Situational Awareness

Network Information

Interface(s), IP Address(es), DNS Information

C:\xyz> ipconfig /all

ARP Table

C:\xyz> arp -a

Routing Table

C:\xyz> route print

Enumerating Protections

Check Windows Defender Status

PS C:\xyz> Get-MpComputerStatus

List AppLocker Rules

PS C:\xyz> Get-AppLockerPolicy -Effective | select -ExpandProperty RuleCollections

Test AppLocker Policy

PS C:\xyz> Get-AppLockerPolicy -Local | Test-AppLockerPolicy -path