[- Disclaimer -]
아래 내용은 정보보안 공부 목적으로 작성된 것이나, 이를 토대로 허가되지 않은 대상에 실습을 진행할 경우 해킹 시도로 간주하여 법적 처벌을 받을 수 있음을 알려 드립니다.
Get-Command
✦ 명령어 정보 확인
PS C:\> Get-Command -Verb set
CommandType Name Version Source
----------- ---- ------- ------
Alias Set-AppPackageDefaultVolume 2.0.1.0 Appx
Alias Set-AppPackageProvisionedDataFile 3.0 Dism
Alias Set-AutologgerConfig 1.0.0.0 EventTracingManagement
Alias Set-EtwTraceSession 1.0.0.0 EventTracingManagement
(...)
Plain Text
복사
Get-Command -noun [Process 명]
Plain Text
복사
Get-Command -Module [Module명]
Plain Text
복사
Get-Command -ArgumentLis [Arg List명]
Plain Text
복사
PS C:\> Get-Command -Type Cmdlet
CommandType Name Version Source
----------- ---- ------- ------
Cmdlet Add-AppvClientConnectionGroup 1.0.0.0 AppvClient
Cmdlet Add-AppvClientPackage 1.0.0.0 AppvClient
Cmdlet Add-AppvPublishingServer 1.0.0.0 AppvClient
Cmdlet Add-AppxPackage 2.0.1.0 Appx
(...)
Plain Text
복사
Get-Help vs Get-Command
PS C:\> Get-Command *process*
CommandType Name Version Source
----------- ---- ------- ------
Function Get-AppvVirtualProcess 1.0.0.0 AppvClient
Function Start-AppvVirtualProcess 1.0.0.0 AppvClient
Cmdlet ConvertTo-ProcessMitigationPolicy 1.0.12 ProcessMitigations
Cmdlet Debug-Process 3.1.0.0 Microsoft.PowerShell.Management
Cmdlet Enter-PSHostProcess 3.0.0.0 Microsoft.PowerShell.Core
Cmdlet Exit-PSHostProcess 3.0.0.0 Microsoft.PowerShell.Core
Cmdlet Get-Process 3.1.0.0 Microsoft.PowerShell.Management
Cmdlet Get-ProcessMitigation 1.0.12 ProcessMitigations
Cmdlet Get-PSHostProcessInfo 3.0.0.0 Microsoft.PowerShell.Core
Cmdlet Set-ProcessMitigation 1.0.12 ProcessMitigations
Cmdlet Start-Process 3.1.0.0 Microsoft.PowerShell.Management
Cmdlet Stop-Process 3.1.0.0 Microsoft.PowerShell.Management
Cmdlet Wait-Process 3.1.0.0 Microsoft.PowerShell.Management
Application qprocess.exe 10.0.19... C:\WINDOWS\system32\qprocess.exe
PS C:\>
Plain Text
복사
PS C:\> Get-Help *process*
Name Category Module Synopsis
---- -------- ------ --------
Enter-PSHostProcess Cmdlet Microsoft.PowerShell.Core ...
Exit-PSHostProcess Cmdlet Microsoft.PowerShell.Core ...
Get-PSHostProcessInfo Cmdlet Microsoft.PowerShell.Core ...
Debug-Process Cmdlet Microsoft.PowerShell.M... ...
Get-Process Cmdlet Microsoft.PowerShell.M... ...
Start-Process Cmdlet Microsoft.PowerShell.M... ...
Stop-Process Cmdlet Microsoft.PowerShell.M... ...
Wait-Process Cmdlet Microsoft.PowerShell.M... ...
Get-AppvVirtualProcess Function AppvClient ...
Start-AppvVirtualProcess Function AppvClient ...
ConvertTo-ProcessMitigationPolicy Cmdlet ProcessMitigations ConvertTo-ProcessMitigationPolicy...
Get-ProcessMitigation Cmdlet ProcessMitigations Get-ProcessMitigation...
Set-ProcessMitigation Cmdlet ProcessMitigations Set-ProcessMitigation...
PS C:\>
Plain Text
복사



