#!/bin/sh
find ~/public_html ! -iname mce_langs.php ! -wholename '*smallbiz\/functions.php' ! -wholename '*geshi\/php\.php' ! -wholename '*ose-firewall*' ! -wholename '*bulletproof-security*' ! -wholename '*all-in-one-wp-security-and-firewall*' ! -wholename '*all-in-one-seo-pack*' ! -iname statpress.php ! -wholename "*wordfence*" ! -wholename '*Zend*' ! -iname contact_form.php ! -iname class*phpmailer.php ! -iname class-ftp.php ! -iname pluggable.php ! -iwholename '*sexybookmarks*' ! -iwholename '*Excel2007*' ! -iname phpFlickr.php ! -iname avatar.php ! -iname importbuddy.php ! -iname template-contact.php ! -iname layerslider.php ! -iname sitemap-core.php ! -iname admin-functions.php ! -iname contact_page.php ! -iname ajax-actions.php ! -iname wp-migrate-db.php ! -iname page_post_redirect_plugin.php ! -wholename '*akismet*'  ! -iname pre-header.inc.php ! -iname picasa.php ! -iname fbsystem.php ! -iname renderprocess.php ! -iname "debug.php" ! -iname '*sh404SEF*' ! -wholename "*shareaholic*" ! -wholename "*avreloaded*" ! -iname '*.csv' ! -iname template-redirect.php ! -iname "web.php" ! -iname "application.php"  ! -iname "*.xml" -type f -size -2M -print0 | perl -0 -wn -e '-T and print;' |  xargs -0 egrep -Hli '\$.*stop_.*strtoupper.*eval.*\;\}|function.*strlen.*isset|PCT4BA6ODSE_|x4cOBAL|x47LOB|eval.*\(decodeURIComponent\(.*\%.*\%.*\)\)\;|122\.155\.168|mosimage.*php|clickevents\.com\.my|Googleman|FilesMan|muhmademad|joyousness|YYKJKaSZ.*\$_POST.*ppeRDsIfDuUi|rBOxlFeDa'
find ~/public_html/ -name .htaccess -print0 | xargs -0 grep -li tobeornottobe
echo
echo DONE
