bertmueller18 / check_ioc Goto Github PK
View Code? Open in Web Editor NEWThis project forked from oneoffdallas/check_ioc
Check_ioc is a script to check for various, selectable indicators of compromise on Windows systems via PowerShell and Event Logs. It was primarily written to be run on a schedule from a monitoring engine such as Nagios, however, it may also be run from a command-line (for incident response). For more information on the script and the logic behind it, check out https://www.linuxincluded.com/uncovering-indicators-of-compromise.
License: GNU General Public License v2.0