Skip to the content
SSTools
  • home
  • SS
    • Tools
      • Tools Automatici
      • Tool Manuali
      • Tools Fatti Da Noi
    • Metodi
      • Stringhe Journal
      • Regedit
  • Cheats
    • Ghost Clients
    • Injection Clients
    • External Clients
  • Contatti
    • nestyk – Owner
    • ItsChri – Owner
  • home
  • SS
    • Tools
      • Tools Automatici
      • Tool Manuali
      • Tools Fatti Da Noi
    • Metodi
      • Stringhe Journal
      • Regedit
  • Cheats
    • Ghost Clients
    • Injection Clients
    • External Clients
  • Contatti
    • nestyk – Owner
    • ItsChri – Owner
FILES RINOMINATI
FILES ELIMINATI
JAVA JAR
WMIC
JnativeHook
Directory File
File determinato
Cacls
FILES RINOMINATI

fsutil usn readjournal c: csv | findstr /i /C:"%date%" | findstr /i /R /C:"[0-9],0x00001000" /i /R /C:"[0-9],0x00002000" | findstr /i /C:.exe\^" /i /C:.pf\^" /i /C:.com\^ /i /C:.jar\^" /i /C:.pif\^" /i /C:.mp4\^" /i /C:.bat\^ /i /C:.sys\^" /i /C:.zip\^" /i /C:.cmd\^" /i /C:.?\^" /i /C:.vb\^" /i /C:.shs\^" /i /C:.com\^ /i /C:.rar\^" /i /C:.docx\^" /i /C:.doc\^" /i /C:.reg\^" > %USERPROFILE%\Desktop\RinominatiConFiltroOra.txt

FILES ELIMINATI

fsutil usn readjournal c: csv | findstr /i /C:"%date%" | findstr /i /R /C:"[0-9],0x80000200" | findstr /i /C:.exe\^" /i /C:.pf\^" /i /C:.com\^ /i /C:.jar\^" /i /C:.pif\^" /i /C:.mp4\^" /i /C:.bat\^ /i /C:.sys\^" /i /C:.zip\^" /i /C:.cmd\^" /i /C:.?\^" /i /C:.vb\^" /i /C:.shs\^" /i /C:.com\^ /i /C:.rar\^" /i /C:.docx\^" /i /C:.doc\^" /i /C:.reg\^" > %USERPROFILE%\Desktop\EliminatiConFiltroOra.txt

JAVA JAR

fsutil usn readJournal c: csv |findstr /i /C:0x00008000|findstr /i /C:timestamp> %userprofile%\Desktop\javajar.txt

 

WMIC

fsutil usn readjournal c: csv | findstr /i /C:"0x00000100" | findstr /i /C:"wmic.exe" > wmic.txt
fsutil usn readjournal c: csv | findstr /i /C:"0x00200000" /i /C:"0x80200120" > Type.txt

JnativeHook

fsutil usn readjournal c: csv | findstr /i /C:"JnativeHook" > Jnative.txt

Directory File

fsutil file queryfilenamebyid C:\ 0x"codice memoria"

File determinato

fsutil usn readjournal c: csv | findstr /i /C:nomefile.exe

Cacls

fsutil usn readjournal c: csv | findstr /i /C:"0x00000800" /i /C:"0x80000800" | findstr /i /C:"Prefetch"

In memoria al quit di nikappa 08/08/2020

Apri un sito e guadagna con Altervista - Disclaimer - Segnala abuso - Privacy Policy - Personalizza tracciamento pubblicitario