styxmx 发表于 2018-10-16 11:37:17

SQL Server加密解密存储过程 2000/2005

  SQL Server加密存储过程 2000/2005
  亲自测试了一下,发现k的确实可以破解. sk5的可能需要搞到master表.
  原文如下
  ===========================================================================
  SQL Server加密存储过程用到“WITH ENCRYPTION”参数的时候,就可以将它加密,这种加密方式是不可逆的,
  再也不能打开了,呜呜~那么我们改怎么样才能看到原来的代码而不破坏这个存储过程呢?
  icech在网上找到了两个十分十分大牛的人!一个是j9988,早在年就写了一个可以破解加密的存储过程,
  支持SQL Server 2000非常的好;另一个是王成辉翻译老外写的一个,竟然可以支持SQL Server 2005版本!
  如何加密SQL Server存储过程?
  命令如:
  CREATE Procedure 存储过程名(...) WITH ENCRYPTION AS ...
  SQLServer2005里使用with encryption 选项创建的存储过程仍然和sqlserver2000里一样,都是使用XOR进行了的加密。
  和不一样的是,在的系统表syscomments里已经查不到加密过的密文了。
  要查密文必须使用DAC(专用管理员连接)连接到数据库后,在系统表 sys.sysobjvalues查询,
  该表的列imageval存储了相应的密文。具体可以使用下面的查询:
  SELECT imageval FROM sys.sysobjvalues WHERE objid = object_id(@procedure) AND
  valclass = 1 AND subobjid = 1
  --针对SQL Server 2000的解密存储过程
  create PROCEDURE sp_decrypt(@objectname varchar(50))
  AS
  begin
  set nocount on
  --CSDN:j9988 copyright:2004.07.15
  --V3.2
  --破解字节不受限制,适用于SQLSERVER2000存储过程,函数,视图,触发器
  --修正上一版"视图触发器"不能正确解密错误
  --发现有错,请E_MAIL:CSDNj9988@tom.com
  begin tran
  declare @objectname1 varchar(100),@orgvarbin varbinary(8000)
  declare @sql1 nvarchar(4000),@sql2 varchar(8000),@sql3 nvarchar(4000),@sql4 nvarchar(4000)
  DECLARE @OrigSpText1 nvarchar(4000), @OrigSpText2 nvarchar(4000) , @OrigSpText3 nvarchar(4000), @resultsp nvarchar(4000)
  declare @i int,@status int,@type varchar(10),@parentid int
  declare @colid int,@n int,@q int,@j int,@k int,@encrypted int,@number int

  select @type=xtype,@parentid=parent_obj from sysobjects where>  create table #temp(number int,colid int,ctext varbinary(8000),encrypted int,status int)

  insert #temp SELECT number,colid,ctext,encrypted,status FROM syscomments WHERE>  select @number=max(number) from #temp
  set @k=0
  while @k  begin
  if @type='P'
  set @sql1=(case when @number>1 then 'ALTER PROCEDURE '+ @objectname +';'+rtrim(@k)+' WITH ENCRYPTION AS '
  else 'ALTER PROCEDURE '+ @objectname+' WITH ENCRYPTION AS '
  end)
  if @type='TR'
  begin
  declare @parent_obj varchar(255),@tr_parent_xtype varchar(10)

  select @parent_obj=parent_obj from sysobjects where>
  select @tr_parent_xtype=xtype from sysobjects where>  if @tr_parent_xtype='V'
  begin
  set @sql1='ALTER TRIGGER '+@objectname+' ON '+OBJECT_NAME(@parentid)+' WITH ENCRYPTION INSTERD OF INSERT AS PRINT 1 '
  end
  else
  begin
  set @sql1='ALTER TRIGGER '+@objectname+' ON '+OBJECT_NAME(@parentid)+' WITH ENCRYPTION FOR INSERT AS PRINT 1 '
  end
  end
  if @type='FN' or @type='TF' or @type='IF'
  set @sql1=(case @type when 'TF' then
  'ALTER FUNCTION '+ @objectname+'(@a char(1)) returns @b table(a varchar(10)) with encryption as begin insert @b select @a return end '
  when 'FN' then
  'ALTER FUNCTION '+ @objectname+'(@a char(1)) returns char(1) with encryption as begin return @a end'
  when 'IF' then
  'ALTER FUNCTION '+ @objectname+'(@a char(1)) returns table with encryption as return select @a as a'
  end)
  if @type='V'
  set @sql1='ALTER VIEW '+@objectname+' WITH ENCRYPTION AS SELECT 1 as f'
  set @q=len(@sql1)
  set @sql1=@sql1+REPLICATE('-',4000-@q)
  select @sql2=REPLICATE('-',8000)
  set @sql3='exec(@sql1'
  select @colid=max(colid) from #temp where number=@k
  set @n=1
  while @n= 0
  BEGIN
  SELECT @BasePos = 1
  SELECT @CurrentPos = 1
  SELECT @TextLength = LEN(@SyscomText)
  WHILE @CurrentPos != 0
  BEGIN
  --通过回车查找行的结束
  SELECT @CurrentPos = CHARINDEX(char(13)+char(10), @SyscomText,
  @BasePos)
  --如果找到回车
  IF @CurrentPos != 0
  BEGIN
  --如果@Lines的长度的新值比设置的大就插入@Lines目前的内容并继续
  While (isnull(LEN(@Line),0) + @BlankSpaceAdded +
  @CurrentPos-@BasePos + @LFCR) > @DefinedLength
  BEGIN
  SELECT @AddOnLen = @DefinedLength-(isnull(LEN(@Line),0) +
  @BlankSpaceAdded)
  INSERT #CommentText VALUES
  ( @LineId,
  isnull(@Line, N'') + isnull(SUBSTRING(@SyscomText,
  @BasePos, @AddOnLen), N''))
  SELECT @Line = NULL, @LineId = @LineId + 1,
  @BasePos = @BasePos + @AddOnLen, @BlankSpaceAdded = 0
  END
  SELECT @Line = isnull(@Line, N'') +
  isnull(SUBSTRING(@SyscomText, @BasePos, @CurrentPos-@BasePos + @LFCR), N'')
  SELECT @BasePos = @CurrentPos+2
  INSERT #CommentText VALUES( @LineId, @Line )
  SELECT @LineId = @LineId + 1
  SELECT @Line = NULL
  END
  ELSE
  --如果回车没找到
  BEGIN
  IF @BasePos@DefinedLength
  BEGIN
  SELECT @AddOnLen = @DefinedLength -
  (isnull(LEN(@Line),0) + @BlankSpaceAdded)
  INSERT #CommentText VALUES
  ( @LineId,
  isnull(@Line, N'') + isnull(SUBSTRING(@SyscomText,
  @BasePos, @AddOnLen), N''))
  SELECT @Line = NULL, @LineId = @LineId + 1,
  @BasePos = @BasePos + @AddOnLen, @BlankSpaceAdded =
  0
  END
  SELECT @Line = isnull(@Line, N'') +
  isnull(SUBSTRING(@SyscomText, @BasePos, @TextLength-@BasePos+1 ), N'')
  if LEN(@Line) < @DefinedLength and charindex(' ',
  @SyscomText, @TextLength+1 ) > 0
  BEGIN
  SELECT @Line = @Line + ' ', @BlankSpaceAdded = 1
  END
  END
  END
  END
  FETCH NEXT FROM ms_crs_syscom into @SyscomText
  END
  IF @Line is NOT NULL
  INSERT #CommentText VALUES( @LineId, @Line )
  select Text from #CommentText order by LineId
  CLOSE ms_crs_syscom
  DEALLOCATE ms_crs_syscom
  DROP TABLE #CommentText
  -- -------------------------------------
  --结束从sp_helptext提取
  -- -------------------------------------
  --删除用短横线创建的存储过程并重建原始的存储过程
  ROLLBACK TRAN
  DROP TABLE #output

页: [1]
查看完整版本: SQL Server加密解密存储过程 2000/2005