hacking contest

hacking exploits security forum
hacking
compliance articles
upgrade backup exec
information security consultant

Psychotec
I found a list of Windows XP/2000 commands and tools while googling tongue.gif

If you know more pls reply smile.gif

anyway here you go:
  • bootcfg (XP only)
    This utility allows you to set up your boot options, such as your default OS and other loading options.
  • cacls (XP, 2000, & NT4.0)
    Changes the ACLs (security Settings) of files and folders. Very similar to chmod in Linux.
  • comp (XP & 2000)
    This utility is very similar to diff in Linux. Use the /? switch to get examples of command usage.
  • contig (NT4.0 and newer)
    A great defrag utility for NTFS partitions.
  • defrag (XP only - NT4.0 and Win2k use contig)
    Yes, XP comes with a command line disk defrag utility. If you are running Win2k or NT4.0 there is still hope. Contig is a free defrag program that I describe on the defrag page.
  • diskpart (XP only)
    Use this command to manage your disk partitions. This is the text version for the GUI Disk Manager.
  • driverquery (XP only)
    Produces a list of drivers, their properties, and their versions. Great for computer documentation.
  • fsutil (XP only)
    This is a utility with a lot of capability. Come back soon for great examples.
  • getmac (XP & 2000)
    This command gets the Media Access Control (MAC) address of your network cards.
  • gpresult (XP & 2000)
    This generates a summary of the user settings and computer group policy settings.
  • ipconfig (XP, 2000 & NT4.0)
    This handy tool displays IP settings of the current computer and much more.
  • MMC (XP, 2000 & NT4.0) - Microsoft Management Console
    Console
    This is the master tool for Windows, it is the main interface in which all other tools use starting primarily in Windows 2000 and newer systems.
  • msconfig (XP only)
    The ultimate tool to change the services and utilities that start when your Windows machine boots up. You can also copy the executable from XP and use it in Win2k.
  • netsh (XP & 2000)
    A network configuration tool console. At the 'netsh>' prompt, use the '?' to list the available commands and type "exit" to get back to a command prompt.
  • openfiles (XP Only)
    Allows an administrator to display or disconnect open files in XP professional. Type "openfiles /?" for a list of possible parameters.
  • Pathping (XP & 2000)
    A cross between the ping and traceroute utilities. Who needs Neotrace when you can use this? Type "pathping <ip address>" and watch it go.
  • recover (XP & 2000)
    This command can recover readable information from a damaged disk and is very easy to use.
  • reg (XP & 2000)
    A console registry tool, great for scripting Registry edits.
  • schtasks (XP only)
    A newer version of the AT command. This allows an administrator to schedule and manage scheduled tasks on a local and remote machines.
  • secedit (XP & 2000)
    Use this utility to manually apply computer and user policy from your windows 2000 (or newer) domain. Example to update the machine policy: secedit /refreshpolicy machine_policy /enforce
    To view help on this, just type secedit.
  • sfc (XP & 2000)
    The system file checker scans important system files and replaces the ones you (or your applications) hacked beyond repair with the real, official Microsoft versions.
  • shutdown (XP & 2000)
    With this tool, You can shut down or restart your own computer, or an administrator can shut down or restart a remote computer.
  • sigverif (XP only)
    Microsoft has created a driver signatures. A signed driver is Microsot tested and approved. With the sigverif tool you can have all driver files analysed to verify that they are digitally signed. Just type 'sigverif' at the command prompt.
  • systeminfo (XP only) <----- very nice one!!!!!!!!!!!
    Basic system configuration information, such as the system type, the processor type, time zone, virtual memory settings, system uptime, and much more. This program is great for creating an inventory of computers on your network.
  • tasklist (XP only)
    Tasklist is the command console equivalent to the task manager in windows.
  • taskkill (XP only)
    Taskkill contains the rest of the task manager functionality. It allows you to kill those unneeded or locked up applications.
enjoy

regards,
psycho
NW_DJW
Thnx m8, nice command list, allways handy biggrin.gif
setthesun
Also most of XP Only commands have in Win2003
Spawn
tnx for the command lists m8 smile.gif
nice one
ringo
QUOTE (Psychotec @ May 5 2004, 09:37 AM)
I found a list of Windows XP/2000 commands and tools while googling tongue.gif

First, thanks for the listing. I haven't been interested at all in reviewing the details of XP, but this has gotten me interested again. A few comments...
QUOTE
diskpart (XP only)
QUOTE
driverquery (XP only)
getmac (XP & 2000)
gpresult (XP & 2000)
netsh (XP & 2000)
tasklist (XP only), taskkill (XP only)

What is significant about these is that they can be used against a remote box.

NETSH is particularly interesting. Dig the context help:
QUOTE

add            - Adds a configuration entry to a list of entries.
bridge        - Changes to the `netsh bridge' context.
delete        - Deletes a configuration entry from a list of entries.
diag          - Changes to the `netsh diag' context.
dump          - Displays a configuration script.
exec          - Runs a script file.
firewall      - Changes to the `netsh firewall' context.
help          - Displays a list of commands.
interface      - Changes to the `netsh interface' context.
ras            - Changes to the `netsh ras' context.
routing        - Changes to the `netsh routing' context.
set            - Updates configuration settings.
show          - Displays information.


Lastly, SHUTDOWN is a dinosaur in Windows circles...Want a cheap thrill? Add "shutdown -r -t: 01" to a buddy's"Run" registry entry.

r
bonarez
here's a little list I made a while ago, also shows the difference in 9x/NT

more nice one's:

services.msc
compmgmt.msc
control

actually you can do a search for *.msc files on your win, you'll find more of them, and you can always create your own using MMC
topmsg
auditpol.exe: manage the system audits logs (net fuctions)
AuditPol [\\computer] [/enable | /disable] [/help | /?] [/Category:Opti

/Enable = Enable audit (default).

/Disable = Disable audit.

Category = System : System events
Logon : Logon/Logoff events
Object : Object access
Privilege : Use of privileges
Process : Process tracking
Policy : Security policy changes
Sam : SAM changes
Directory : Directory access
Account : Account logon events

Option = Success : Audit success events
Failure : Audit failure events
All : Audit success and failure events
None : Do not audit these events

Samples are as follows:

AUDITPOL \\MyComputer
AUDITPOL \\MyComputer /enable /system:all /object:failure
AUDITPOL \\MyComputer /disable
AUDITPOL /logon:failure /system:all /sam:success /privilege:none

AUDITPOL /HELP | MORE displays Help one screen at a time.


clearlogs.exe :del aplicatios/security/system logs (net fuctions)
ClearLogs 1.0 - © 2002, Arne Vidstrom (arne.vidstrom@ntsecurity.nu)
- http://ntsecurity.nu/toolbox/clearlogs/

Usage: clearlogs [\\computername] <-app / -sec / -sys>

-app = application log
-sec = security log
-sys = system log
fport.exe like netstat but show the aplication who open the ports
ClearLogs 1.0 - © 2002, Arne Vidstrom (arne.vidstrom@ntsecurity.nu)
- http://ntsecurity.nu/toolbox/clearlogs/

Usage: clearlogs [\\computername] <-app / -sec / -sys>

-app = application log
-sec = security log
-sys = system log

mnger.exe
Usage: mnger.exe -s[lvdsSp]p[kwl[v]]ri [arguments]

-sl * List all services.
-sv <ServiceName> * View service configuration details.
-sd <ServiceName> * Delete a service.
-ss <ServiceName> * Stops a service.
-sS <ServiceName> * Start a service.
-sp <ServiceName> * Pause a service.
-si <ServiceName> <DisplayName> <Path> * Install a new service.
-sm <ServiceName> * modify service configuration.
-pl [PID|process] * List [All] Running proccesses.
-plv [PID|process] * List verbose information about [All] Running processes.
-pk <PID|process> * Kill a process.
-pw * Shows Process owner (whoami).
-r <IP> <PORT> * Spawns a shell in the remote Host(nc listening in the

other side)
-i * System Information


tlist.exe
Microsoft ® Windows NT ™ Version 5.1 TLIST
Copyright © Microsoft Corporation. All rights reserved.

usage: TLIST <<-m <pattern>> | <-t> | <pid> | <pattern> | <-p <processname>>>

| <-k> | <-s>
[options]:
-t
Print Task Tree
<pid>
List module information for this task.
<pattern>
The pattern can be a complete task
name or a regular expression pattern
to use as a match. Tlist matches the
supplied pattern against the task names
and the window titles.
-c
Show command lines for each process
-e
Show session IDs for each process
-k
Show MTS packages active in each process.
-m <pattern>
Lists all tasks that have DLL modules loaded
in them that match the given pattern name
-s
Show services active in each process.
-p <processname>
Returns the PID of the process specified or -1
if the specified process doesn't exist. If there
are multiple instances of the process running only
the instance with the first PID value is returned.
-v
Show all process information
F34R
system info looks pretty handy. I'll check that one out smile.gif
x303
systeminfo is a good one! biggrin.gif
and mmc is good one too
---
nbtstat - For NetBios (Hacking)
int23h
thanks, I didn't know about reg.exe, great for adding autostart entries in HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
LittleHacker
btw some commands become more useful such as
CODE

netstat -o ...


switch -o is not available in other versions but xp. it shows Pid of sockets.
saetji
must be in XP pro coz i have XP home and dont have most of em ... or it could be thanx to an addon
zores
good stuff at all - thx
Dinos
I thought that i knew all of them, but it seems that i didn't. Thanks for your info smile.gif
Eyeless
Soooo, when I asked for them noone could tell me... Anyway, thanks alot FINALLY what I needed, those arnt in Windows help now are they tweakz... What was your search string anyway as I searched and searched and searched.... Especially like the clearlogs (VERY HELPFUL AND TIME SAVING!) and auditpol and mnger, good for when net wont werk...
6066up9r
great shortcuts that i didn't know were there! (most) wink.gif
n0vun
very useful command list! thanx doo
Psychotec
QUOTE (Eyeless @ May 5 2004, 07:52 PM)
Soooo, when I asked for them noone could tell me... Anyway, thanks alot FINALLY what I needed, those arnt in Windows help now are they tweakz... What was your search string anyway as I searched and searched and searched.... Especially like the clearlogs (VERY HELPFUL AND TIME SAVING!) and auditpol and mnger, good for when net wont werk...

hehehe i was looking for "network related DOS commands" ...I opened a site with DOS commands and there was a link to "advanced dos commands"...so i opened that one and found a link to "windows xp/2000 advanced commands" tongue.gif
Serhat
about the sfc command
if your windows dll's get damaged or lost just do sfc /scannow...
this will search for damaged/changed(like by a virus etc)/lost important windows files and will recover them ( you might need your Windows CD )

Serhat
st4n
uhm, there's also a tool (I think since w2k) which fires up a window after rebooting, where to set the machine settings (e.g. network etc.)

Does anybody know how this called?
brainbuster
I picked up a collection of cmdline-tools and added scripts for uploading and "compiling" (debug command) them
on remote server thru shell.
The scripts are created in the way "101" described here

Usage of the scripts:
Just paste the script in remote root shell and a "FILE".bat will be created, wich creates the
"FILE".exe .
tipp: don't use nc for pasting the script's into cmd. use telnet,SecureCRT, SSH1-2 , cuz nc can't handle too much data.

cmdtools.zip

hf :-)
_ET_
Very nice stuff

Some commands are gonna come in handy...

Gonna add this stuff to my little infomap on my puter biggrin.gif
espey
Good toll 4 me. Very Big THX
FiNaLBeTa
I have no usefull input to say herer but thnx.
The reason i post anyway is that i shared this info with some friends. To do so i have put the commands in a pdf. Maybe you to find it usefull to keep.

Greetz
Loxy
"Screencap.exe - makes a screenshot of the screen and saves it to screenshot.bmp"

I tried this file locally and it worked fine. I tried it remotely and it did absolutely nothing. I tried with "site exec" on Serv-U and my own FTPd that I coded, I also tried remote PC via netcat and nothing. Is there anything special I need for this to work? (dll or anything)
This is a "lo-fi" version of our main content. To view the full version with more information, formatting and images, please click here.

 
Invision Power Board © 2001-2005 Invision Power Services, Inc.