dsquery * -filter “(&(objectClass=Computer)(objectCategory=Computer))” “%rootDN%” -attr cn description
Base DN: CN=Deleted Objects,%domainRoot%, Filter: (isDeleted=*), Extended Search, Add control: 1.2.840.113556.1.4.417
dsquery * cn=schema,cn=configuration,DC=forestRootDomain -filter “(&(objectClass=attributeSchema)(objectCategory=attributeSchema)(!systemFlags:1.2.840.113556.1.4.803:=1))” -limit 0
dsquery * cn=pwd-last-set,cn=schema,cn=configuration,DC=forestRootDomain
for /f %i in (Users.txt) do @for /f “tokens=*” %m in (’”dsquery user -name %i”‘) do @for /f %p in (’”dsquery * %m -attr homeDirectory -l | find /i “\\” & if errorlevel 1 Echo NoHomeDirectory”‘) do @echo %i,%m,%p
dsquery group -name %GroupName%
dsget group %GroupDN% -scope -secgrp
dsquery * domainroot -filter “&(objectclass=user)(objectcategory=person)(userprincipalname=*)” -s %server% | find /i /c “user”
dsquery * domainroot -filter “&(objectclass=user)(objectcategory=person)(!(userprincipalname=*))” -s %server% | find /i /c “user”
dsquery * cn=%AttributeName%,cn=schema,cn=configuration,dc=forestRootDomain -filter “!(&(systemFlags:1.2.840.113556.1.4.803:=1))”
dsquery * “CN=user-Display,CN=409,CN=DisplaySpecifiers,CN=Configuration,%forestrootDomain%” -attr *
wmic /node:”%DC%” /namespace:\\root\directory\LDAP path ds_user where “ds_cn=’%username%’” GET ds_displayName,DS_UserPrincipalName,ds_cn,ds_name,ds_whenCreated
for /f %i in (%users.txt%) do @dsquery user -name %i
These were all useful to me. I found them, and more, here.