Skip to content

πŸ—οΈ Dumps all packages, services, processes (running), applications (installed in .MSI format). πŸ“―

Notifications You must be signed in to change notification settings

tester1010101/PS_Dump

Folders and files

NameName
Last commit message
Last commit date

Latest commit

Β 

History

23 Commits
Β 
Β 
Β 
Β 

Repository files navigation

PS_Dump (v1.2) πŸ’» πŸ’Ύ

  • πŸ—οΈ Dumps all packages, services, processes (running), applications (installed in .MSI format).
  • πŸ“— Prompts user to open the dump location, for analysis/learning.
  • πŸ” Can be used to send logs to a backup location or forensics.

Instructions (Authorize the script through PowerShell Terminal):

  1. cd To_Extracted/PS_Dump
  2. Set-ExecutionPolicy Unrestricted
  3. Yes > to this script/prompt ONLY

Directions

  1. When running the script is allowed, type in (while being in the PS_Dump directory):

.\PS_Dump.ps1

  1. Follow the on-screen instructions.

If the error with the Red X pops, it means that the shared installed .MSIs will not be included in the log.

(Your firewall may be blocking a call to Microsoft servers, or you may be offline, no worries.)

Prompt

About

πŸ—οΈ Dumps all packages, services, processes (running), applications (installed in .MSI format). πŸ“―

Topics

Resources

Stars

Watchers

Forks