暂无图片
暂无图片
暂无图片
暂无图片
暂无图片

whoami与wmi

原创 zayki 2023-09-19
317
D:\Users\zhaoyuanji.AEONLIFE\Desktop>wmic service list brief
ExitCode    Name                                                    ProcessId  StartMode  State    Status
0           .Winhlpsvr                                              0          Auto       Stopped  OK
0           360EntClientSvc                                         8500       Manual     Running  OK
1077        AJRouter                                                0          Manual     Stopped  OK
1077        ALG                                                     0          Manual     Stopped  OK
1077        AppIDSvc                                                0          Manual     Stopped  OK
0           Appinfo                                                 4768       Manual     Running  OK
1077        AppMgmt                                                 0          Manual     Stopped  OK
1077        AppReadiness                                            0          Manual     Stopped  OK
1077        AppVClient                                              0          Disabled   Stopped  OK
1077        AppXSvc                                                 0          Disabled   Stopped  OK
1077        aspnet_state                                            0          Manual     Stopped  OK
1077        AssignedAccessManagerSvc                                0          Manual     Stopped  OK
0           AudioEndpointBuilder                                    2300       Auto       Running  OK
0           Audiosrv                                                2436       Auto       Running  OK
1077        AxInstSV                                                0          Manual     Stopped  OK
1077        BDESVC                                                  0          Disabled   Stopped  OK

....................



D:\Users\zhaoyuanji.AEONLIFE\Desktop>whoami
aeonlife\zhaoyuanji

D:\Users\zhaoyuanji.AEONLIFE\Desktop>
D:\Users\zhaoyuanji.AEONLIFE\Desktop>
D:\Users\zhaoyuanji.AEONLIFE\Desktop>whoami /priv

特权信息
----------------------

特权名                        描述                 状态
============================= ==================== ======
SeLockMemoryPrivilege         锁定内存页           已禁用
SeShutdownPrivilege           关闭系统             已启用
SeChangeNotifyPrivilege       绕过遍历检查         已启用
SeUndockPrivilege             从扩展坞上取下计算机 已禁用
SeIncreaseWorkingSetPrivilege 增加进程工作集       已禁用
SeTimeZonePrivilege           更改时区             已禁用

D:\Users\zhaoyuanji.AEONLIFE\Desktop>
D:\Users\zhaoyuanji.AEONLIFE\Desktop>whoami /groups

组信息
-----------------

组名                                   类型   SID                                           属性
====================================== ====== ============================================= ======================================
Everyone                               已知组 S-1-1-0                                       必需的组, 启用于默认, 启用的组
BUILTIN\Administrators                 别名   S-1-5-32-544                                  只用于拒绝的组
BUILTIN\Performance Log Users          别名   S-1-5-32-559                                  必需的组, 启用于默认, 启用的组
BUILTIN\Remote Desktop Users           别名   S-1-5-32-555                                  必需的组, 启用于默认, 启用的组
BUILTIN\Users                          别名   S-1-5-32-545                                  必需的组, 启用于默认, 启用的组
NT AUTHORITY\INTERACTIVE               已知组 S-1-5-4                                       必需的组, 启用于默认, 启用的组
CONSOLE LOGON                          已知组 S-1-2-1                                       必需的组, 启用于默认, 启用的组
NT AUTHORITY\Authenticated Users       已知组 S-1-5-11                                      必需的组, 启用于默认, 启用的组
NT AUTHORITY\This Organization         已知组 S-1-5-15                                      必需的组, 启用于默认, 启用的组
LOCAL                                  已知组 S-1-2-0                                       必需的组, 启用于默认, 启用的组
AEONLIFE\G-LBN-HDL                     组     S-1-5-21-477470201-3183759430-3612960601-1386 必需的组, 启用于默认, 启用的组
AEONLIFE\G-LBN-HDL-XXJSB               组     S-1-5-21-477470201-3183759430-3612960601-1208 必需的组, 启用于默认, 启用的组
身份验证机构声明的标识                 已知组 S-1-18-1                                      必需的组, 启用于默认, 启用的组
AEONLIFE\L-F-P-HDL-RW                  别名   S-1-5-21-477470201-3183759430-3612960601-1385 必需的组, 启用于默认, 启用的组, 本地组
AEONLIFE\L-F-P-XXJSB-RW                别名   S-1-5-21-477470201-3183759430-3612960601-1209 必需的组, 启用于默认, 启用的组, 本地组



D:\Users\zhaoyuanji.AEONLIFE\Desktop>wmic service list brief|findstr "Running"
0           360EntClientSvc                                         8500       Manual     Running  OK
0           Appinfo                                                 4768       Manual     Running  OK
0           AppMgmt                                                 5752       Manual     Running  OK
0           AudioEndpointBuilder                                    2300       Auto       Running  OK
0           Audiosrv                                                2436       Auto       Running  OK
0           BFE                                                     1532       Auto       Running  OK
0           BrokerInfrastructure                                    1164       Auto       Running  OK
0           ClickToRunSvc                                           11820      Manual     Running  OK
0           CoreMessagingRegistrar                                  1896       Auto       Running  OK
0           CryptSvc                                                1948       Auto       Running  OK
0           DcomLaunch                                              1164       Auto       Running  OK
0           EventLog                                                1740       Auto       Running  OK
0           EventSystem                                             1988       Auto       Running  OK
0           LanmanWorkstation                                       2868       Auto       Running  OK
0           lmhosts                                                 2632       Auto       Running  OK
0           LSM                                                     1420       Unknown    Running  UNKNOWN
0           msiserver                                               12548      Manual     Running  OK
0           Netlogon                                                124        Auto       Running  OK
0           Netman                                                  8732       Manual     Running  OK
0           nsi                                                     2240       Auto       Running  OK
0           PlugPlay                                                1132       Manual     Running  OK
0           PolicyAgent                                             112        Manual     Running  OK
0           Power                                                   1164       Auto       Running  OK
0           ProfSvc                                                 1980       Auto       Running  OK
0           RpcEptMapper                                            1368       Auto       Running  OK
0           RpcSs                                                   1368       Auto       Running  OK
0           SamSs                                                   124        Auto       Running  OK
0           seclogon                                                1880       Auto       Running  OK
0           SENS                                                    2172       Auto       Running  OK
0           sppsvc                                                  4536       Auto       Running  OK
0           StateRepository                                         2512       Manual     Running  OK
0           SystemEventsBroker                                      1164       Auto       Running  OK
0           TabletInputService                                      2572       Auto       Running  OK
0           TermService                                             1512       Auto       Running  OK
0           TrustedInstaller                                        13240      Manual     Running  OK
0           UniAccessAgent                                          2788       Auto       Running  OK
0           UniAccessAgentDaemon                                    2888       Auto       Running  OK
0           UserManager                                             2200       Manual     Running  OK
0           vds                                                     6880       Manual     Running  OK
0           VMAuthdService                                          8752       Manual     Running  OK
0           VMware NAT Service                                      2088       Auto       Running  OK
0           W32Time                                                 1524       Manual     Running  OK
0           Wcmsvc                                                  2628       Auto       Running  OK
0           WinHttpAutoProxySvc                                     4448       Manual     Running  OK
0           Winmgmt                                                 2332       Auto       Running  OK
0           wscsvc                                                  10920      Auto       Running  OK
0           ZhuDongFangYu                                           2644       Auto       Running  OK
0           OracleServiceORCL                                       10728      Manual     Running  OK
0           OracleOraDB21Home1TNSListener                           3380       Manual     Running  OK
「喜欢这篇文章,您的关注和赞赏是给作者最好的鼓励」
关注作者
【版权声明】本文为墨天轮用户原创内容,转载时必须标注文章的来源(墨天轮),文章链接,文章作者等基本信息,否则作者和墨天轮有权追究责任。如果您发现墨天轮中有涉嫌抄袭或者侵权的内容,欢迎发送邮件至:contact@modb.pro进行举报,并提供相关证据,一经查实,墨天轮将立刻删除相关内容。

评论