Everyone is familiar with Telnet. Hacking often use the system from the shell, especially when injected, but the most annoying is the NTLM authentication, before everyone removed NTLM method generally has 2 kinds.
1 Upload Ntml.exe This method has many disadvantages, such as: the other side has anti-virus software (anti-virus software or anti-virus software), many network segments shielded TFTP.
2 Write the configuration information of Telnet directly to the text and then execute it in the shell. This approach is very troublesome.
Today I introduce to you I have been using the method, pressure at the bottom of the OH.
That's the direct Run command: tlntadmn config sec =-ntlm
If injected, it can be run directly: exec master.dbo.xp_cmdshell ' tlntadmn config sec =-ntlm '-
After running, you'll get rid of the damned NTLM authentication: Go ahead and try.