Search in shivacherukuri.tech@blogger.com

Thursday, December 16, 2010

Unix commands

 

Friends i have got these tools from my friend 2day.these tools r really wonderful. So checkout frnds.this could help u
in cmd operations.
These tools are:
usage:
[command] <parameter1> <parameter2> ...
commands:
sysinfo - shows system informations
cadmin - create an admin user
plist - shows running processes
pkill - kills a process
pmod - lists the loaded modules of a process
pexec - executes a command line
pexecp - executes a command line (setable parent by process id)
pexecp2 - executes a command line (setable parent by process name)
injmod - loads a dll into a process (by process id)
injmod2 - loads a dll into a process (by process name)
freemod - frees a dll in a process
sysmod - list the loaded system kernel modules
freesmod - frees a loaded system kernel module
hclose - closes a handle in a process
infect - modifies an exe file to load a specified dll file on start
slist - shows services
sstart - starts a service
sstop - stops a service
sdelete - removes a service
sstrcfg - sets a service startup config
sdspcfg - sets a service display name
sdesccfg - sets a service description
lads - lists the alternate data streams of files in a directory
dir - lists a directory content
mkdir - creates a directory
rmdir - removes a directory
tag - "tags" a directory
copy - copies a file into another (also ntfs streams)
copydriv - same as copy but in ring0/driver
filetime - sets a file creation and last write time
specdacl - forbids access to a filder except of one user (e.g. system)
eregval - enumerates values of a registry key
dregval - deletes a registry value
dregkey - deletes a registry key
autorun - adds a registry autorun
evtlog - clears the system event log (NOT logfiles!)
shutdown - shutdowns windows
fservu - finds the serv-u process
ports - shows LISTENING ports
wfp - terminates the Windows File Protection worker thread
wfp2 - disables the Windows File Protection of the system directory
wfpboot - disables the Windows File Protection boot scan
pwdcache - displays the cached passwords in winlogon (Win2k)
pwdump - displays the user password hashes of the SAM database
secdump - displays the lsa secrets
download - downloads a file from an url
cfg - change hackingtools config
dummyp - runs a dummy process and loads a dll
pmem - searches value(s) in virtual memory of a process
email - send a email with or without an attachment
scrcap - captures the screens
ownz - shows a penetrating screen for some time
rdaemon - register an daemon service
cdaemon - change a daemon config file (don't use with other services)
_sdaemon - <daemon service routine - don't use>
help - shows this help
--------------------------------------------------------------------------------
as you see it has alot of usefull functions

-plist shows all hidden processes by rootkits
-download u can download files from http
-sysinfo gives you a complete sysinfo


--
siva
09886179349

No comments:

Post a Comment