WMI Monitor
Monitor WMI consumers and processes for potential malicious activity

WMI Monitor
Monitor WMI consumers and processes for potential malicious activity
WMI Monitor Description
Monitor WMI consumers and processes, detecting potential malicious activity. This PowerShell script monitors WMI consumers and processes, detecting potential malicious activity. **Usage:** 1. Run PowerShell as administrator. 2. Import the WMIMonitor.ps1 module. 3. Create a new event subscriber. 4. Test the process call create function. 5. Check the Application Event log for EID 8. **Disable logging:** 1. Open an Administrator PS shell. 2. Run Remove-SubscriberMonitor. 3. Confirm the event subscriber and all associated WMI objects have been successfully removed.
WMI Monitor FAQ
Common questions about WMI Monitor including features, pricing, alternatives, and user reviews.
WMI Monitor is Monitor WMI consumers and processes for potential malicious activity. It is a Endpoint Security solution designed to help security teams protect their infrastructure.