, use sqlmap instead :)

https://www.mirrored.to/files/YU9D1JBP/SQLi_Dumper_v10.2_(adds_languages_and_settings).7z_links
 
Top Bottom