Tag Archives: audit

Analyse AppLocker Logs for Exceptions

If you’re planning to rollout AppLocker you might want to run it in Audit mode first, to see where things are being run from. You might want to store those logs centrally, see my previous post for how to get … Continue reading

Rate this:

Posted in PowerShell, Security, Windows | Tagged , , , , , , , , | Leave a comment

Send Windows Event Logs to SQL Database

I’m currently in the process of planning for an AppLocker rollout to all my PCs (about 7,500 of them) due to an increasing amount of malware. You should probably be doing this too. Anyway, a sensible first step is to … Continue reading

Rate this:

Posted in PowerShell, Scripting, Security, Windows | Tagged , , , , , , , , , , , , , , , , , , , , , , , | 4 Comments