Microsoft

OneDrive Audits for Win10+

Folder contains two scripts based on 2 community scripts by Kevin Tegelaar. One for OneDrive sync health and the other for synced file count. Both scripts require a user to be logged in and report the results to the procedure log. Can report using $OneDrivestatus$, $OneDrivefiles$, $OneDriveAlert$.

Read More

Storm-0978 Mitigation Disable

Script Desc: Deletes the registry key in CVE-2023-36884: https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-36884 This script disables the registry key described in this link here. Use this script to undo the changes made to protect against the Storm-0978 exploit.

Read More

Bitlocker – Disable

Disables BitLocker and unencrypts any drives.

Read More

Delete Outlook tempfiles older than X days

Prompts for number of days to keep files(1-365). Downloads a PS1 script that goes through each user’s Outlook temp folder and permanently deletes any files older than the limit. Can report on space recovered using $outlookcleanup$.

Read More

Delete user downloads older than X days

Prompts for number of days to keep files(1-365). Downloads a PS1 script that goes through all user download folders and permanently deletes any files older than the limit. Can report on space recovered using $downloadcleanup$.

Read More

CVE-2023-32019 Enable

Use this script to automate the process of mitigating CVE-2023-32019 across your environment. The CVE is disabled by default. This script enables it. Click here to see the summary of why it is disabled by default and what it does: How To Manage The Vulnerability Associated With CVE-2023-32019. This script enables the CVE-2023-32019 on Windows…

Read More

SentinelOne Agent Migration

Migrates a business licensed version of SentinelOne to a new mgmt server. Must edit first two lines of the script with the new server url and binding. Will prompt for the passphrase when ran. Can report using $S1$, $S1error$.

Read More

Office Updates

Procedure folder includes a script to force MS Office 365 Updates and script to change the update channel, if desired.

Read More

IP Regulation

Folder of scripts that contain information gathering and regulation for IPv4/v6 enabled interfaces. These scripts are 1) for detecting if a machine has a public IPv4 address 2) if a machine has any IPv6 address 3) removing IPv6 from interfaces. Additional IP Regulation scripts can be added to this collection upon request.

Read More

Event 2188 and 2189 battery check

Meant to be ran after a 2188 (DELL Battery Event) was detected. Reschedules itself for 2 hours and reports if the 2189 has cleared the 2188. If not, an email is sent.

Read More