Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Extending Functionality #11

Open
wants to merge 3 commits into
base: master
Choose a base branch
from

Conversation

fmurer
Copy link
Contributor

@fmurer fmurer commented Feb 6, 2019

Added the following extractions:

  • installed software
  • shellbags
  • extraction of NTUSER and UsrClass log files

Added the following extractions:
- installed software
- shellbags
- extraction of NTUSER and UsrClass log files
Save all eventlogs in C:\windows\system32\winevt\logs\

--> there is still an issue when there is a whitespace in the filename.
@diogo-fernan
Copy link
Owner

Please comply with the provided coding structure and variables. BASEDIR is not required. Tool counters (it and itt) are not being updated to reflect the changes either.

@fmurer
Copy link
Contributor Author

fmurer commented Feb 16, 2019

I added BASEDIR for the SBECmd.exe, because it did not recognise the relative path. I think it went from C:\Windows\System32\ as it runs as Administrator.

Incrementing the counters I forgot. Could you shortly explain in what they differ?

@diogo-fernan
Copy link
Owner

The counters itt and it respectively reflect the number of individual tools run and the number of group (containing a header) of tools. BASEDIR is not required and WMI cannot be used as per the requirements of the project. Please read the description of the tool.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Projects
None yet
Development

Successfully merging this pull request may close these issues.

None yet

2 participants