Sign in to follow this  
Tjomas

Tutorial SQLi Dumper [V9.6]

Recommended Posts

SQLi Dumper make your own HQ combos with this tool!

 

In this tutorial I'll show you how to make HQ combos with this tool.  :hype: 

I'll include the downloads.

 

[hide]1. Downloading and Installing SQLI Dumper

 

This tutorial will be using SQLI Dumper v.idk.wich.version. :fiesta:

 

2. Proxies

Proxies can be found publicly via google or forums. If you want to get more advance look for a Proxy Scraper.

 

3. Dorks

Here is some information about Dorks and how to make them.

 

https://whatis.techtarget.com/definition/Google-dork-query

https://en.wikipedia.org/wiki/Google_hacking

Dorks can also are found on Google and Forums alike.

 

 

4. Online Scanner

 

Getting vulnerable URLs using SQLI Dumper and Dorks.

 

Paste dorks into here.

 

6PBrGDt.png

Select what sites you want to grab URLs from here.

BwdoOvc.png

Then click "Start Scanner".

dbfohdP.png

 

URLs should start showing here.

d6btqDD.png

 

 

5. Exploitables

Now that you have URLs in URLs Queue.

Goto Exploitables and click "Start exploiter".

 

6.Injectables.

Once you have a few URLs exploited.

Goto injectables and click "Start Analyzer"

 

You will start to see URLs select all of them and at the bottom it says

"Search Columns\Tables Names (MySQL and MS SQL) "

Enter what you want to search like so and click start.

HBVsCo0.png

 

A window should appear like so.

LzdWN1R.png

 

Now depending on the search mine was Email, Pass you will see

 

Search: Email

Rows: Number

[Number]Database.Column

 

In that column, If you searched Email it will look for a table with said name.

The number is how many rows(Lines) the table in the column has.

The password should have the same amount of Rows and match Database.Column .

 

Click and highlight the row you want to dump. Click the "Go To Dumper" drop-down button at the top then "New Dumper Instance".

oRcYCys.png

 

 

7. Dumping

Once Dumper is open tick threads check box.

3KLSMxT.png

 

 

Then click and highlight the column and click "Get Columns"

qxyxGmM.png

 

 

Now look for the Table name you searched for and tick/check-mark them accordingly.

Then move Threads slider to 50 this will speed up dumping but will use more resources.

m4XEiZ1.png

 

Once in done click "Dump Data".

Z7ss9zW.png

 

Exporting data.

Once dumping is finished click "Export Data"

935x558https://i.imgur.com/lbOiE7U.png[/img]

 

Keep "Plaintext". Change "Delimiter" to "Custom :"

Then click Start and save to a location.[/hide]

Share this post


Link to post
Share on other sites

SQLi Dumper make your own HQ combos with this tool!

 

In this tutorial I'll show you how to make HQ combos with this tool.  :hype: 

I'll include the downloads.

 

 

Share this post


Link to post
Share on other sites

There is no SQLiDumper version 9.8... Latest Version is 9.7 and even the 9.6 looks different.

Analyzing your file now. Expect report if it is infected.

Edit: Picture of original 9.7: http://prntscr.com/lo1lcm

Share this post


Link to post
Share on other sites

So.. if there's not a v9.6, that want to say the link he shared is maybe wrong.

Share this post


Link to post
Share on other sites

There is no SQLiDumper version 9.8... Latest Version is 9.7 and even the 9.6 looks different.

Analyzing your file now. Expect report if it is infected.

Edit: Picture of original 9.7: http://prntscr.com/lo1lcm

 

It's not infected but it might have some false positives.

And who cares about the versions ;-;

 

I'll just remove the link you unthankful.

Share this post


Link to post
Share on other sites

thanks my man that really helps

Share this post


Link to post
Share on other sites

There is no SQLiDumper version 9.8... Latest Version is 9.7 and even the 9.6 looks different.

Analyzing your file now. Expect report if it is infected.

Edit: Picture of original 9.7: http://prntscr.com/lo1lcm

 

It's not infected but it might have some false positives.

And who cares about the versions ;-;

 

I'll just remove the link you unthankful.

 

False positives?

Better remove your life.

Here's proof of your failware: https://www.hybrid-analysis.com/sample/9b19bbd31672b9cff4bf6d0dd2af4b8dfa51190eac1e631a7c22fc2d0c1c4758/5a4ea51d7ca3e13edc2b93b3

Share this post


Link to post
Share on other sites

thank you very much the best

Share this post


Link to post
Share on other sites

damn this is rogged with threats according to that guy

Share this post


Link to post
Share on other sites

Thank you my friend <3 <3 <3

Share this post


Link to post
Share on other sites

thanks a lot. Very useful post.

Share this post


Link to post
Share on other sites

SQLi Dumper make your own HQ combos with this tool!

 

In this tutorial I'll show you how to make HQ combos with this tool.  :hype: 

I'll include the downloads.

 

 

Lets me check your content to rate this leak

Share this post


Link to post
Share on other sites

thanks bro

Share this post


Link to post
Share on other sites

SQLi Dumper make your own HQ combos with this tool!

 

In this tutorial I'll show you how to make HQ combos with this tool.  :hype: 

I'll include the downloads.

 

 

Share this post


Link to post
Share on other sites

SQLi Dumper make your own HQ combos with this tool!

 

In this tutorial I'll show you how to make HQ combos with this tool.  :hype: 

I'll include the downloads.

 

 

Share this post


Link to post
Share on other sites

Join the conversation

You can post now and register later. If you have an account, sign in now to post with your account.

Guest
Reply to this topic...

×   Pasted as rich text.   Paste as plain text instead

  Only 75 emoji are allowed.

×   Your link has been automatically embedded.   Display as a link instead

×   Your previous content has been restored.   Clear editor

×   You cannot paste images directly. Upload or insert images from URL.

Sign in to follow this