The stories and information posted here are artistic works of fiction and falsehood. Only a fool would take anything posted here as fact.
Twelve Years of Service
Posts: 15
Threads: 5
Points: 0NSP
colaboration sql with havij 11-21-2011, 11:23 AM
#1
##########################################
I use this tool for sql and found any vuln site
##########################################
may be useful for us all brother...
(This post was last modified: 11-22-2011, 02:17 PM by idris_98 .)
•
Twelve Years of Service
Posts: 20
Threads: 17
Points: 0NSP
RE: colaboration sql with havij 11-22-2011, 09:46 AM
#2
Thank U But Plz Post Tutorial
•
Twelve Years of Service
Posts: 20
Threads: 0
Points: 0NSP
RE: colaboration sql with havij 11-22-2011, 01:53 PM
#3
•
Twelve Years of Service
Posts: 15
Threads: 5
Points: 0NSP
RE: colaboration sql with havij 11-22-2011, 03:36 PM
#4
(11-22-2011, 09:46 AM) Goog Lof Wrote: Thank U But Plz Post Tutorial
1st Step
open your browser (MF, GC etc)
Search for dork.
or use this.
dork list by H|L
Spoiler:
Code:
SQL DORK LIST BY
H|L cr3w
for more visit-http://adf.ly/3Yldn
inurl:"id=" & intext:"Warning: mysql_fetch_assoc()
inurl:"id=" & intext:"Warning: mysql_fetch_array()
inurl:"id=" & intext:"Warning: mysql_num_rows()
inurl:"id=" & intext:"Warning: session_start()
inurl:"id=" & intext:"Warning: getimagesize()
inurl:"id=" & intext:"Warning: is_writable()
inurl:"id=" & intext:"Warning: getimagesize()
inurl:"id=" & intext:"Warning: Unknown()
inurl:"id=" & intext:"Warning: session_start()
inurl:"id=" & intext:"Warning: mysql_result()
inurl:"id=" & intext:"Warning: pg_exec()
inurl:"id=" & intext:"Warning: mysql_result()
inurl:"id=" & intext:"Warning: mysql_num_rows()
inurl:"id=" & intext:"Warning: mysql_query()
inurl:"id=" & intext:"Warning: array_merge()
inurl:"id=" & intext:"Warning: preg_match()
inurl:"id=" & intext:"Warning: ilesize()
inurl:"id=" & intext:"Warning: filesize()
inurl:"id=" & intext:"Warning: filesize()
inurl:"id=" & intext:"Warning: require()
inurl:faq2.php?id=
inurl:show_an.php?id=
inurl:preview.php?id=
inurl:loadpsb.php?id=
inurl:opinions.php?id=
inurl:spr.php?id=
inurl:pages.php?id=
inurl:announce.php?id=
inurl:clanek.php4?id=
inurl:participant.php?id=
inurl:download.php?id=
inurl:main.php?id=
inurl:review.php?id=
inurl:chappies.php?id=
inurl:read.php?id=
inurl:prod_detail.php?id=
inurl:viewphoto.php?id=
inurl:article.php?id=
inurl:person.php?id=
inurl:productinfo.php?id=
inurl:showimg.php?id=
inurl:view.php?id=
inurl:website.php?id=
inurl:hosting_info.php?id=
inurl:gallery.php?id=
inurl:rub.php?idr=
inurl:view_faq.php?id=
inurl:artikelinfo.php?id=
inurl:detail.php?ID=
inurl:index.php?=
inurl:profile_view.php?id=
inurl:category.php?id=
inurl:publications.php?id=
inurl:fellows.php?id=
inurl:downloads_info.php?id=
inurl:prod_info.php?id=
inurl:shop.php?do=part&id=
inurl:Productinfo.php?id=
inurl:collectionitem.php?id=
inurl:band_info.php?id=
inurl:product.php?id=
inurl:releases.php?id=
inurl:ray.php?id=
inurl:produit.php?id=
inurl:pop.php?id=
inurl:shopping.php?id=
inurl:productdetail.php?id=
inurl:post.php?id=
inurl:viewshowdetail.php?id=
inurl:clubpage.php?id=
inurl:memberInfo.php?id=
inurl:section.php?id=
inurl:theme.php?id=
inurl:page.php?id=
inurl:shredder-categories.php?id=
inurl:tradeCategory.php?id=
inurl:product_ranges_view.php?ID=
inurl:shop_category.php?id=
inurl:transcript.php?id=
inurl:channel_id=
inurl:item_id=
inurl:newsid=
inurl:trainers.php?id=
inurl:news-full.php?id=
inurl:news_display.php?getid=
inurl:index2.php?option=
inurl:readnews.php?id=
inurl:top10.php?cat=
inurl:newsone.php?id=
inurl:event.php?id=
inurl:product-item.php?id=
inurl:sql.php?id=
inurl:aboutbook.php?id=
inurl:review.php?id=
inurl:loadpsb.php?id=
inurl:ages.php?id=
inurl:material.php?id=
inurl:clanek.php4?id=
inurl:announce.php?id=
inurl:chappies.php?id=
inurl:read.php?id=
inurl:viewapp.php?id=
inurl:viewphoto.php?id=
inurl:rub.php?idr=
inurl:galeri_info.php?l=
inurl:review.php?id=
inurl:iniziativa.php?in=
inurl:curriculum.php?id=
inurl:labels.php?id=
inurl:story.php?id=
inurl:look.php?ID=
inurl:newsone.php?id=
inurl:aboutbook.php?id=
inurl:material.php?id=
inurl:opinions.php?id=
inurl:announce.php?id=
inurl:rub.php?idr=
inurl:galeri_info.php?l=
inurl:tekst.php?idt=
inurl:newscat.php?id=
inurl:newsticker_info.php?idn=
inurl:rubrika.php?idr=
inurl:rubp.php?idr=
inurl:offer.php?idf=
inurl:art.php?idm=
inurl:title.php?id=
open your Havij
Spoiler:
Code:
- Paste your url on the "target" box
- Click on "analyze" icon
- See the result on "status" box (bottom)
- when you're lucky you will found some data from your target (how lucky u?)
- When you see "red result" leave it and find other target
Get table
Spoiler:
Code:
- When you lucky you will found "blue message or green message" the information of target
- Click "Table" (above of status box)
- Click "Get Tables"
- You will see process on the "status" box
- This will take several minutes so, please wait.. :
- When you're lucky you will found any table from your target
Get Columns
Spoiler:
Code:
- OK, data is ready right?
- Just Checklist on the left box on the table box (choose one of the data will you get such as "tbl_admin")
- Click Get Columns
Get Data
Spoiler:
Code:
- Check List one of columns will you get such as "admin" or "password"
- Check "Get Data"
- once again, When you're lucky you will found the data :)
I'm just trying to share. may be useful for us all
member ,,
best regard to
admin and
moderator
(This post was last modified: 11-22-2011, 03:42 PM by idris_98 .)
•
Twelve Years of Service
Posts: 32
Threads: 4
Points: 6NSP
RE: colaboration sql with havij 11-01-2012, 03:18 PM
#5
bro link r expier plz pm me new link thankx in advice
•
Users browsing this thread: 1 Guest(s)