PsExec: Nws Yog Dab Tsi thiab Yuav Siv Li Cas

Cov txheej txheem:

PsExec: Nws Yog Dab Tsi thiab Yuav Siv Li Cas
PsExec: Nws Yog Dab Tsi thiab Yuav Siv Li Cas
Anonim

PsExec yog lub cuab yeej nqa tau los ntawm Microsoft uas tso cai rau koj khiav cov txheej txheem nyob deb siv txhua tus neeg siv cov ntawv pov thawj. Nws zoo ib yam li cov kev pab cuam nkag mus rau tej thaj chaw deb tab sis tsis yog tswj xyuas lub computer nrog nas, cov lus txib raug xa los ntawm Command Prompt.

Koj tuaj yeem siv PsExec tsis yog tsuas yog tswj cov txheej txheem ntawm lub khoos phis tawj tej thaj chaw deb tab sis kuj tseem hloov pauv daim ntawv thov lub console tso tawm rau koj lub khoos phis tawj hauv zos, ua rau nws tshwm sim zoo li cov txheej txheem khiav hauv zos.

Tsis xav tau software ntawm lub khoos phis tawj chaw taws teeb kom ua haujlwm PsExec, tab sis muaj ob peb yam uas yuav tsum nco ntsoov yog tias lub cuab yeej ua haujlwm tsis raug yog thawj zaug koj sim.

Yuav Ua Li Cas PsExec

Yog PsExec portable thiab tsis tas yuav tsum tau theej rau lub computer tej thaj chaw deb, hom kev teeb tsa nws xav tau tiag tiag?

Lub cuab yeej ua haujlwm tsuas yog nyob rau qee yam xwm txheej. Namely, thaum cov ntaub ntawv thiab lub tshuab luam ntawv sib koom tau qhib rau ntawm ob lub computer hauv zos thiab tej thaj chaw deb, thiab thaum lub tshuab tej thaj chaw deb muaj $admin qhia teeb tsa kom raug los muab kev nkag mus rau nws \Windows\ folder.

Koj tuaj yeem tshawb xyuas cov ntaub ntawv ntawd thiab luam tawm sib qhia tau qhib los ntawm kev saib hauv Windows Firewall nqis:

  1. Enter firewall.cpl nyob rau hauv lub Khiav dialog box. Ib txoj hauv kev qhib Khiav yog los ntawm WIN + R keyboard shortcut.
  2. Xaiv tso cai rau ib qho app lossis feature ntawm Windows Firewall ntawm sab laug ntawm lub qhov rais.

    Image
    Image

    Qhov no yuav nyeem raws li tso cai rau ib qho app lossis feature ntawm Windows Defender Firewall nyob ntawm seb koj lub khoos phis tawj teeb tsa li cas, tab sis nws yog qhov kev xaiv tib yam.

  3. Ua kom Cov ntaub ntawv thiab tshuab luam ntawv sib qhia muaj lub cim kos hauv Private lub thawv rau nws sab xis. Yog tias tsis yog, muab ib daim tshev rau hauv lub thawv ntawd thiab xaiv OK.

    Image
    Image

    Yog tias koj tsis tuaj yeem hloov qhov teeb tsa firewall vim tias lawv tau greyed, xaiv Hloov chaw rau saum lub qhov rais.

  4. Tam sim no koj tuaj yeem tawm ntawm qhov qhib Windows Firewall.

Nrog Windows Firewall tam sim no teeb tsa kom raug rau PsExec, koj yuav tsum tsis muaj teeb meem nkag mus rau $ tus thawj tswj hwm ntawm lub tshuab tej thaj chaw deb tsuav yog cov hauv qab no muaj tseeb:

  • Ob lub khoos phis tawj muaj nyob rau tib pab pawg ua haujlwm
  • Koj paub tus password rau tus thawj tswj hwm tus account ntawm lub khoos phis tawj nyob deb

Saib qhov kev qhia no ntawm Wintips.org yog tias koj xav tau kev pab ua cov khoom ntawd lossis yog tias koj tau ua tiav lawm tab sis tom qab ntawd, tom qab sim siv PsExec raws li tau piav qhia hauv qab no, koj tau txais "kev nkag tsis tau" yuam kev.

Yuav siv PsExec

Ua ntej siv PsExec los ua cov lus txib tej thaj chaw deb, koj yuav tsum rub tawm qhov program thiab tso Command Prompt hauv txoj hauv kev uas koj tuaj yeem siv lub cuab yeej kom raug.

Download thiab qhib Nws

  1. Download PsExec ntawm lub khoos phis tawj uas yuav khiav cov lus txib tej thaj chaw deb. Nws muaj pub dawb los ntawm Microsoft ntawm Sysinternals ua ib feem ntawm PsTools.
  2. Extract cov ntaub ntawv los ntawm PsTools.zip download. Koj tuaj yeem ua qhov ntawd los ntawm txoj cai-nias ntawm ZIP cov ntaub ntawv thiab xaiv rho tawm tag nrho. Txhua tus neeg thib peb cov ntaub ntawv rho tawm yuav ua haujlwm, ib yam nkaus.

    Image
    Image
  3. Qhib lub nplaub tshev qhov twg cov ntaub ntawv rho tawm nyob, thiab los ntawm cov kev taw qhia nyob rau sab saum toj ntawm daim nplaub tshev, tshem tawm dab tsi nyob ntawd thiab nkag mus cmd.

    Image
    Image

    Lwm txoj hauv kev ua qhov no, tsawg kawg hauv qee qhov versions ntawm Windows, yog Shift + Right Click qhov chaw khoob hauv PsTools nplaub tshev thiab xaiv Qhib command window here.

    Qhov no yuav qhib Command Prompt hauv lub nplaub tshev kom koj tuaj yeem khiav cov lus txib los ntawm PsExec.

    Image
    Image
  4. Nrog Command Prompt tam sim no qhib rau lub nplaub tshev uas muaj PsExec.exe, koj tuaj yeem pib nkag mus rau cov lus txib ntawm lub tshuab tej thaj chaw deb.

Kev nkag siab ntawm Syntax

Ntau yam zoo li cov cuab yeej hais kom ua kab, PsExec ua haujlwm tsuas yog thaum nws cov syntax ua raws nraim. Thaum koj nkag siab yuav ua li cas ntaus cov lus txib hauv txoj kev uas lub cuab yeej nkag siab lawv, koj tuaj yeem tswj hwm qhov kev zov me nyuam los ntawm txhua qhov Command Prompt.

Qhov no yog li cas PsExec cov lus txib yuav tsum nkag mus:

psexec [ computer [, computer2 [, …] | @file\][- u username [- p password][- n s][- r servicename][- h][- l [- s |- e][- x][- i[session][-c executable [-f |-v ][-w directory][- d][- ][- ib n, n, …] cmd [arguments

Qhov no yuav zoo li nyuaj thiab tsis meej pem tab sis tsis txhob txhawj! Muaj qee qhov piv txwv hauv qab ntawm nplooj ntawv no uas koj tuaj yeem siv los xyaum.

Cov lus hais saum toj no yog siv los ua ib qho ntawm cov lus txib hauv qab no PsExec:

PsExec Command Options
Parameter piav qhia
- a Sib cais cov txheej txheem uas daim ntawv thov tuaj yeem khiav, nrog cov cim, qhov twg 1 yog tus lej qis tshaj CPU. Piv txwv li, txhawm rau khiav daim ntawv thov ntawm CPU 2 thiab CPU 4, koj yuav tsum nkag mus: - a 2, 4
- c Copy cov lus teev tseg rau qhov chaw taws teeb rau kev ua tiav. Yog tias tshem tawm, daim ntawv thov yuav tsum nyob hauv txoj hauv kev ntawm qhov chaw taws teeb.
- d Tsis txhob tos kom cov txheej txheem xaus (tsis sib tham).
- e Tsis thauj khoom tus account qhov profile.
- f Copy qhov kev qhia tshwj xeeb txawm tias cov ntaub ntawv twb muaj nyob rau ntawm qhov chaw taws teeb.
- i Khiav qhov kev pab cuam kom nws cuam tshuam nrog lub desktop ntawm qhov kev sib tham ntawm cov chaw taws teeb. Yog tias tsis muaj kev sib tham, cov txheej txheem khiav hauv lub console session.
- h Yog tias lub hom phiaj yog Windows Vista lossis siab dua, khiav cov txheej txheem nrog tus as khauj siab, yog tias muaj.
- l Khiav cov txheej txheem raws li tus neeg siv tsawg (tso tawm pawg Administrators thiab tso cai rau cov cai tsuas yog muab rau Pawg Neeg Siv). Hauv Windows Vista, cov txheej txheem khiav nrog Kev Ncaj Ncees qis.
- n Qhia txog sijhawm sijhawm (hauv vib nas this) txuas rau cov khoos phis tawj nyob deb.
- p Qhia meej tus lej password rau tus neeg siv lub npe. Yog tias tshem tawm, koj yuav raug ceeb toom kom nkag mus rau tus password zais.
- r Qhia lub npe ntawm cov chaw taws teeb tswj los tsim lossis cuam tshuam nrog.
- s Runs the remote process in the System account.
- u Qhia meej tus neeg siv lub npe xaiv rau kev nkag mus rau lub computer tej thaj chaw deb.
- v Luam cov ntaub ntawv tshwj xeeb tsuas yog tias nws muaj tus lej ntau dua lossis tshiab dua li ntawm ib qho ntawm cov chaw taws teeb.
- w Tshuaj cov npe ua haujlwm ntawm cov txheej txheem (kwv yees rau lub computer tej thaj chaw deb).
- x Displays tus neeg siv interface ntawm Winlogon ruaj ntseg desktop (hauv cheeb tsam nkaus xwb).
- qhov tseem ceeb Qhia meej -low, -belownormal, -abovenormal, -high lossis -re altime los khiav cov txheej txheem ntawm qhov tseem ceeb sib txawv. Siv -rov qab los khiav ntawm lub cim xeeb qis thiab I / O qhov tseem ceeb ntawm Windows Vista.
Ycomputer Directs PsExec kom khiav daim ntawv thov ntawm lub computer tej thaj chaw deb tau teev tseg. Yog tias tshem tawm, PsExec khiav daim ntawv thov ntawm cov kab ke hauv zos, thiab yog tias muaj daim npav cim tseg () tau teev tseg, PsExec khiav cov lus txib ntawm txhua lub khoos phis tawj tam sim no.
@file PsExec yuav ua tiav cov lus txib ntawm txhua lub khoos phis tawj uas teev hauv cov ntaub ntawv.
cmd Npe ntawm daim ntawv thov ua.
arguments Cov lus sib cav kom dhau (nco ntsoov tias cov ntaub ntawv txoj hauv kev yuav tsum yog txoj hauv kev tseeb ntawm lub hom phiaj system).

PsExec Command Piv txwv

Ntawm no yog ob peb yam piv txwv ntawm kev siv PsExec ua tej yam xws li khiav tej thaj chaw deb Command Prompt commands, tswj Windows Services, thiab tso tawm lossis nruab cov kev pab cuam.

Qhib CMD Chaw Taws Teeb

psexec \\192.168.86.62 cmd

Ib txoj hauv kev yooj yim tshaj plaws los siv PsExec los khiav Command Prompt cov lus txib ntawm lub khoos phis tawj tej thaj chaw deb yog txhawm rau ua cmd tom qab lub tshuab IP chaw nyob, 192.168.86.62 hauv qhov piv txwv no.

Ua qhov no yuav qhib lub qhov rais Command Prompt tsis tu ncua nyob rau hauv ib qho uas twb muaj lawm, thiab cia koj nkag mus rau txhua qhov kev hais kom ua zoo li koj tau zaum pem hauv ntej ntawm lub computer tej thaj chaw deb. Piv txwv li, koj tuaj yeem nkag mus rau ipconfig kom tau txais cov txiaj ntsig ntawm lwm lub khoos phis tawj, lossis mkdir los tsim ib daim nplaub tshev tshiab, dir sau cov ntawv tais ceev tseg, thiab lwm yam.

Run a Remote Command

psexec \\mediaserver01 tracert lifewire.com

Lwm txoj hauv kev siv PsExec yog nkag mus rau tus kheej cov lus txib tab sis tsis tau pib tag nrho Command Prompt. Hauv qhov piv txwv no, peb tab tom ua cov lus txib tracert tawm tsam lifewire.com, thiab vim tias peb tau teev cov chaw taws teeb lub computer lub npe, mediaserver01, cov lus txib tau cuam tshuam rau lub tshuab ntawd, tsis yog lub zos (piv txwv li, tus koj nyob nraum. ntawm).

Pib Kev Pabcuam Chaw Taws Teeb

psexec \\FRONTDESK_PC -u tomd -p 3(tom87 net start spooler

PsExec cov piv txwv qhia saum toj saud pib qhov kev pabcuam Print Spooler, spooler, nyob deb ntawm FRONTDESK_PC lub computer siv tomd tus neeg siv tus password, 3(tom87.

Tib cov lus txib tuaj yeem siv los nres qhov kev pabcuam deb, tab sis koj yuav tsum ntaus "stop" es tsis txhob "pib."

Qhib Registry Editor

psexec \\mikelaptopw10 -i -s C:\Windows\regedit.exe

Ntawm no, peb tab tom siv PsExec txhawm rau tso tawm Registry Editor ntawm lub tshuab chaw taws teeb, mikelaptopw10, hauv System account. Vim tias -i siv, qhov kev zov me nyuam yuav qhib rau hauv kev sib tham sib, txhais tau hais tias nws yuav tso tawm ntawm lub tshuab tej thaj chaw deb lub vijtsam.

Yog -i raug tshem tawm ntawm cov lus txib saum toj no, nws yuav ua rau hauv hom zais kom tsis txhob pom cov thawv sib tham lossis lwm lub qhov rais.

Install Program on Remote Computer

psexec \\J3BCD011 -c "Z:\files\ccleaner.exe" cmd /S

Hauv qhov piv txwv kawg ntawm kev siv PsExec, peb siv -c los luam cov ccleaner.exe program rau lub khoos phis tawj tej thaj chaw deb J3BCD011, thiab tom qab ntawd ua tiav nrog cov /S parameter txij li qhov ntawd yog dab tsi CCleaner siv los ua kom muaj kev ntsiag to nruab (yuav tsum tsis muaj neeg siv nkag). Ntxiv ib qho kev sib cav li ntawd yuav tsum tau cmd.

PsExec tuaj yeem txaus ntshai

Nws tseem ceeb heev kom nkag siab tias PsExec muaj zog npaum li cas thiab yuav siv nws li cas los cuam tshuam koj lub khoos phis tawj thaum siv rau lwm qhov chaw tsis ruaj ntseg.

Piv txwv, sib txuas - c, - u, thiab - p, tshwj xeeb yuav Cia ib tus neeg uas muaj kev sib txuas hauv network rau koj lub khoos phis tawj, thiab kev paub txog cov ntaub ntawv pov thawj admin, tua cov malware zais cia nrog leej twg tus ntawv pov thawj.

Txawm tias qhov kawg, qhov ua tau zoo kawg nkaus piv txwv hauv ntu dhau los yuav siv lub hom phiaj tshiab tag nrho thaum koj xav tias tsis yog CCleaner, ib tus neeg tuaj yeem txhim kho lwm yam uas lawv xav tau, hauv keeb kwm yav dhau, thiab tsis muaj qhov rais tshwm los qhia tias muaj dab tsi tshwm sim.

Txhua yam uas tau hais tias, xav txog qhov kev hloov pauv ntawm firewall yuav tsum tau thiab cov ntaub ntawv pov thawj tus thawj coj paub ib tus neeg yuav tsum muaj, muaj qhov laj thawj me me uas yuav tsum txhawj xeeb ntev npaum li tus password admin ntawm lub khoos phis tawj chaw taws teeb yog qhov nyuaj thiab lwm yam kev ntsuas kev nyab xeeb tau raug coj los.

Qee qhov kev tiv thaiv kab mob cuav qhia tias PsExec yog cov ntaub ntawv txaus ntshai, tab sis cov lus ceeb toom no tuaj yeem tsis quav ntsej yog tias koj paub tseeb tias qhov program koj siv yog los ntawm Microsoft qhov saum toj no. Yog vim li cas qhov no tshwm sim yog vim malware tau paub tias siv PsExec hloov cov kab mob.

Pom zoo: