Merge pull request #774 from silversword411/develop
Scripts library update
This commit is contained in:
commit
f977d8cca9
|
@ -21,6 +21,8 @@ Is NATS (<https://nats.io>). You'll need a TCP forwarder as NATS only talks TCP
|
||||||
|
|
||||||
## Traefikv2
|
## Traefikv2
|
||||||
|
|
||||||
|
Offsite Resource: <https://gitlab.com/NiceGuyIT/tactical-goodies/-/tree/main/traefik>
|
||||||
|
|
||||||
This section will assume that by default Traefik will reverse proxy everything on port 443.
|
This section will assume that by default Traefik will reverse proxy everything on port 443.
|
||||||
|
|
||||||
Here is a basic Traefik config with docker-composer note the file.directory and file.watch are important.
|
Here is a basic Traefik config with docker-composer note the file.directory and file.watch are important.
|
||||||
|
|
|
@ -6,6 +6,9 @@
|
||||||
If a number is provided as a command parameter it will search back that number of days back provided (good for collecting all AV alerts on the computer).
|
If a number is provided as a command parameter it will search back that number of days back provided (good for collecting all AV alerts on the computer).
|
||||||
.EXAMPLE
|
.EXAMPLE
|
||||||
Win_Defender_Status_reports.ps1 365
|
Win_Defender_Status_reports.ps1 365
|
||||||
|
.NOTES
|
||||||
|
v1 dinger initial release 2021
|
||||||
|
v1.1 bdrayer Adding full message output if items found
|
||||||
#>
|
#>
|
||||||
|
|
||||||
$param1 = $args[0]
|
$param1 = $args[0]
|
||||||
|
@ -20,7 +23,7 @@ else {
|
||||||
|
|
||||||
if (Get-WinEvent -FilterHashtable @{LogName = 'Microsoft-Windows-Windows Defender/Operational'; ID = '1116', '1118', '1015', '1006', '5010', '5012', '5001', '1123'; StartTime = $TimeSpan }) {
|
if (Get-WinEvent -FilterHashtable @{LogName = 'Microsoft-Windows-Windows Defender/Operational'; ID = '1116', '1118', '1015', '1006', '5010', '5012', '5001', '1123'; StartTime = $TimeSpan }) {
|
||||||
Write-Output "Virus Found or Issue with Defender"
|
Write-Output "Virus Found or Issue with Defender"
|
||||||
Get-WinEvent -FilterHashtable @{LogName = 'Microsoft-Windows-Windows Defender/Operational'; ID = '1116', '1118', '1015', '1006', '5010', '5012', '5001', '1123'; StartTime = $TimeSpan }
|
Get-WinEvent -FilterHashtable @{LogName = 'Microsoft-Windows-Windows Defender/Operational'; ID = '1116', '1118', '1015', '1006', '5010', '5012', '5001', '1123'; StartTime = $TimeSpan } | Format-List TimeCreated, Id, LevelDisplayName, Message
|
||||||
exit 1
|
exit 1
|
||||||
}
|
}
|
||||||
|
|
||||||
|
|
Loading…
Reference in New Issue