删除数据库恶意脚本

USE DataBaseName
GO
DECLARE @MAXID INT
DECLARE @ID INT
DECLARE @SQL NVARCHAR(MAX)
DECLARE @TableName NVARCHAR(100)

SET @ID = 0

SELECT TOP 1 @MAXID = id FROM sysobjects WHERE [type] = 'U' ORDER BY id DESC

WHILE (@ID <> @MAXID)
BEGIN
 SELECT TOP 1 @ID = id FROM sysobjects WHERE [type] = 'U' AND id > @ID
 SELECT @TableName = [name] FROM sysobjects WHERE id = @ID
 SET @SQL = 'UPDATE ' + @TableName + ' SET '
 SELECT @SQL = @SQL + '[' + a.[name] + '] = REPLACE(CAST([' + a.[name] + '] AS NVARCHAR(MAX)),''<script src=http://pinghui.net/t.js></script>'',''''),'  FROM syscolumns AS a INNER JOIN systypes AS b ON a.xtype = b.xtype WHERE a.id = @ID AND b.[name] <> 'sysname' AND (b.[name] LIKE '%char' OR b.[name] LIKE '%text')
 SET @SQL = LEFT(@SQL,LEN(@SQL) - 1)
 IF(@SQL IS NOT NULL AND RIGHT(@SQL,3) <> 'SET')
 BEGIN
  EXEC(@SQL)
 END
END

转载于:https://www.cnblogs.com/SmartFramework/archive/2009/08/26/1554073.html

评论
添加红包

请填写红包祝福语或标题

红包个数最小为10个

红包金额最低5元

当前余额3.43前往充值 >
需支付:10.00
成就一亿技术人!
领取后你会自动成为博主和红包主的粉丝 规则
hope_wisdom
发出的红包
实付
使用余额支付
点击重新获取
扫码支付
钱包余额 0

抵扣说明:

1.余额是钱包充值的虚拟货币,按照1:1的比例进行支付金额的抵扣。
2.余额无法直接购买下载,可以购买VIP、付费专栏及课程。

余额充值