Skip to content

Commit

Permalink
Update PowerShell_AD_Timeline.mkape
Browse files Browse the repository at this point in the history
remove trailing spaces
  • Loading branch information
AndrewRathbun authored Apr 2, 2024
1 parent 862ada4 commit 4350f66
Showing 1 changed file with 4 additions and 4 deletions.
8 changes: 4 additions & 4 deletions Modules/Apps/GGitHub/PowerShell_AD_Timeline.mkape
Original file line number Diff line number Diff line change
Expand Up @@ -12,13 +12,13 @@ Processors:
ExportFormat: csv, log, xml

# Documentation
# ADtimeline is a powershell script created by the ANSSI (French Cybersecurity Agency).
# ADtimeline is a PowerShell script created by the ANSSI (French Cybersecurity Agency).
# You can use the output of this script to determine persistance, sensitives accounts, suspicious activities...
# You need to run this script on a live domain controller.
# This script will generate four files :
# You need to run this script on a live domain controller.
# This script will generate four files:
# - timeline_%DOMAINFQDN%.csv: The timeline generated with the AD replication metadata of objects retrieved.
# - logfile_%DOMAINFQDN%.log: Script log file. You will also find various information on the domain.
# - ADobjects_%DOMAINFQDN%.xml: Objects of interest retrieved via LDAP.
# - gcADobjects_%DOMAINFQDN%.xml: Objects of interest retrieved via the Global Catalog.
# - gcADobjects_%DOMAINFQDN%.xml: Objects of interest retrieved via the Global Catalog.
# https://github.com/ANSSI-FR/ADTimeline
# https://www.first.org/resources/papers/amsterdam2019/AD_Timeline_FIRST_TC.pdf

0 comments on commit 4350f66

Please sign in to comment.