Skip to content

Windows Host Information Collection (Kit)

Collect relevant information from Windows hosts through information collection scripts (python), including:

  • Network connections
  • Process list
  • Proxy configuration
  • DNS configuration
  • Firewall configuration
  • Antivirus software configuration
  • ...

Operation Method

  • Select script running mode
ModeDescriptionIncluded ModulesUse CaseSecurity Level
basicBasic ModeSystem, Users, Processes, NetworkQuick System Check🟢 Low Risk
standardStandard ModeBasic + Security + AdvancedRegular Security Assessment (Recommended)🟡 Medium
officeOffice ModeBasic + Social Software + Cloud Environment + Dev ToolsEnterprise Office Environment🟡 Medium
securitySecurity ModeBasic + Security Detection + Defense EvasionProfessional Security Assessment🟠 Higher
completeComplete ModeAll Modules (Including High Risk)Comprehensive Deep Detection🔴 High Risk
  • After execution, information will be stored in Host Information and can be viewed there
  • The information collected by the module is mainly used for agent analysis, recommended to use through the Intelligence Analysis Agent