@@ -44,12 +44,12 @@ function Invoke-Meerkat {
44
44
Invoke-Meerkat -Quick -Output .\Results\
45
45
46
46
. NOTES
47
- Updated: 2023-10-18
47
+ Updated: 2024-03-29
48
48
49
49
Contributing Authors:
50
50
Anthony Phipps
51
51
52
- LEGAL: Copyright (C) 2023
52
+ LEGAL: Copyright (C) 2024
53
53
This program is free software: you can redistribute it and/or modify
54
54
it under the terms of the GNU General Public License as published by
55
55
the Free Software Foundation, either version 3 of the License, or
@@ -88,15 +88,15 @@ function Invoke-Meerkat {
88
88
89
89
[Parameter ()]
90
90
[alias (" M" , " Mod" )]
91
- [ValidateSet ( " ADS" , " ARP" , " Autoruns " , " AuditPolicy " , " BitLocker" , " Certificates" , " ComputerDetails" , " Connections" , " Defender " , " Disks " ,
92
- " DomainInfo " , " DLLs " , " DNS " , " Drivers" , " EnvVars" , " EventLogs " , " EventsLoginFailures " , " EventLogsMetadata" , " EventsUserManagement " ,
93
- " LocalGroups " , " LocalUsers " , " Hardware" , " Hosts" , " Hotfixes" , " EventCounts " , " RegistryMRU " , " MAC" , " NetAdapters" , " NetRoutes" ,
94
- " Processes " , " RecycleBin" , " Registry" , " RegistryPersistence " , " RSOP " , " ScheduledTasks" , " Services" , " Sessions" , " Shares" , " Software" ,
95
- " Strings" , " TPMDetails" , " USBHistory" , " WindowsFirewall" )]
96
- [array ]$Modules = (" ARP" , " Autoruns " , " AuditPolicy " , " BitLocker" , " ComputerDetails" , " Connections" , " Disks " , " DLLs " , " DNS " , " Drivers" ,
97
- " EventCounts " , " EnvVars " , " EventsLoginFailures " , " EventLogsMetadata " , " Hosts" , " Hotfixes" , " LocalGroups" , " LocalUsers" , " NetAdapters" ,
98
- " NetRoutes" , " Processes" , " RecycleBin " , " Registry " , " RegistryMRU " , " RegistryPersistence " , " RSOP " , " ScheduledTasks" , " Services" ,
99
- " Sessions" , " Shares" , " Software" , " TPMDetails" , " USBHistory" , " WindowsFirewall" )
91
+ [ValidateSet (" ADS" , " ARP" , " AuditPolicy " , " Autoruns " , " BitLocker" , " Certificates" , " ComputerDetails" , " Connections" , " DLLs " , " DNS " ,
92
+ " Defender " , " Disks " , " DomainInfo " , " Drivers" , " EnvVars" , " EventCounts " , " EventLogs " , " EventLogsMetadata" , " EventsLoginFailures " ,
93
+ " EventsUserManagement " , " Hardware" , " Hosts" , " Hotfixes" , " LocalGroups " , " LocalUsers " , " MAC" , " NetAdapters" , " NetRoutes" , " Processes " ,
94
+ " RSOP " , " RecycleBin" , " Registry" , " RegistryMRU " , " RegistryPersistence " , " ScheduledTasks" , " Services" , " Sessions" , " Shares" , " Software" ,
95
+ " Strings" , " TPMDetails" , " USBHistory" , " WindowsFirewall" )]
96
+ [array ]$Modules = (" ARP" , " AuditPolicy " , " Autoruns " , " BitLocker" , " ComputerDetails" , " Connections" , " DLLs " , " DNS " , " Disks " , " Drivers" ,
97
+ " EnvVars " , " EventCounts " , " EventLogsMetadata " , " EventsLoginFailures " , " Hosts" , " Hotfixes" , " LocalGroups" , " LocalUsers" , " NetAdapters" ,
98
+ " NetRoutes" , " Processes" , " RSOP " , " RecycleBin " , " Registry " , " RegistryMRU " , " RegistryPersistence " , " ScheduledTasks" , " Services" ,
99
+ " Sessions" , " Shares" , " Software" , " TPMDetails" , " USBHistory" , " WindowsFirewall" )
100
100
)
101
101
102
102
begin {
@@ -110,32 +110,32 @@ function Invoke-Meerkat {
110
110
Certificates = ${Function: Get-Certificates}
111
111
ComputerDetails = ${Function: Get-ComputerDetails}
112
112
Connections = ${Function: Get-Connections}
113
- Defender = ${Function: Get-Defender}
114
- Disks = ${Function: Get-Disks}
115
113
DLLs = ${Function: Get-DLLs}
116
114
DNS = ${Function: Get-DNS}
115
+ Defender = ${Function: Get-Defender}
116
+ Disks = ${Function: Get-Disks}
117
117
DomainInfo = ${Function: Get-DomainInfo}
118
118
Drivers = ${Function: Get-Drivers}
119
119
EnvVars = ${Function: Get-EnvVars}
120
120
EventCounts = ${Function: Get-EventCounts}
121
- EventLogsMetadata = ${Function: Get-EventLogsMetadata}
122
121
EventLogs = ${Function: Get-EventLogs}
122
+ EventLogsMetadata = ${Function: Get-EventLogsMetadata}
123
123
EventsLoginFailures = ${Function: Get-EventsLoginFailures}
124
124
EventsUserManagement = ${Function: Get-EventsUserManagement}
125
125
Hardware = ${Function: Get-Hardware}
126
126
Hosts = ${Function: Get-Hosts}
127
127
Hotfixes = ${Function: Get-Hotfixes}
128
- LocalUsers = ${Function: Get-LocalUsers}
129
128
LocalGroups = ${Function: Get-LocalGroups}
129
+ LocalUsers = ${Function: Get-LocalUsers}
130
130
MAC = ${Function: Get-MAC}
131
131
NetAdapters = ${Function: Get-NetAdapters}
132
132
NetRoutes = ${Function: Get-NetRoutes}
133
133
Processes = ${Function: Get-Processes}
134
+ RSOP = ${Function: Get-RSOP}
134
135
RecycleBin = ${Function: Get-RecycleBin}
135
136
Registry = ${Function: Get-Registry}
136
137
RegistryMRU = ${Function: Get-RegistryMRU}
137
138
RegistryPersistence = ${Function: Get-RegistryPersistence}
138
- RSOP = ${Function: Get-RSOP}
139
139
ScheduledTasks = ${Function: Get-ScheduledTasks}
140
140
Services = ${Function: Get-Services}
141
141
Sessions = ${Function: Get-Sessions}
0 commit comments