Skip to content

A powershell script that can find beaconing on an endpoint that is running Sysmon and logging DNS (Event ID 22) and Network Connections (Event ID 3)

Notifications You must be signed in to change notification settings

DustyMMiller/SysmonBeaconing

Folders and files

NameName
Last commit message
Last commit date

Latest commit

 

History

2 Commits
 
 
 
 

Repository files navigation

SysmonBeaconing

A powershell script that can find beaconing on an endpoint that is running Sysmon and logging DNS (Event ID 22) and Network Connections (Event ID 3)

About

A powershell script that can find beaconing on an endpoint that is running Sysmon and logging DNS (Event ID 22) and Network Connections (Event ID 3)

Resources

Stars

Watchers

Forks

Releases

No releases published

Packages

No packages published