Menu

Anything about IT

by Alex Verboon

Primary Menu

Skip to content
  • Home
  • About me
  • Blogpost Index
  • Links
  • Privacy Policy
Search

Tag: DEFE

Generating Advanced hunting queries with PowerShell

Posted on11 July 202011 July 2020Leave a comment

I was recently writing some advanced hunting queries for Microsoft Defender ATP to search for the execution of specific PowerShell commands. If you are just looking for one specific command, you can run query as sown below But if you Read More …

Like this:

Like Loading...

CategoriesDefender ATP, KQL, PowerShellTagsAdvanced Hunting, DEFE, KQL, MDATP, PowerShell

Top Posts & Pages

  • How to reapply a Group Policy Preference that is configured to Apply Once
  • Managing Windows 8 Metro Style Apps with DISM
  • Hunting for Local Group Membership changes
  • How to remediate Defender for Endpoint onboarding with ConfigMgr
  • ConfigMgr 2012 Script to retrieve source path locations

 Subscribe in a reader

Follow @alexverboon

Subscribe to Blog via Email

Enter your email address to subscribe to this blog and receive notifications of new posts by email.

Categories

Meta

  • Log in
  • Entries feed
  • Comments feed
  • WordPress.org

Token Information

The info portal for tokenization & digital change

Copyright © 2025 Anything about IT. All Rights Reserved. Privacy Policy
Catch Base Pro by Catch Themes
Scroll Up
  • Home
  • About me
  • Blogpost Index
  • Links
  • Privacy Policy
%d