dongfang1017 发表于 2009-8-11 09:05:46

用sql语句批量删除MSSQL数据库木马

DECLARE hCForEach CURSOR GLOBAL
FOR
Select N'update '+QUOTENAME(o.name)
    +N' set'+ QUOTENAME(c.name) + N' = replace(' + QUOTENAME(c.name) + ',''《script src=http://www.xxx.cn/cn.js》《/script》'','''')'
FROM sysobjects o,syscolumns c,systypes t
Where o.id=c.id
    AND OBJECTPROPERTY(o.id,N'IsUserTable')=1
    AND c.xusertype=t.xusertype
    AND t.name IN('varchar','nvarchar','char','nchar','text')

EXEC sp_MSforeach_Worker @command1=N'?'

其中《script src=http://www.xxx.cn/cn.js》《/script》为要查找的插入的js内容

hehecyl 发表于 2009-8-11 19:33:37

哎,可惜看不懂哎,好好学习罗
页: [1]
查看完整版本: 用sql语句批量删除MSSQL数据库木马