用sql语句批量删除MSSQL数据库木马
RainyFox
DECLARE hCForEach CURSOR GLOBAL
FOR
Select Nupdate +QUOTENAME(o.name)
+N set + QUOTENAME(c.name) + N = replace( + QUOTENAME(c.name) + ,《script src=http://www.xxx.cn/cn.js》《/script》,)
FROM sysobjects o,syscolumns c,systypes t
Where o.id=c.id
AND OBJECTPROPERTY(o.id,NIsUserTable)=1
AND c.xusertype=t.xusertype
AND t.name IN(varchar,nvarchar,char,nchar,text)
EXEC sp_MSforeach_Worker @command1=N?
其中《script src=http://www.xxx.cn/cn.js》《/script》为要查找的插入的js内容
下一篇:帝国CMS 留言本多字节漏洞