POWERSHELL, Whats Come In...
with windows powershell u can simpely listen whats comming as raw data can read with EmEditor
Open UP PowerShell
as example listen to tcp traffic on ur pc:
- New-NetEventSession -Name “WhatsComming”
- just for information run [ logman query providers ]
- Add-NetEventProvider -Name “Microsoft-Windows-TCPIP” -SessionName “WhatsComming”
- Start-NetEventSession -Name “WhatsComming”
- Get-NetEventSession
Activity
lets do some activity like open a website in ur browser ....
then open this folder [ C:\Windows\System32\config\systemprofile\AppData\Local ]
read the file named NetEventTrace.etl with EmEditor..
STOP
- Stop-NetEventSession -Name WhatsComming
- Remove-NetEventSession
- Get-NetEventSession
Cyber Security Specialist | ?????????????????? | Web??+???? Developer
5 年linux ver:?https://www.dhirubhai.net/feed/update/urn:li:activity:6560635965818445824