enumsecproducts.cna 655 B

123456789101112131415161718
  1. # author REDMED-X
  2. beacon_command_register(
  3. "enumsecproducts", "List security products running on the system.",
  4. "INFO:\nGet a list of security products (like AV/EDR) that are running on the system. This is done by comparing running processes against a hardcoded list of 130 security products.\n\n" .
  5. "USAGE:\nenumsecproducts\n\n");
  6. alias enumsecproducts {
  7. $bid = $1;
  8. # Read in the right BOF file
  9. $handle = openf(script_resource("enumsecproducts.o"));
  10. $data = readb($handle, -1);
  11. closef($handle);
  12. blog($bid, "Tasked to list running security products..");
  13. beacon_inline_execute($bid, $data, "go", $null);
  14. }