¹ï©óWindows XPªº±j¤jªº¥\¯à©M¥þ·sªººc¬[§Ú­Ì³£¤£±o¤£¹ÄªA·L³nªº¹ê¤O¡A¥i¥H¹w¨£Windows XP±N¦¨¬°·s¤@¥N¦øªA¾¹§@·~¨t²Î
ªº¥D¬y¡A¦P®É¤]¦¨¬°Àb«È§ðÀ»ªº¹ï¶H¡C¦ý¬O¥Ñ©ó·sªºWindowsXPªº¥þ·sºc¬[«Ü¤jµ{«×³£¨Ì¿à©óActive Directory(¤SºÙ¤§¬°AD)¡A³o
¨Ï±o³\³\¦h¦hªººÞ²z­û¦b¦£©ó¾AÀ³·sªº§@·~¨t²Î¡A©M¹ï­ì¨Óªº¸ê®Æ¶i¦æ¨t²Îªº¾E²¾¡A¦Ó¹ïWindows XPªº¦w¥þ©Ê°ÝÃDÁÙ¨S¦³¤Þ°_
¨¬°÷­«µø¡C 

¡@¡@¥»¤å¸Ô²Ó¤¶²ÐÀb«È¦b§ðÀ»Windows XP¨t²Î®É¸g±`§Q¥Îªº¤@¨Çº|¬}©M¨ãÅé¨BÆJ¥H¤ÎÀ³¹ïµ¦²¤¡AÅýºô¸ô¨t²ÎºÞ²z­û¦bºûÅ@¨t²Î
®É¾¨¶q°µ¨ì¦³ªº©ñ¥Ú¡C¦³¤@¥y¸Ü«D±`¦³¹D²z¡G¡§¥@¬É¤W¨S¦³µ´¹ï·MÄøªº¨t²Î¡A¥u¦³µ´¹ï·MÄøªººÞ²z­û¡C¡¨¥u­n§Ú­Ìªººô¸ôºÞ²z
­û¯à°÷²Ó¤ß¦aºûÅ@¨t²Î¡A¬Û«HÀb«È­Ì¬O¨S¦³¥i­¼¤§¾÷ªº¡C 

µn³°¿é¤Jªkº|¬} 

¡@¡@³oùاڭ̭º¥ý¤¶²Ð¤@­Óµn¿ý¿ù»~¡A¤]´N¬O±`»¡ªº¿é¤Jªkº|¬}¡C·í§Ú­Ì±Ò°ÊWindowsXP¶i¦æ¨ìµn¿ýÅçÃÒªº´£¥Ü¤¶­±®É¡A¥ô¦ó
¥Î¤á³£¥i¥H¥´¶}¦UºØ¿é¤JªkªºÀ°§UÄæ¡A¨Ã¥B¥i¥H§Q¥Î¨ä¤¤¨ã¦³ªº¤@¨Ç¥\¯à³X°ÝÀɨt²Î¡A³o¤]´N¬O»¡§Ú­Ì¥i¥H¶¹L¤FWindowsXP
ªº¥Î¤áµn¿ýÅçÃÒ¾÷¨î¡A¨Ã¥B¯à¥H³Ì°ªºÞ²z­û³\¥iÅv³X°Ý¾ã­Ó¨t²Î¡C©Ò¥H»¡³o­Óº|¬}ªº¦M®`©Ê¬O«Ü¤jªº¡A¦Ó¥B·í§Ú­Ì¶i¤J¨t²Î
«á¡AÁÙ¥i¥H§Q¥ÎTerminal Server»·ºÝ³q«H³o­Óº|¬}¹ï¨t²Î¶i¦æ§ðÀ»¡C¹w³]ªºWindowsXP¨t²Î¦Û±aªº¿é¤Jªk¤¤¦³³o­Óº|¬}¡C©Ò¥H´N
§Ú·Pı¦Ó¨¥³o­Óº|¬}¬O­º­n­×¸Éªºº|¬}¡C 

1¡B§â¤£»Ý­nªº¿é¤Jªk§R°£±¼¡C 

2¡B¦ý¬O²¦³º§Ú­Ì¤£¯à§â©Ò¦³ªº¦Û±a¿é¤Jªk³£§R°£¡A¦pªG§Ú­Ì­n¨Ï¥Î¦³º|¬}ªº¿é¤Jªk¤]¥i¥H§â¨º­Ó¿é¤JªkªºÀ°§UÀɧR°£±¼¡C³o
¨ÇÀ°§UÀɳq±`¦bwinXPªº¦w¸Ë¥Ø¿ý¤U(¦p:C:\WINDOWS)ªº\help¥Ø¿ý¤U¡A¹ïÀ³ªºÀ°§UÀɬO¡G 

¡° WINIME.CHM ¿é¤Jªk¾Þ§@«ü«n 

3¡B·L³n¤½¥q¹ï©ó¦¹°ÝÃDµo§G¤F¦w¥þ¤½§i¡A¨Ã¦bºô¤Wµ¹¥X¤F¤¤¤åWindowsXP©M­^¤åª©WindowsXPªº­×¸Éµ{¦¡¡C©Ò¥H½Ð¾¨§Ö¥´¤W­×
¸Éµ{¦¡¡C 

NetBIOSªº«H®§¬ªº| 

¡@¡@ ±µ¤U¨Ó§Ú­Ì½Í¤@¤UNetBIOSªº¦@¥Î¤J«I.³o­Ó°ÝÃD±qNT­èµo¦æ¨ì²{¦b´N±q¨Ó¨S¦³¸Ñ¨M¡C¦Ó¥B¥¦¤@ª½¥Ñ¨Ó³£¬ONT¨t²Îºc¬[³Ì
±`¨£ªº¤J«I¤â¬q¡C¯S§O­È±o¤@´£ªº´N¬O¨º­ÓIPC$Null session(ªÅ·|¸Ü)¦bNT¨t²Îùس£¬O¤wª¾ªº¦w¥þÁô±w¡CÁöµM¥´¤FSP1«á¥i¥H³q¹L
­×§ïµù¥Uªí¨Ó¹ï¨ä¶i¦æ­­¨î¡C¦ý¤£ª¾¹D¬°¤°»òWindowsXPÁÙ¬O­ì«Ê¤£°Ê¦a«O¯dµÛ³o­ÓªÅ¹ï¸Ü¡C¨º»ò´NÅý§Ú­Ì¨Ó¬Ý¬ÝªÅ·|¸Ü¯àµ¹
¤J«IªÌ±a¨Ó¤°»ò¼Ëªº¸ê°T¡G 

net use \\server\IPC$ "" /user:"" //¦¹©R¥O¥Î¨Ó«Ø¥ß¤@­ÓªÅ·|¸Ü 

net view \\server //¦¹©R¥O¥Î¨Ó¬d¬Ý»·ºÝ¦øªA¾¹ªº¦@¥Î¸ê·½ 

¦øªA¾¹¦WºÙ¡@¡@¡@¡@¡@¡@ª`ÄÀ 

------------------------------------------------------- 
\\pc1 
\\pc2 
©R¥O¦¨¥\§¹¦¨¡C 

net time \\server //¦¹©R¥O¥Î¨Ó±o¨ì¤@­Ó»·ºÝ¦øªA¾¹ªº·í«e®É¶¡¡C 


nbtstat -A server //¦¹©R¥O¥Î¨Ó±o¨ì»·ºÝ¦øªA¾¹ªºNetBIOS¥Î¤á¦W¦rªí 

NetBIOS Remote Machine Name Table 

Name Type Status 
--------------------------------------------- 
NULL <00> UNIQUE Registered 
NULL <20> UNIQUE Registered 
INTERNET <00> GROUP Registered 
XIXI <03> UNIQUE Registered 
INet~Services <1C> GROUP Registered 
IS~NULL...... <00> UNIQUE Registered 
INTERNET <1E> GROUP Registered 
ADMINISTATOR <03> UNIQUE Registered 
INTERNET <1D> UNIQUE Registered 
..__MSBROWSE__.<01> GROUP Registered 

MAC Address = 00-54-4F-34-D8-80 

¡@¡@¬Ý¬Ý¡A¥u¤£¹L¥Î¤F´X­Ó¨t²Î¦Û±aªº©R¥O´N±o¨ì¤F¦p¦¹¦hªº¸ê°T¡A¨º»ò§Ú­Ì¦³¤°»ò¿ìªk¥i¥H¤£Åý§O¤H»´©ö±o¨ì³o»ò¦h¸ê°T
­þ¡H 

¡@¡@¶È¾a³æ¯Âªº­×§ïµù¥Uªí¬O¤@³Ò¥Ã¶hªº¡C 

HKEY-LOCAL_MACHINE\SYSTEM\CurrentControSet\Control\LSA 
Value Name: RestrictAnonymous 
Data Type: REG_DWORD 
Value: 1 

¡@¡@¦ý¦pªG¤@¨ÇªA°È§A¨Ã¤£»Ý­n¶}©ñ¦@¥Îªº¸Ü¡C¨º¬°¤°»ò¤£¸T¤î¥¦©O¡H¦bWindowsXPùتº¤èªk©MNTªº²¤¦³¤£¦P¡C¥¦¨S¦³­­¨î
TCP/IP¸j©w¦bNetBISO¤W¡A¦ý¬O§Ú­Ì¥i¥H¦bInternet¨ó©w(TCP/IP)Äݩʪº³]¸m­±ªOùØ¿ï¨ú¶i¶¥(V)¿ï¶µ¡AµM«á¿ï¾ÜTCP/IP ¿z¿ï¡A±µµÛ
ÂI¿ï±Ò¥ÎTCP/IP¿z¿ï¡A³Ì«á¦bTCP°ðÂI¿ï¥u¤¹³\¡AµM«á´N¥i¥H²K¥[§A©Ò·Q¶}©ñªºªA°Èªº°ð¤F¡C 

©_©Çªº¨t²Î±Y¼ì¯S©Ê 

¡@¡@¦¹¥~Windows XP¦³¤@­Ó¤ñ¸û©_©Çªº¯S©Ê¡A¨Ï¥Î¨t²Îªº²×ºÝ¥Î¤á¥i¥H³q¹L«ö¦í¥kCtrl¡A¦P®ÉPress¨â¦¸Scrool Lock«öÁä¡A´N»´©ö
¥i¥HÅý¾ã­ÓWindowsXP¨t²Î§¹¥þªº±Y¼ì¡C¦ý¦P®É¤S¦bC:\Windows\¤Udump§¹¾ãªº·í«e¨t²Î°O¾ÐÅé°O¿ý¡A°O¾ÐÅé°O¿ýÀɮצW¬O
memory.dmp¡C·íµM¡A³o­Ó©_©Çªº¯S©Ê¹w³]ª¬ºA¤U¬OÃö³¬ªº¡A¦ý¬O§Ú­Ì¥i¥H³q¹L­×§ïµù¥Uªíªº¤èªk§â¥¦±Ò°Ê¡G 

1¡B¹B¦æregedt.exe ¡]WindowsXPªºµù¥Uªí½s¿è¾¹¡^ 
2¡B¿ï¾Ü¥DÁä¡G 
¡@¡@¡@HKEY_LOCAL_MACHINE\ 
¡@¡@¡@µM«á§ä¨ìSYSTEM\¤UªºCurrentControlSet\ 
¡@¡@¡@¿ï¾ÜServices\ 
¡@¡@¡@¶i¤Ji8042prt\¤¤ªºParameters 
3¡B·s«Ø¤@­ÓÂù¦ì¤¸²Õ­È 
4¡B±NÁä¦W¬°CrashOnCtrlScroll 
5¡BµM«á¦b³]¸m¤@­Ó¤£¬°¹sªº­È¡C 
6¡B°h¥X­«±Ò 

¡@¡@·í³o¤@¤Á°µ§¹«á¡A§A´N¥i¥H¹Á¸ÕÅý¨t²Î±Y¼ì¤F¡A«ö¤U«öÁä«áªº®ÄªG¬°¶Â«Ì¡A±N·|¥X²{¥H¤U¸ê°T¡G 

*** STOP: 0x000000E2 (0x00000000,0x00000000,0x00000000,0x00000000) 
The end-user manually generated the crashdump. 

¡@¡@­È±oª`·Nªº¬O¡A³o­Ó©_©Çªº¯S©Ê¦bWindowsNT4 ¤Î 2000¤¤¤]¦s¦b¡A¤£ª¾¹D¬O¤£¬O·L³nµ{¦¡®v§@´ú¸Õªº¤@­Ó¤p¥\¯à¡C¤£¹L­n
¬O¦³Àb«È©ÎªÌ¯f¬r§Q¥Î¥¦¡A¤]¬O«Ü¦MÀIªº¡C 

Telnetªº©Úµ´ªA°È§ðÀ» 

¡@¡@Windows¤¤ªºTelnet¤@ª½¥H¨Ó³£¬Oºô¸ôºÞ²z­û­Ì³Ì³ß·Rªººô¸ô¹ê¥Î¤u¨ã¤§¤@¡A¦ý¬O¤@­Ó·sªºº|¬}ªí©ú¡A¦bWindowsXP¤¤
Telnet¦b¦uÅ@¨ä¶iµ{®É¡A¦b¤w¸g³Qªì©l¤Æªº·|¸ÜÁÙ¥¼³Q­«©wªº±¡ªp¤U«Ü®e©ö¨ü¨ì¤@ºØ´¶³qªº©Úµ´ªA°È§ðÀ»¡C¦Ó¦bXP¦~ªº2¤ë¥÷¡A
©Úµ´ªA°È§ðÀ»´X¥G¦¨¬°¤F©Ò¦³¤j«¬ºô¯¸ªº´c¹Ú¡C 

¡@¡@Telnet³s±µ«á¡A¦bªì©l¤Æªº¹ï¸ÜÁÙ¥¼³Q­«©wªº±¡ªp¤U¡A¦b¤@©wªº®É¶¡¶¡¹j¤§«á¡A¦¹®É¦pªG³s±µ¥Î¤áÁÙ¨S¦³´£¨Ñµn¿ýªº¥Î¤á
¦W¤Î±K½X¡ATelnetªº¹ï¸Ü±N·|¶W®É¡Cª½¨ì¥Î¤á¿é¤J¤@­Ó¦r¤¸¤§«á³s±µ¤~·|³Q´_¦ì¡C¦pªG´c·N¥Î¤á³s±µ¨ìWindowsXPªºTelnet¦uÅ@
¶iµ{¤¤¡A¨Ã¥B¹ï¸Ó³s±µ¤£¶i¦æ´_¦ìªº¸Ü¡A¥L´N¥i¥H¦³®Ä¦a©Úµ´¨ä¥Lªº¥ô¦ó¥Î¤á³s±µ¸ÓTelnet¦øªA¾¹¡A¥D­n¬O¦]¬°¦¹®ÉTelnetªº«È
¤á³s±µ¼Æªº³Ì¤j­È¬O1¡C¦b¦¹´Á¶¡¥ô¦ó¨ä¥L¸Õ¹Ï³s±µ¸ÓTelnet¦øªA¾¹ªº¥Î¤á³£±N·|¦¬¨ì¦p¤U¿ù»~¸ê°T¡G 

Microsoft Windows XP allows only 1 Telnet Client LicenseServer has closed connection 

¡@¡@¹î¬Ý¡§¦C¥X·í«e¥Î¤á¡¨¿ï¶µ®É¨Ã¤£·|Åã¥Ü¶W®Éªº·|¸Ü¡A¦]¬°¸Ó·|¸ÜÁÙ¨S¦³¦¨¥\¦a³q¹L»{ÃÒ¡C 

IISªA°È¬ªº|Àɤº®e 

¡@¡@³o¬O¤@­ÓNSFOCUS¦w¥þ¤p²Õµo²{ªºº|¬}¡C·í·L³nIIS 4.0/5.0/5.1(»·ªF¦a°Ïª©¥»)¦b³B²z¥]§t¦³¤£§¹¾ãªºÂù¦ì¤¸²Õ½s½X¦r¤¸ªº
HTTP©R¥O½Ð¨D®É¡A·|¾É­PWEB¥Ø¿ý¤UªºÀɤº®e³Q¬ªº|µ¹»·ºÝ§ðÀ»ªÌ¡C 

¡@¡@Microsoft IIS»·ªF¦a°Ïª©¥»¥]¬A¤¤¤å(²Åé/ÁcÅé),¤é¤å¡AÁú¤åª©¡A¥Ñ©ó¯S©wªº¤å¦r®æ¦¡¨Ï¥¦­Ì³£¬O¨Ï¥ÎªºÂù¦ì¤¸²Õ½s½X®æ
¦¡¡C¦Ó·íIIS±µ¦¬¨ì¥Î¤á´£¥æªº¤@­ÓHTTP½Ð¨D®É¡A¦pªGÀɮצW¤¤¥]§t«DASCII¦r¤¸¡AIIS·|Àˬd³o­Ó¦r¤¸¬O§_¬°Âù¦ì¤¸²Õ½s½X¤¤ªº
«e¾É¦r¤¸(¨Ò¦p¡A¤é¤åªº«e¾É¦r¤¸¥]§t¨â¬q¦r¤¸¡G0x81-0x9F, 0xE0-0xFC)¡C¦pªG¬O«e¾É¦r¤¸¡A¥¦·|Ä~ÄòÀˬd¤U¤@­Ó¦r¤¸¬O§_¬°µ²
§À¦r¤¸¡C¦pªG¨S¦³¤U¤@­Ó¦r¤¸¡AIIS·|²³æ¦a¥á±ó³o­Ó«e¾É¦r¤¸¡A¦]¬°¥¦¨Ã¨S¦³ºc¦¨¤@­Ó§¹¾ãªºÂù¦ì¤¸²Õ½s½X¡CµM¦Ó¡A³oºØ³B²z
±N¾É­PIIS¥´¶}¤£¦PªºÀɦӤ£¬O¥Î¤á¦b½Ð¨D¤¤«ü©wªºÀÉ¡C 

¡@¡@§ðÀ»ªÌ³q¹L´£¥æ¤@­Ó¯S®í®æ¦¡ªºURL, ¥i¥H¨ÏIIS¨Ï¥Î¬Y­ÓISAPI°ÊºA³sµ²µ{¦¡®w¥´¶}¬YºØ¥¦©Ò¤£¯à¸ÑÄÀªºÃþ«¬ªºÀÉ¡A¨ÃÀò±o
¸ÓÀɪº¤º®e¡C¨Ì¿à¤_¨t²Î¦w¸ËªºISAPIÀ³¥Îµ{¦¡ªºÃþ«¬¡A§ðÀ»ªÌ¥i¯àÀò±oWEB®Ú¥Ø¿ý©ÎªÌµêÀÀ¥Ø¿ý¤UªºÀɤº®e¡A³o¨ÇÀÉ¥i¥H¬O
´¶³q¤å¦rÀÉ®×(.asp, .ini, .asaµ¥µ¥)¡A¤]¥i¥H¬O¤G¶i¦ìÀÉ(.exeµ¥µ¥)¡C 

¡@¡@Àb«È­Ì·|¨Ï¥ÎUnicodeªº¤èªk§Q¥Î³o­Óº|¬}¡G 

¡@¡@Unicode¡]²Î¤@ªº¦r¤¸½s½X¼Ð·Ç, ±Ä¥ÎÂù¦ì¤¸²Õ¹ï¦r¤¸¶i¦æ½s½X¡^¥i¥H»¡¬Oªñ¤@¬q®É´Á¥H¨Ó³Ì¬°¬y¦æªº§ðÀ»¤J«I¤â¬q¡A¶È°ê
¤ºªñ´Á´N¦³¦¿¥Á¤½¥qµ¥´X­Ó¤jªººô¯¸³Q³oºØ¤J«I¤â¬q§ðÀ»¡C¨º§Ú­Ì´N¨Ó½Í¤@¤U³o­Ó«Ü®e©öªº§Q¥ÎUnicodeº|¬}°t¦XIISªºº|¬}¶i
¦æ¤J«I§a¡C 

¡@¡@¤W­±§Ú­Ì´£¨ì¹L¥Ñ©ó¬Y¨ÇÂù¦ì¤¸²ÕªºWindowsXP¦b³B²z¬Y¨Ç¯S®í¦r¤¸®É»P­^¤åª©¥»¤£¦P¡AµM¦Ó§Q¥Î³oºØIISªºº|¬}¡A§ðÀ»ªÌ
´N¥i¥H³q¹L³o¨Ç¯S®í¦r¤¸Â¶¹LIISªº¥Ø¿ý¼f­p»·ºÝ°õ¦æ¥ô·N©R¥O¡C 

http://server/scripts/..%c1%1c../windows/system32/cmd.exe?/c+dir+c:\ 

¡@¡@Àb«È­Ì¨ä¹ê¥u­n¤U­±¨â¥y«Ü²³æªº«ü¥O¶¹LIISªº¼f­p´N¯à°÷¹ïºô¯¸ªº­¶­±¶i¦æ§ï¼g¡A©Ò¿×ªº¶Â¤F¤@­Óºô¯¸´N¬O³o»òªºÂ²
³æ¡C 

http://server/scripts/..%c1%1c../windows/system32/cmd.exe?/c+copy+c:\windows\system32\cmd.exe+d:\inetpub\scripts\123.exe 
http://server/scripts/123.exe?/c+echo+Àb±¼°Õ?+>+c:\inetpub\wwwroot\default.asp 

¡@¡@³o­Ó°ÝÃD¤w¸g¦bIIS 4.0 + SP6¤¤±o¨ì¸Ñ¨M¡AµM¦Ó·L³n«oÅý¥¦¦bIIS 5.0/5.1¤¤¦A«×¥X²{¡C 

¡@¡@¦ý¸Óº|¬}¤£·|¼vÅT¥]¬A­^»yª©¦b¤ºªº¨ä¥L»y¨¥ª©¥»ªºIIS 4.0/5.0/5.1¡C 

MS SQL ServerªºSAªÅ±K½X§ðÀ» 

¡@¡@¦bWindowsXP¤¤¡A¥ø·~¯Åªº¥Î¤á¤@¯ë³£·|¥Î¨ì¥t¤@­Ó·L³nªº²£«~¡A³o­Ó²£«~´N¬O¸ê®Æ®wºÞ²z³nÅé MS SQL Server¡A¦ý¬O¦b»P
MS SQL Server°t¦X¨Ï¥Î¤¤¡A§Ú­Ìµo²{¤F«Ü¦hªº°ÝÃD¡C³Ì«á§Ú­Ì´N²³æÁ¿¤@¤U¦w¸Ë¤FMS SQL ServerªºWindowsXPªººô¸ô§@·~¨t²Î
´¶¹M­±Á{ªº¦w¥þ°ÝÃD¡C 

¡@¡@¦b¦w¸ËMS SQL Server«á¡AMS SQL Server·|±N²£¥Í¤@­Ó¹w³]ªºSA¥Î¤á¡A¦Ó¥Bªì©l±K½X¦bºÞ²z­û¨S¦³³]¸mªº±¡ªp¤U¬°ªÅ¡C¦ý
¬OSA¬OSQL Server¤¤«D±`­«­nªº¦w¥þ¼Ò²Õ¦¨­û¡A³o¼Ë¤@¨ÓÀb«È­Ì´N¥i¥H³q¹LSQL Serverªº¥Î¤áºÝ¶i¦æ¸ê®Æ®w»·ºÝ³s±µ¡AµM«á¦A³q
¹LSQLªº»·ºÝ¸ê®Æ®wºÞ²z©R¥Oxp_cmdshell stored procedure(ÂX®i¦sÀx¹Lµ{)¨Ó¶i¦æ©R¥O¾Þ§@: 

xp_cmdshell "net user id password /add" 
Xp_cmdshell "net localgroup Administrators id /add" 

¡@¡@´N¥H¤W¨â±ø²³æªº©R¥O¤J«IªÌ´N¯à¦bMS SQL Serverªº¦øªA¾¹¤W°¨¤W·s«Ø¤@­ÓºÞ²z­û¯Å§OªºAdministrators²Õªº¥Î¤á¡C©Ò¥H§Ú
­Ì³oùØ´£¿ô¦U¦ìºôºÞ¤j¤H¡A¦b¦w¸Ë¦nSQL Server±z»Ý­n°µªº²Ä¤@¥ó¨Æ´N¬O§âSAªºªÅ±K½X¥ß§Y¶i¦æ­×§ï¡C³o­Ó°ÝÃD´N¤£­n§Ú§i¶D
§AÀ³¸Ó¦b­þ¨½§ï¤F§a? 

¡@¡@¦Ó¥B¦b¤@¯ë±¡ªp¤U¡A¤@¨Ç¥\¯à¹ïºÞ²z­û¨Ó»¡¤]¬O¨S¦³¥²­nªº¡C¦pªG§A¤£»Ý­nMS SQL Server ªºxp_cmdshell(use 
sp_dropextendedproc "xp_cmdshell")³o¶µ¥\¯à´N¤£­n§âxp_cmdshell extended stored proc(ÂX®i¦sÀx¹Lµ{)©R¥O¥\¯à¯dµÛ¡C 

¡@¡@§Ú­Ì¥u»Ý­n¦bisqlµøµ¡¤¤¿é¤J¡G 

use master 
sp_dropextendedproc 'xp_cmdshell'