瑞星卡卡安全论坛

首页 » 技术交流区 » 恶意网站交流 » 那位能帮我解一下,,asp文件加密了...
zocqbbs - 2010-1-13 15:19:00

附件: Bin.rar (2010-1-13 15:19:10, 46.88 K)
该附件被下载次数 392

    [quote][/quote]
从网上找了个程序,,强果是加密的,,无法用..请教哪位帮看一下.源码不知道怎么弄的,,贴不上来,,,也打包传上来了...

附件: Conn.rar (2010-1-13 15:23:02, 61.54 K)
该附件被下载次数 380

    请高手帮看一下能不能解密.....最好能说一下是怎么解的,,以后碰到这样的情况,自己也可以试试...
用户系统信息:Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1)
networkedition - 2010-1-13 15:22:00
被加密的源代码呢,aspencoding:kaka2:
zocqbbs - 2010-1-13 15:23:00
刚才用引用没引上去,,又打包上传的....
Cool_wXd - 2010-1-13 15:31:00


<%
function htmlencode(string)
htmlencode=replace(string,"'","")
'htmlencode=replace(htmlencode,"=","≡")
htmlencode=replace(htmlencode,chr(13)&chr(10),"<br>")
htmlencode=replace(htmlencode," ","")
htmlencode=replace(htmlencode,"table","<br>")
'htmlencode=replace(htmlencode,"<","<")
'htmlencode=replace(htmlencode,">",">")
end function
function htmldecode(string)
htmldecode=replace(string,chr(13),"<br>")
end function
Function GetRndPassword(PasswordLen)
    Dim Ran, i, strPassword
    strPassword = ""
    For i = 1 To PasswordLen
        Randomize
        Ran = CInt(Rnd * 2)
        Randomize
        If Ran = 0 Then
            Ran = CInt(Rnd * 25) + 97
            strPassword = strPassword & UCase(Chr(Ran))
        ElseIf Ran = 1 Then
            Ran = CInt(Rnd * 9)
            strPassword = strPassword & Ran
        ElseIf Ran = 2 Then
            Ran = CInt(Rnd * 25) + 97
            strPassword = strPassword & Chr(Ran)
        End If
    Next
    GetRndPassword = strPassword
End Function
'**************************************************
'函数名:ReplaceBadChar
'作  用:过滤非法的SQL字符
'参  数:strChar-----要过滤的字符
'返回值:过滤后的字符
'**************************************************
Public Function ReplaceBadChar(strChar)
    If strChar = "" Or IsNull(strChar) Then
        ReplaceBadChar = ""
        Exit Function
    End If
    Dim strBadChar, arrBadChar, tempChar, i
    strBadChar = "',%,^,&,\\,master,cmd.exe,xp_cmdshell,declare,truncate,mid,insert,select,delete,update,count,and,modify,rename,cast,alter,create,drop,applet,script,join,union,object,exec,(,),<,>,[,],{,},/,\,;,:," & Chr(34) & "," & Chr(0) & ""
    arrBadChar = Split(strBadChar, ",")
    tempChar = strChar
    For i = 0 To UBound(arrBadChar)
        tempChar = Replace(tempChar, arrBadChar(i), "")
    Next
    ReplaceBadChar = tempChar
End Function
'***************************************************
'检查组件是否已经安装
'***************************************************
Function IsObjInstalled(strClassString)
On Error Resume Next
IsObjInstalled = False
Err = 0
Dim xTestObj
Set xTestObj = Server.CreateObject(strClassString)
If 0 = Err Then IsObjInstalled = True
Set xTestObj = Nothing
Err = 0
End Function
%>


networkedition - 2010-1-13 15:36:00
看解密出来的代码是用来防sql注入的呀,ls讲解一下详细解密步骤:kaka12:
zocqbbs - 2010-1-13 15:39:00
请教楼上告诉一下怎么解密的好吗.......
networkedition - 2010-1-13 15:41:00
请教4楼吧,俺也不知,也想知道呢:kaka3:
zocqbbs - 2010-1-13 15:43:00
楼上可别太保守哦.......
networkedition - 2010-1-13 15:48:00
保守什么,没有解密过这个类似加密。:kaka6:
Cool_wXd - 2010-1-13 21:28:00
之前看了一眼就扔出来了,给你个完整的
工具暂时就不公布了,公布的话官方的DLL组件也就跟着升级了
呵呵!
文件有点大,看附件吧

附件: conn.rar (2010-1-13 21:28:50, 11.18 K)
该附件被下载次数 324

networkedition - 2010-1-14 9:15:00
你这个应该是个典型的应用:kaka1:
Cool_wXd - 2010-1-14 11:15:00
此工具已经失效了!
networkedition - 2010-1-14 11:17:00
多谢,红狼安全联盟的兄弟:kaka12:
Cool_wXd - 2010-1-14 11:20:00
那个工具我测试失效了~哎
有联系方式吗?
networkedition - 2010-1-14 11:23:00
已发站内短消息:kaka12:
weij321 - 2010-1-18 18:58:00
没有解密过这个类似加密
1
查看完整版本: 那位能帮我解一下,,asp文件加密了...