We read every piece of feedback, and take your input very seriously.
To see all available qualifiers, see our documentation.
There was an error while loading. Please reload this page.
1 parent 8a494f0 commit 6734e0cCopy full SHA for 6734e0c
configs/verbose.yaml
@@ -197,4 +197,11 @@ commands:
197
merge: csv
198
id: ScriptBlockLogging
199
tags: [access, powershell, builtin]
200
- dependencies: [utilities\ExtractScriptBlockLogging.ps1]
+ dependencies: [utilities\ExtractScriptBlockLogging.ps1]
201
+ # Extract Named Pipes, Owning Processes and Established Connections
202
+ - command: powershell.exe C:\Windows\temp\ExtractNamedPipes.ps1 -OutputFile $FILENAME$
203
+ file_name: $time$_NamedPipes.csv
204
+ merge: csv
205
+ id: NamedPipes
206
+ tags: [access, pipes, builtin]
207
+ dependencies: [utilities\ExtractNamedPipes.ps1]
0 commit comments