Digital Forensics, Incident Response & Threat Hunting
January 20, 2022
Uncovering Windows Defender Real-time Protection History with DHParser
Whether you are a systems administrator performing regular threat hunting on your network, or you are an analyst examining a system after the smoke of an incident has cleared, Windows Defender’s DetectionHistory logs give an excellent look into what (and who) has been marked as potentially...