发新话题
打印

[转载]SQL Server加密存储过程的破解问题

[转载]SQL Server加密存储过程的破解问题

信息来源:http://Www.XF2s.Com

CREATE PROCEDURE sp_decrypt(@objectName varchar(50))

AS
begin
set nocount on
--CSDN:j9988 copyright:2004.04.15
--V3.1
--破解字节不受限制,适用于SQLSERVER2000存储过程,函数,视图,触发器
--修正上一版视图触发器不能正确解密错误
--发现有错,请E_MAIL:CSDNj9988@tom.com
begin tran
declare @objectname1 varchar(100),@orgvarbin varbinary(8000)
declare @sql1 nvarchar(4000),@sql2 varchar(8000),@sql3 nvarchar(4000),@sql4 nvarchar(4000)
DECLARE @OrigSpText1 nvarchar(4000), @OrigSpText2 nvarchar(4000) , @OrigSpText3 nvarchar(4000), @resultsp nvarchar(4000)
declare @i int,@status int,@type varchar(10),@parentid int
declare @colid int,@n int,@q int,@j int,@k int,@encrypted int,@number int
select @type=xtype,@parentid=parent_obj from sysobjects where id=object_id(@ObjectName)


create table #temp(number int,colid int,ctext varbinary(8000),encrypted int,status int)
insert #temp SELECT number,colid,ctext,encrypted,status FROM syscomments WHERE id = object_id(@objectName)
select @number=max(number) from #temp
set @k=0


while @k<=@number
begin
if exists(select 1 from syscomments where id=object_id(@objectname) and number=@k)
begin
if @type=&#39;P&#39;
set @sql1=(case when @number>1 then &#39;ALTER PROCEDURE &#39;+ @objectName +&#39;;&#39;+rtrim(@k)+&#39; WITH ENCRYPTION AS &#39;
else &#39;ALTER PROCEDURE &#39;+ @objectName+&#39; WITH ENCRYPTION AS &#39;
end)
if @type=&#39;TR&#39;
begin
declare @parent_obj varchar(255),@tr_parent_xtype varchar(10)
select @parent_obj=parent_obj from sysobjects where id=object_id(@objectName)
select @tr_parent_xtype=xtype from sysobjects where id=@parent_obj
if @tr_parent_xtype=&#39;V&#39;
begin
set @sql1=&#39;ALTER TRIGGER &#39;+@objectname+&#39; ON &#39;+OBJECT_NAME(@parentid)+&#39; WITH ENCRYPTION INSTERD OF INSERT AS PRINT 1 &#39;
end
else
begin
set @sql1=&#39;ALTER TRIGGER &#39;+@objectname+&#39; ON &#39;+OBJECT_NAME(@parentid)+&#39; WITH ENCRYPTION FOR INSERT AS PRINT 1 &#39;
end


end
if @type=&#39;FN&#39; or @type=&#39;TF&#39; or @type=&#39;IF&#39;
set @sql1=(case @type when &#39;TF&#39; then
&#39;ALTER FUNCTION &#39;+ @objectName+&#39;(@a char(1)) returns @b table(a varchar(10)) with encryption as begin insert @b select @a return end &#39;
when &#39;FN&#39; then
&#39;ALTER FUNCTION &#39;+ @objectName+&#39;(@a char(1)) returns char(1) with encryption as begin return @a end&#39;
when &#39;IF&#39; then
&#39;ALTER FUNCTION &#39;+ @objectName+&#39;(@a char(1)) returns table with encryption as return select @a as a&#39;
end)


if @type=&#39;V&#39;
set @sql1=&#39;ALTER VIEW &#39;+@objectname+&#39; WITH ENCRYPTION AS SELECT 1 as f&#39;


set @q=len(@sql1)
set @sql1=@sql1+REPLICATE(&#39;-&#39;,4000-@q)
select @sql2=REPLICATE(&#39;-&#39;,8000)
set @sql3=&#39;exec(@sql1&#39;
select @colid=max(colid) from #temp where number=@k
set @n=1
while @n<=CEILING(1.0*(@colid-1)/2) and len(@sQL3)<=3996
begin
set @sql3=@sql3+&#39;+@&#39;
set @n=@n+1
end
set @sql3=@sql3+&#39;)&#39;
exec sp_executesql @sql3,N&#39;@Sql1 nvarchar(4000),@ varchar(8000)&#39;,@sql1=@sql1,@=@sql2


end
set @k=@k+1
end


set @k=0
while @k<=@number
begin
if exists(select 1 from syscomments where id=object_id(@objectname) and number=@k)
begin
select @colid=max(colid) from #temp where number=@k
set @n=1


while @n<=@colid
begin
select @OrigSpText1=ctext,@encrypted=encrypted,@status=status FROM #temp WHERE colid=@n and number=@k


SET @OrigSpText3=(SELECT ctext FROM syscomments WHERE id=object_id(@objectName) and colid=@n and number=@k)
if @n=1
begin
if @type=&#39;P&#39;
SET @OrigSpText2=(case when @number>1 then &#39;CREATE PROCEDURE &#39;+ @objectName +&#39;;&#39;+rtrim(@k)+&#39; WITH ENCRYPTION AS &#39;
else &#39;CREATE PROCEDURE &#39;+ @objectName +&#39; WITH ENCRYPTION AS &#39;
end)



if @type=&#39;FN&#39; or @type=&#39;TF&#39; or @type=&#39;IF&#39;
SET @OrigSpText2=(case @type when &#39;TF&#39; then
&#39;CREATE FUNCTION &#39;+ @objectName+&#39;(@a char(1)) returns @b table(a varchar(10)) with encryption as begin insert @b select @a return end &#39;
when &#39;FN&#39; then
&#39;CREATE FUNCTION &#39;+ @objectName+&#39;(@a char(1)) returns char(1) with encryption as begin return @a end&#39;
when &#39;IF&#39; then
&#39;CREATE FUNCTION &#39;+ @objectName+&#39;(@a char(1)) returns table with encryption as return select @a as a&#39;
end)


if @type=&#39;TR&#39;
begin


if @tr_parent_xtype=&#39;V&#39;
begin
set @OrigSpText2=&#39;CREATE TRIGGER &#39;+@objectname+&#39; ON &#39;+OBJECT_NAME(@parentid)+&#39; WITH ENCRYPTION INSTEAD OF INSERT AS PRINT 1 &#39;
end
else
begin
set @OrigSpText2=&#39;CREATE TRIGGER &#39;+@objectname+&#39; ON &#39;+OBJECT_NAME(@parentid)+&#39; WITH ENCRYPTION FOR INSERT AS PRINT 1 &#39;
end
end


if @type=&#39;V&#39;
set @OrigSpText2=&#39;CREATE VIEW &#39;+@objectname+&#39; WITH ENCRYPTION AS SELECT 1 as f&#39;


set @q=4000-len(@OrigSpText2)
set @OrigSpText2=@OrigSpText2+REPLICATE(&#39;-&#39;,@q)
end
else
begin
SET @OrigSpText2=REPLICATE(&#39;-&#39;, 4000)
end
SET @i=1


SET @resultsp = replicate(N&#39;A&#39;, (datalength(@OrigSpText1) / 2))


WHILE @i<=datalength(@OrigSpText1)/2
BEGIN


SET @resultsp = stuff(@resultsp, @i, 1, NCHAR(UNICODE(substring(@OrigSpText1, @i, 1)) ^
(UNICODE(substring(@OrigSpText2, @i, 1)) ^
UNICODE(substring(@OrigSpText3, @i, 1)))))
SET @i=@i+1
END
set @orgvarbin=cast(@OrigSpText1 as varbinary(8000))
set @resultsp=(case when @encrypted=1
then @resultsp
else convert(nvarchar(4000),case when @status&2=2 then uncompress(@orgvarbin) else @orgvarbin end)
end)
print @resultsp


set @n=@n+1


end


end
set @k=@k+1
end


drop table #temp
rollback tran
end

TOP

发新话题