当前位置:网站首页>[try to hack] at, SC, PS command authorization
[try to hack] at, SC, PS command authorization
2022-07-28 12:16:00 【Hua Weiyun】
Blog home page : Happy star The blog home page of
Series column :Try to Hack
Welcome to focus on the likes collection ️ Leaving a message.
Starting time :2022 year 7 month 10 Japan
The author's level is very limited , If an error is found , Please let me know , thank !
@toc
AT Raise the right
Applicable system :Windows2000、Windows 2003、Windows XP
Premise : Get server admin jurisdiction , have access to at command , Therefore, the right is system jurisdiction
at Is a command-line tool for issuing scheduled tasks , The grammar is relatively simple . adopt at Command issued
Scheduled tasks , Windows Default to SYSTEM Permission to run . Scheduled task scheduling can be batch processing 、 It can be a binary file
at 13:38 /interactive cmd.exe # stay 13:38 With system Permission open cmd
Now we just got one system Of shell, We should raise the power of the system to system Only with authority
In getting a system Of cmd after , Use taskmgr The command calls the task manager , At this time
Task manager is system jurisdiction , then kill fall explore process , Then use the task manager
newly build explore process , Will get a system Desktop environment for
SC Raise the right
Applicable system :Windows7、Windows8、Windows2008、Windows2012、Windows2016
# Create a name syscmd The new interactive cmd service C:>sc Create syscmd binPath= “cmd /K start” type= own type= interact # Start the service to get system The powers of the cmdC:>sc start syscmd among syscmd It's the service name , You can fill in at will ,binpath Is the command to start ,type=own Service refers to who the service belongs to ,type=interact Refers to interactive shell
PS Raise the right
PStool Download address
Applicable system :Windows2003 、 Windows2008psexec.exe -accepteula -s -i -d cmd.exe
边栏推荐
- Style conversion model style_ Transformer project instance pytorch implementation
- php 日期计算操作处理,当前日期加一天和指定日期减一天
- 【Try to Hack】内网基础
- Lua 中 __index、__newindex、rawget、rawset的理解
- [leetcode] 7. valid anagram · effective letter ectopic words
- Code simplification
- What is WordPress
- Lua middle__ index、__ Understanding of newindex, rawget and rawset
- Redis安装
- Top level "redis notes", cache avalanche + breakdown + penetration + cluster + distributed lock, Nb
猜你喜欢

Detailed deployment and configuration of CEPH cluster (II)

Distributed system (III) construction of distributed transaction service

Upgrading of computing power under the coordination of software and hardware, redefining productivity

Image filter from the perspective of convolution

Develop your own NPM package from 0

Know the optical fiber interface and supporting optical fiber cable of can optical fiber converter in fire alarm networking

配置Jupyter远程服务器

Live: never believe that suffering is worth it. Suffering is suffering

Zhou Hongyi talks about Internet thinking: users, not customers

瑞吉外卖——Day01
随机推荐
Pycharm debugging mode
SQL注入 Less24(二次注入)
How async await implements concurrency
Lyscript get previous and next instructions
WebView details
Full resolution of the use of go native plug-ins
本地化、低时延、绿色低碳:阿里云正式启用福州数据中心
After abolishing Tencent cloud: meiyabaike won the bid of 98.3 million
Huawei releases harmonyos 3 and all scene new products, and the smart experience goes further
Launcher sample code
Loongarch Godson architecture document collection
Redis installation
直接插入排序与希尔排序
游戏流程与底层实现 逐步完成
Matlab sets the size of graphics window and image and the position of legend
[leetcode] 8. binary search · binary search
php保留两位小数的几种方法介绍
Training mode and practice of digital applied talents in Colleges and Universities under the integration of industry and education
2022.07.07 summer training personal qualifying (II)
Docker runs MySQL service