<% '------------------sql zhuru '-----------防注入代码---------------- '--------定义部份------------------ 'Dim Fy_Post,Fy_Get,Fy_In,Fy_Inf,Fy_Xh,Fy_db,Fy_dbstr '自定义需要过滤的字串,用 "|||" 分隔 Fy_In = "'|||;|||and|||exec|||insert|||select|||delete|||update|||count|||*|||%|||chr|||mid|||master|||truncate|||char|||declare" '---------------------------------- Fy_Inf = split(Fy_In,"|||") '--------POST部份------------------ If Request.Form<>"" Then For Each Fy_Post In Request.Form For Fy_Xh=0 To Ubound(Fy_Inf) If Instr(LCase(Request.Form(Fy_Post)),Fy_Inf(Fy_Xh))<>0 Then response.redirect "http://www.it168.com" End If Next Next End If '---------------------------------- '--------GET部份------------------- If Request.QueryString<>"" Then For Each Fy_Get In Request.QueryString For Fy_Xh=0 To Ubound(Fy_Inf) If Instr(LCase(Request.QueryString(Fy_Get)),Fy_Inf(Fy_Xh))<>0 Then response.redirect "http://www.it168.com" End If Next Next End If ''''''''''-----------sql end %> Web_Mail_FTP_DNS_DHCP_WINS_Apache_IIS_服务器学院_服务器专区_IT168.COM <% if nosb(trim(request("key")))<>"" then pkey=nosb(trim(request("key"))) else pkey="web" end if %> <% function opentxt(namestr) dim funstr funstr = "" set fs=server.createobject("scripting.filesystemobject") filepath = Server.MapPath("\school\txt") filepath = filepath & "\" & namestr 'response.write filepath if fs.FileExists(filepath) then set mytextfile=fs.opentextfile(filepath) 'response.write mytextfile.readall funstr = mytextfile.readall mytextfile.close set mytextfile=nothing end if set fs=nothing opentxt = funstr end function %>
<% select case pkey case "web" response.write opentxt("2005doc_1543web.txt") case "mail" response.write opentxt("2005doc_1543mail.txt") case "ftp" response.write opentxt("2005doc_1543ftp.txt") case "dns" response.write opentxt("2005doc_1543dns.txt") case "dhcp" response.write opentxt("2005doc_1543dhcp.txt") case "wins" response.write opentxt("2005doc_1543wins.txt") case "apache" response.write opentxt("2005doc_1543apache.txt") case "iis" response.write opentxt("2005doc_1543iis.txt") case "php" response.write opentxt("2005doc_1543php.txt") case "perl" response.write opentxt("2005doc_1543perl.txt") case "asp" response.write opentxt("2005doc_1543asp.txt") case "jsp" response.write opentxt("2005doc_1543jsp.txt") case "xnzj" response.write opentxt("2005doc_1543xnzj.txt") case "zjtg" response.write opentxt("2005doc_1543zjtg.txt") case "grjz" response.write opentxt("2005doc_1543grjz.txt") case "qyjz" response.write opentxt("2005doc_1543qyjz.txt") case else response.write opentxt("2005doc_1543web.txt") end select %>
<% select case pkey case "web" response.write opentxt("2005doc_1544web.txt") case "mail" response.write opentxt("2005doc_1544mail.txt") case "ftp" response.write opentxt("2005doc_1544ftp.txt") case "dns" response.write opentxt("2005doc_1544dns.txt") case "dhcp" response.write opentxt("2005doc_1544dhcp.txt") case "wins" response.write opentxt("2005doc_1544wins.txt") case "apache" response.write opentxt("2005doc_1544apache.txt") case "iis" response.write opentxt("2005doc_1544iis.txt") case "php" response.write opentxt("2005doc_1544php.txt") case "perl" response.write opentxt("2005doc_1544perl.txt") case "asp" response.write opentxt("2005doc_1544asp.txt") case "jsp" response.write opentxt("2005doc_1544jsp.txt") case "xnzj" response.write opentxt("2005doc_1544xnzj.txt") case "zjtg" response.write opentxt("2005doc_1544zjtg.txt") case "grjz" response.write opentxt("2005doc_1544grjz.txt") case "qyjz" response.write opentxt("2005doc_1544qyjz.txt") case else response.write opentxt("2005doc_1544web.txt") end select %>
<% select case pkey case "web" response.write opentxt("2005doc_1545web.txt") case "mail" response.write opentxt("2005doc_1545mail.txt") case "ftp" response.write opentxt("2005doc_1545ftp.txt") case "dns" response.write opentxt("2005doc_1545dns.txt") case "dhcp" response.write opentxt("2005doc_1545dhcp.txt") case "wins" response.write opentxt("2005doc_1545wins.txt") case "apache" response.write opentxt("2005doc_1545apache.txt") case "iis" response.write opentxt("2005doc_1545iis.txt") case "php" response.write opentxt("2005doc_1545php.txt") case "perl" response.write opentxt("2005doc_1545perl.txt") case "asp" response.write opentxt("2005doc_1545asp.txt") case "jsp" response.write opentxt("2005doc_1545jsp.txt") case "xnzj" response.write opentxt("2005doc_1545xnzj.txt") case "zjtg" response.write opentxt("2005doc_1545zjtg.txt") case "grjz" response.write opentxt("2005doc_1545grjz.txt") case "qyjz" response.write opentxt("2005doc_1545qyjz.txt") case else response.write opentxt("2005doc_1545web.txt") end select %>
<% select case pkey case "web" response.write opentxt("2005doc_1546web.txt") case "mail" response.write opentxt("2005doc_1546mail.txt") case "ftp" response.write opentxt("2005doc_1546ftp.txt") case "dns" response.write opentxt("2005doc_1546dns.txt") case "dhcp" response.write opentxt("2005doc_1546dhcp.txt") case "wins" response.write opentxt("2005doc_1546wins.txt") case "apache" response.write opentxt("2005doc_1546apache.txt") case "iis" response.write opentxt("2005doc_1546iis.txt") case "php" response.write opentxt("2005doc_1546php.txt") case "perl" response.write opentxt("2005doc_1546perl.txt") case "asp" response.write opentxt("2005doc_1546asp.txt") case "jsp" response.write opentxt("2005doc_1546jsp.txt") case "xnzj" response.write opentxt("2005doc_1546xnzj.txt") case "zjtg" response.write opentxt("2005doc_1546zjtg.txt") case "grjz" response.write opentxt("2005doc_1546grjz.txt") case "qyjz" response.write opentxt("2005doc_1546qyjz.txt") case else response.write opentxt("2005doc_1546web.txt") end select %>
<% select case pkey case "web" response.write opentxt("2005doc_1547web.txt") case "mail" response.write opentxt("2005doc_1547mail.txt") case "ftp" response.write opentxt("2005doc_1547ftp.txt") case "dns" response.write opentxt("2005doc_1547dns.txt") case "dhcp" response.write opentxt("2005doc_1547dhcp.txt") case "wins" response.write opentxt("2005doc_1547wins.txt") case "apache" response.write opentxt("2005doc_1547apache.txt") case "iis" response.write opentxt("2005doc_1547iis.txt") case "php" response.write opentxt("2005doc_1547php.txt") case "perl" response.write opentxt("2005doc_1547perl.txt") case "asp" response.write opentxt("2005doc_1547asp.txt") case "jsp" response.write opentxt("2005doc_1547jsp.txt") case "xnzj" response.write opentxt("2005doc_1547xnzj.txt") case "zjtg" response.write opentxt("2005doc_1547zjtg.txt") case "grjz" response.write opentxt("2005doc_1547grjz.txt") case "qyjz" response.write opentxt("2005doc_1547qyjz.txt") case else response.write opentxt("2005doc_1547web.txt") end select %>
<% select case pkey case "web" response.write opentxt("2005doc_1548web.txt") case "mail" response.write opentxt("2005doc_1548mail.txt") case "ftp" response.write opentxt("2005doc_1548ftp.txt") case "dns" response.write opentxt("2005doc_1548dns.txt") case "dhcp" response.write opentxt("2005doc_1548dhcp.txt") case "wins" response.write opentxt("2005doc_1548wins.txt") case "apache" response.write opentxt("2005doc_1548apache.txt") case "iis" response.write opentxt("2005doc_1548iis.txt") case "php" response.write opentxt("2005doc_1548php.txt") case "perl" response.write opentxt("2005doc_1548perl.txt") case "asp" response.write opentxt("2005doc_1548asp.txt") case "jsp" response.write opentxt("2005doc_1548jsp.txt") case "xnzj" response.write opentxt("2005doc_1548xnzj.txt") case "zjtg" response.write opentxt("2005doc_1548zjtg.txt") case "grjz" response.write opentxt("2005doc_1548grjz.txt") case "qyjz" response.write opentxt("2005doc_1548qyjz.txt") case else response.write opentxt("2005doc_1548web.txt") end select %>
<% select case pkey case "web" response.write opentxt("2005doc_1549web.txt") case "mail" response.write opentxt("2005doc_1549mail.txt") case "ftp" response.write opentxt("2005doc_1549ftp.txt") case "dns" response.write opentxt("2005doc_1549dns.txt") case "dhcp" response.write opentxt("2005doc_1549dhcp.txt") case "wins" response.write opentxt("2005doc_1549wins.txt") case "apache" response.write opentxt("2005doc_1549apache.txt") case "iis" response.write opentxt("2005doc_1549iis.txt") case "php" response.write opentxt("2005doc_1549php.txt") case "perl" response.write opentxt("2005doc_1549perl.txt") case "asp" response.write opentxt("2005doc_1549asp.txt") case "jsp" response.write opentxt("2005doc_1549jsp.txt") case "xnzj" response.write opentxt("2005doc_1549xnzj.txt") case "zjtg" response.write opentxt("2005doc_1549zjtg.txt") case "grjz" response.write opentxt("2005doc_1549grjz.txt") case "qyjz" response.write opentxt("2005doc_1549qyjz.txt") case else response.write opentxt("2005doc_1549web.txt") end select %>
<% select case pkey case "web" response.write opentxt("2005doc_1550web.txt") case "mail" response.write opentxt("2005doc_1550mail.txt") case "ftp" response.write opentxt("2005doc_1550ftp.txt") case "dns" response.write opentxt("2005doc_1550dns.txt") case "dhcp" response.write opentxt("2005doc_1550dhcp.txt") case "wins" response.write opentxt("2005doc_1550wins.txt") case "apache" response.write opentxt("2005doc_1550apache.txt") case "iis" response.write opentxt("2005doc_1550iis.txt") case "php" response.write opentxt("2005doc_1550php.txt") case "perl" response.write opentxt("2005doc_1550perl.txt") case "asp" response.write opentxt("2005doc_1550asp.txt") case "jsp" response.write opentxt("2005doc_1550jsp.txt") case "xnzj" response.write opentxt("2005doc_1550xnzj.txt") case "zjtg" response.write opentxt("2005doc_1550zjtg.txt") case "grjz" response.write opentxt("2005doc_1550grjz.txt") case "qyjz" response.write opentxt("2005doc_1550qyjz.txt") case else response.write opentxt("2005doc_1550web.txt") end select %>