FW: Accessing registry through command line

From: John Redd (reddjohn@yahoo.com)
Date: 10/07/01


Message-ID: <20011007011401.908.qmail@web20503.mail.yahoo.com>
Date: Sat, 6 Oct 2001 18:14:01 -0700 (PDT)
From: John Redd <reddjohn@yahoo.com>
Subject: FW: Accessing registry through command line 
To: pmawson@deloitte.co.nz


> another good command to use with the Unicode exploit
> is
>
>winmsd /a /f
>
>This writes a system report to text file.
>
>This gives you a lot of really useful information.
>
>The text file will be the name of the computer and is
>written to your working directory.
>
>Note: This only works on IIS 4 (NT 4).

You can still use winmsd from a command line with W2K,
or msinfo32 (its replacement/cousin) which is found in
%systemroot%\system32\dllcache. To export all
categories (you can output only parts if you wish), at
a command line (or via unicode browser)

winmsd /report [file], ie winmsd /report c:\report.txt

Or you can substitute msinfo32 (ensuring to cd to
\dllcache since it is not in the path by default).
More information on command switches is found using
the /? for either command.

As noted previously, it will take a bit to run. A
report run for all categories is in excess of 250K.

Regards,

John

__________________________________________________
Do You Yahoo!?
NEW from Yahoo! GeoCities - quick and easy web site hosting, just $8.95/month.
http://geocities.yahoo.com/ps/info1

----------------------------------------------------------------------------
This list is provided by the SecurityFocus Security Intelligence Alert (SIA)
Service. For more information on SecurityFocus' SIA service which
automatically alerts you to the latest security vulnerabilities please see:
https://alerts.securityfocus.com/



Relevant Pages

  • RE: Command line network sniffing tools on NT/W2K
    ... Command line network sniffing tools on NT/W2K ... why not install WinVNC...you can install it and ... This list is provided by the SecurityFocus Security Intelligence Alert ... For more information on SecurityFocus' SIA service which ...
    (Pen-Test)
  • htp.print in pen-test
    ... When i insert the htp.print in the browser command line. ... This list is provided by the SecurityFocus Security Intelligence Alert ... For more information on SecurityFocus' SIA service which ...
    (Pen-Test)
  • Command line network sniffing tools on NT/W2K
    ... command line is available on an exploited dual homed NT or W2K box. ... This list is provided by the SecurityFocus Security Intelligence Alert ... For more information on SecurityFocus' SIA service which ...
    (Pen-Test)
  • cmdasp.asp & unicode
    ... Subject: cmdasp.asp & unicode ... Chances are either you need to run the attrib command ... shell via netcat, or via similar software. ... This list is provided by the SecurityFocus Security Intelligence Alert ...
    (Pen-Test)
  • Re: Command line network sniffing tools on NT/W2K
    ... Just a thought...if you have remote command line, ... why not install WinVNC...you can install it and ... This list is provided by the SecurityFocus Security Intelligence Alert ... For more information on SecurityFocus' SIA service which ...
    (Pen-Test)