123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180 |
- <?xml version="1.0" ?>
- <Osmapping>
- <Osmap>
- <oscmd>OS_COLLECT_GENFILE</oscmd>
- <cmd>copy</cmd>
- <type>T_COLLECT_GENFILE</type>
- </Osmap>
- <Osmap>
- <oscmd>OS_COLLECT_SMFILE</oscmd>
- <cmd>copy</cmd>
- <type>T_COLLECT_SMFILE</type>
- </Osmap>
- <Osmap>
- <oscmd>OS_COPY</oscmd>
- <cmd>copy</cmd>
- <type>T_COPY</type>
- </Osmap>
- <Osmap>
- <oscmd>OS_ENV</oscmd>
- <cmd>set</cmd>
- <type>T_CMD</type>
- </Osmap>
- <Osmap>
- <oscmd>OS_ERROR_REPORT</oscmd>
- <cmd>cscript c:\windows\system32\eventquery.vbs /L application /R 1000 /V</cmd>
- <type>T_CMD</type>
- </Osmap>
- <Osmap>
- <oscmd>OS_ERROR_REPORT</oscmd>
- <cmd>cscript c:\windows\system32\eventquery.vbs /L system /R 1000 /V</cmd>
- <type>T_CMD</type>
- </Osmap>
- <Osmap>
- <oscmd>OS_ERROR_REPORT</oscmd>
- <cmd>cscript c:\windows\system32\eventquery.vbs /L security /R 1000 /V</cmd>
- <type>T_CMD</type>
- </Osmap>
- <Osmap>
- <oscmd>OS_HOSTSFILE_COPY</oscmd>
- <cmd>copy</cmd>
- <file>%WINDIR%\system32\drivers\etc\hosts</file>
- <type>T_COPY_OS_FILE</type>
- </Osmap>
- <Osmap>
- <oscmd>OS_INFORMIXDIR_LS</oscmd>
- <cmd>dir %INFORMIXDIR%</cmd>
- <type>T_CMD</type>
- </Osmap>
- <Osmap>
- <oscmd>OS_INFORMIXTMP_LS</oscmd>
- <cmd>dir %INFORMIXDIR%\infxtmp</cmd>
- <type>T_CMD</type>
- </Osmap>
- <Osmap>
- <oscmd>OS_IPADDR</oscmd>
- <cmd>ipconfig /all</cmd>
- <type>T_CMD</type>
- </Osmap>
- <Osmap>
- <oscmd>OS_IPCS</oscmd>
- <cmd>db2winx</cmd>
- <type>T_CMD</type>
- </Osmap>
- <Osmap>
- <oscmd>OS_IPCS_A</oscmd>
- <cmd>db2winx</cmd>
- <type>T_CMD</type>
- </Osmap>
- <Osmap>
- <oscmd>OS_KERNEL_PARAM</oscmd>
- <cmd>reg export HKEY_LOCAL_MACHINE\SOFTWARE\Informix reg.out</cmd>
- <type>T_CMD</type>
- </Osmap>
- <Osmap>
- <oscmd>OS_KERNEL_PARAM</oscmd>
- <cmd>type reg.out</cmd>
- <type>T_CMD</type>
- </Osmap>
- <Osmap>
- <oscmd>OS_KERNEL_PARAM</oscmd>
- <cmd>del reg.out</cmd>
- <type>T_CMD</type>
- </Osmap>
- <Osmap>
- <oscmd>OS_MAINT_LEVEL</oscmd>
- <cmd>systeminfo</cmd>
- <type>T_CMD</type>
- </Osmap>
- <Osmap>
- <oscmd>OS_NETSTAT_AN</oscmd>
- <cmd>netstat -an</cmd>
- <type>T_CMD</type>
- </Osmap>
- <Osmap>
- <oscmd>OS_NETSTAT_ANP</oscmd>
- <cmd>netstat -anP tcp</cmd>
- <type>T_CMD</type>
- </Osmap>
- <Osmap>
- <oscmd>OS_NETSTAT_V</oscmd>
- <cmd>netstat -v</cmd>
- <type>T_CMD</type>
- </Osmap>
- <Osmap>
- <oscmd>OS_PS</oscmd>
- <cmd>tasklist -svc</cmd>
- <type>T_CMD</type>
- </Osmap>
- <Osmap>
- <oscmd>OS_RM</oscmd>
- <cmd>del</cmd>
- <type>T_PARAM1</type>
- </Osmap>
- <Osmap>
- <oscmd>OS_SLEEP_10</oscmd>
- <cmd>ping -n 11 127.0.0.1</cmd>
- <type>T_CMD</type>
- </Osmap>
- <Osmap>
- <oscmd>OS_SLEEP_300</oscmd>
- <cmd>ping -n 301 127.0.0.1</cmd>
- <type>T_CMD</type>
- </Osmap>
- <Osmap>
- <oscmd>OS_SERVICESFILE_COPY</oscmd>
- <cmd>copy</cmd>
- <file>c:\windows\system32\drivers\etc\services</file>
- <type>T_COPY_OS_FILE</type>
- </Osmap>
- <Osmap>
- <oscmd>OS_TAIL_1000</oscmd>
- <cmd>copy</cmd>
- <type>T_COPY</type>
- </Osmap>
- <Osmap>
- <oscmd>OS_TAIL_5000</oscmd>
- <cmd>copy</cmd>
- <type>T_COPY</type>
- </Osmap>
- <Osmap>
- <oscmd>OS_VERSION</oscmd>
- <cmd>ver</cmd>
- <type>T_CMD</type>
- </Osmap>
- <Osmap>
- <oscmd>OS_WILDCARD_COPY</oscmd>
- <cmd>copy</cmd>
- <type>T_WILDCARD_COPY</type>
- </Osmap>
- </Osmapping>
|