Tsiku lina bwanayo anafunsa kuti: “Kodi n’chifukwa chiyani anthu ena ali ndi mwayi wogwiritsa ntchito kompyuta yakutali, popanda chilolezo chowonjezera choti agwiritse ntchito?”
Ntchito imayamba "kutseka" malowo.

Pali mapulogalamu ambiri owongolera pa intaneti: desktop yakutali ya Chrome, AmmyAdmin, LiteManager, TeamViewer, Anyplace Control, ndi zina zambiri. kuchokera pa intaneti ndi ogwiritsa ntchito "kukukuta mano" mwanjira ina kapena "kuwala" ndi ma admins, ndiye zokondedwa za ambiri kuti azigwiritsa ntchito payekha - AnyDesk ikufunikabe chidwi chapadera, makamaka ngati abwana ati "Ayi!"

Ngati mukudziwa chomwe kutsekereza paketi ya netiweki ndi zomwe zili ndipo mukukhutira nazo, ndiye kuti zina zonsezo
osati cholinga zanu.
Kuyesera kuchoka mosiyana, kwenikweni imanena zomwe ziyenera kuloledwa kuti pulogalamuyo igwire ntchito; motero, mbiri ya DNS idatsekedwa *.net.anydesk.com. Koma AnyDesk siyosavuta; sizimasamala kuletsa dzina la domain.
Nthawi ina, ndinathetsa vuto lakutsekereza "Anyplace Control", yomwe idabwera kwa ife ndi mapulogalamu okayikitsa, ndipo idathetsedwa ndikuletsa ma IP angapo (ndinathandizira antivayirasi). Vuto ndi AnyDesk, nditasonkhanitsa pamanja ma adilesi opitilira khumi ndi awiri a IP, adandiuza chokani ku ntchito yamanja yachizolowezi.
Zinapezekanso kuti mu "C:ProgramDataAnyDesk" pali mafayilo angapo okhala ndi zoikamo, ndi zina zambiri, komanso mufayiloyo. ad_svc.trace Zochitika zokhudzana ndi kulumikizana ndi zolephera zimasonkhanitsidwa.
1. Kuyang'ana
Monga tanenera kale, kutsekereza * .anydesk.com sikunapereke zotsatira zilizonse pakugwira ntchito kwa pulogalamuyi, adaganiza zowunikira. khalidwe la pulogalamu muzochitika zovuta. TCPView kuchokera ku Sysinternals m'manja mwanu ndikupita!

1.1. Zitha kuwoneka kuti njira zingapo zochititsa chidwi kwa ife "zikupachikika", ndipo imodzi yokha yomwe imalankhulana ndi adiresi kuchokera kunja ndi yosangalatsa kwa ife. Madoko omwe amawagwirizanitsa amasankhidwa, kuchokera pazomwe ndinawona: 80, 443, 6568. 🙂 Sitingathedi kuletsa 80 ndi 443.
1.2. Pambuyo poletsa adilesi kudzera pa rauta, adilesi ina imasankhidwa mwakachetechete.

1.3. Console ndiye ZONSE ZONSE! Timazindikira PID ndiye ndinali ndi mwayi pang'ono kuti AnyDesk idayikidwa ndi ntchitoyi, kotero PID yomwe tinkafuna inali yokhayo.
1.4. Timazindikira adilesi ya IP ya seva yautumiki kuchokera pakupanga PID.

2. Kukonzekera
Popeza pulogalamu yozindikiritsa ma adilesi a IP mwina ingogwira ntchito pa PC yanga, ndilibe zoletsa kumasuka ndi ulesi, kotero C #.
2.1. Njira zonse zodziwira adilesi ya IP yofunikira zimadziwika kale, ziyenera kukhazikitsidwa.
string pid1_;//узнаем PID сервиса AnyDesk
using (var p = new Process())
{p.StartInfo.FileName = "cmd.exe";
p.StartInfo.Arguments = " /c "tasklist.exe /fi "imagename eq AnyDesk.exe" /NH /FO CsV | findstr "Services""";
p.StartInfo.UseShellExecute = false;
p.StartInfo.RedirectStandardOutput = true;
p.StartInfo.CreateNoWindow = true;
p.StartInfo.StandardOutputEncoding = Encoding.GetEncoding("CP866");
p.Start();
string output = p.StandardOutput.ReadToEnd();
string[] pid1 = output.Split(',');//переводим ответ в массив
pid1_ = pid1[1].Replace(""", "");//берем 2й элемент без кавычек
}Momwemonso, timapeza ntchito yomwe idakhazikitsa kulumikizana, ndingopereka mzere waukulu
p.StartInfo.Arguments = "/c " netstat -n -o | findstr /I " + pid1_ + " | findstr "ESTABLISHED""";Zotsatira zake zidzakhala:
![]()
Kuchokera pamzere, mofanana ndi sitepe yapitayi, chotsani ndime ya 3 ndikuchotsa chirichonse pambuyo pa ":". Zotsatira zake, tili ndi IP yomwe tikufuna.
2.2. Kutsekereza kwa IP mkati Windows... Ngati mu Linux Ngati muli ndi Blackhole ndi iptables, ndiye kuti pali njira yoletsera ma IP address mu mzere umodzi, popanda kugwiritsa ntchito firewall, mu Windows zinakhala zachilendo,
koma zida zomwe zidalipo...
route add наш_найденный_IP_адрес mask 255.255.255.255 10.113.113.113 if 1 -pKey parameter "ngati 1" tumizani njira yopita ku Loopback (Mutha kuwonetsa zolumikizira zomwe zilipo posindikiza njira). NDIPO ZOFUNIKA! Tsopano pulogalamuyo ikuyenera kukhazikitsidwa ndi ufulu woyang'anira, popeza kusintha njira kumafuna kukwera.
2.3. Kuwonetsa ndi kusunga ma adilesi odziwika a IP ndi ntchito yaing'ono ndipo sifunikira kufotokozera. Ngati mukuganiza za izi, mutha kukonza fayiloyo ad_svc.trace AnyDesk palokha, koma sindinaganizirepo nthawi yomweyo + mwina pali malire.
2.4. Khalidwe losafanana la pulogalamuyo ndilakuti mukamaliza ntchito, njira yogwirira ntchito mu Windows 10 imayambiranso yokha, mu Windows 8 ikutha, kusiya njira yokhazikitsira console yokha ndipo popanda kulumikizanso, kawirikawiri sizomveka ndipo izi sizolondola.
Kuchotsa njira yomwe yalumikizidwa ndi seva kumakupatsani mwayi "kukakamiza" kulumikizanso ku adilesi yotsatira. Zimakhazikitsidwa mofanana ndi malamulo am'mbuyomu, kotero ndingopereka:
p.StartInfo.Arguments = "/c taskkill /PID " + pid1_ + " /F";Kuphatikiza apo, yambitsani pulogalamu ya AnyDesk.
//запускаем программу которая расположена по пути path_pro
if (File.Exists(path_pro)){
Process p1 = Process.Start(path_pro);}2.5. Tidzayang'ana mawonekedwe a AnyDesk kamodzi pa mphindi (kapena nthawi zambiri?), ndipo ngati ilumikizidwa, i.e. kugwirizana KWAKHALA - kuletsa IP iyi, komanso kachiwiri - dikirani mpaka itagwirizanitsa, kutsekereza ndikudikirira.
3. Kuukira
Khodiyo idapangidwa "zojambula" ndipo adaganiza kuti awonetse momwe ntchitoyi ikuyendera "+" onetsani IP yomwe yapezeka ndi yotsekedwa, ndi "."- bwerezani cheke popanda kulumikizana ndi anansi opambana kuchokera ku AnyDesk.

→
Zotsatira zake…

Pulogalamuyi inagwira ntchito pa makompyuta angapo okhala ndi zinthu zosiyanasiyana Windows OS, yokhala ndi mitundu 5 ndi 6 ya AnyDesk. Pambuyo pa ma frequency 500, ma adilesi pafupifupi 80 adasonkhanitsidwa. Pambuyo pa 2500, 87, ndi zina zotero...
Patapita nthawi, chiwerengero cha ma IP otsekedwa chinafika 100+.
Lumikizani komaliza text file ndi ma adilesi: и
Zatheka! Dziwe la ma adilesi a IP linawonjezeredwa ku malamulo a rauta yayikulu kudzera pa script ndipo AnyDesk sangapange kulumikizana kwakunja.
Pali mfundo yachilendo, kuchokera ku zipika zoyamba zikuwonekeratu kuti adiresi ikukhudzidwa ndi kusamutsidwa kwa chidziwitso boot-01.net.anydesk.comTaletsa ma host onse a *.net.anydesk.com monga lamulo, koma si zachilendo. Nthawi iliyonse tikamalemba dzina la domain iyi kuchokera pamakompyuta osiyanasiyana, imabweza adilesi yosiyana ya IP. Linux:
host boot-01.net.anydesk.com
monga DNSLookup amangopereka adilesi imodzi ya IP, koma adilesi iyi ndi yosinthika. Tikamasanthula kulumikizana kwa TCPView, timabwezedwa ma PTR ma adilesi a IP amtunduwo relay-*.net.anydesk.com.
Mwachidziwitso: popeza ping nthawi zina imapita kwa munthu wosadziwika wosatsekedwa boot-01.net.anydesk.com Tikhoza kupeza ma IP address awa ndikuwaletsa. Izi zitha kuchitika pogwiritsa ntchito script yokhazikika pansi pa OS. Linux, palibe chifukwa chokhazikitsa AnyDesk pano. Kusanthula kwasonyeza kuti ma adilesi a IP awa nthawi zambiri amakhalakudutsa"ndi omwe apezeka pamndandanda wathu. Mwina ndi omwe adalandira nawo pulogalamuyi pomwe pulogalamuyo imalumikizana isanayambe "kukonza" ma IP odziwika. Ndidzawonjezeranso nkhaniyi ndi gawo lachiwiri lakusaka kwa omvera, ngakhale pakadali pano pulogalamu palokha si kukhazikitsa mu netiweki kunja kujowina ambiri.
Ndikukhulupirira kuti simunawone chilichonse choletsedwa pamwambapa, ndipo opanga AnyDesk achita zomwe ndikuchita ngati masewera.
Source: www.habr.com
