BrowserTools 1.2.0.0044 jp
はじめに:BrowserTools
Download Location
This content is available at: https://content.tanium.com/files/published/BrowserTools/2018-03-30_08-46-00_1.2.0.0044-gacf01f7/BrowserTools.xml
Usage
Questions
Browser History Tools Status
Get Has Browser History Tools and Is Windows and Is Mac and Is Linux from all machines
Packages
Capture Browser History
This package contains 1 files and 0 sensors.
Additional Properties:
- Command Line: cmd /c cscript browserhistory.vbs "$1" "$2" "$3" "$4" "$5" "$6" "$7" "$8" "$9" "$10" "$11" "$12"
- Command Line Timeout: 300
Prompts:
| Name / Value | Prompt Help | Type | Possible / Default Values |
|---|---|---|---|
| Internet Explorer | Checkbox | Disabled | |
| Firefox | Checkbox | Disabled | |
| Chrome | Checkbox | Disabled | |
| Safari | Checkbox | Disabled | |
| Search Type | Selection |
Days | |
| Search period | Numeric | ||
| Date Range | Date/Time Range | ||
| Search Type | Selection |
Blacklist | |
| Include URLs | Checkbox | Disabled | |
| URLs to include | Text | ||
| Exclude URLs | Checkbox | Disabled | |
| URLs to exclude | Text |
Files:
- browserhistory.vbs
Distribute Browser History Blacklist For Windows
This package contains 2 files and 0 sensors.
Additional Properties:
- Command Line: cmd /c cscript copy-to-tanium-dir.vbs "Tools\BrowserTools"
- Command Line Timeout: 60
Files:
- blacklist.dat
- copy-to-tanium-dir.vbs
Distribute Browser History Blacklist for Mac
This package contains 2 files and 0 sensors.
Additional Properties:
- Command Line: /bin/sh install-browser-history-blacklist.sh
- Command Line Timeout: 60
Files:
- blacklist.dat
- install-browser-history-blacklist.sh
Distribute Browser History Viewer
This package contains 3 files and 0 sensors.
Additional Properties:
- Command Line: cmd /c cscript copy-to-tanium-dir.vbs "Tools\BrowserTools"
- Command Line Timeout: 60
Files:
- TaniumExecWrapper.exe
- BrowserHistorySearch.exe
- copy-to-tanium-dir.vbs
Distribute Browser History Viewer for Mac
This package contains 3 files and 0 sensors.
Additional Properties:
- Command Line: /bin/sh install-browser-history-search.sh
- Command Line Timeout: 60
Files:
- BrowserHistorySearch
- install-browser-history-search.sh
- TaniumExecWrapper
Distribute Browser History Whitelist For Windows
This package contains 2 files and 0 sensors.
Additional Properties:
- Command Line: cmd /c cscript copy-to-tanium-dir.vbs "Tools\BrowserTools"
- Command Line Timeout: 60
Files:
- whitelist.dat
- copy-to-tanium-dir.vbs
Distribute Browser History Whitelist for Mac
This package contains 2 files and 0 sensors.
Additional Properties:
- Command Line: /bin/sh install-browser-history-whitelist.sh
- Command Line Timeout: 60
Files:
- whitelist.dat
- install-browser-history-whitelist.sh
Remove Browser Tools
This package contains 1 files and 0 sensors.
Additional Properties:
- Command Line: cmd /c cscript //T:300 Remove-BrowserTools.vbs
- Command Line Timeout: 300
Files:
- Remove-BrowserTools.vbs
Remove Browser Tools For Mac
This package contains 1 files and 0 sensors.
Additional Properties:
- Command Line: /bin/sh Remove-BrowserTools.sh
- Command Line Timeout: 60
Files:
- Remove-BrowserTools.sh
Sensors
Browser History Tool Details
Retrieves the following details of the browser history tools:
Exe Exists | Exe Version
Columns
Name Type Description Exe Exists Text Exe Version Text
Firefox Extensions Summary
Returns distinct list of installed Extensions based on the contents of the addons.json file from each users Windows profile and each Firefox profile. Only searches local windows profiles.
Columns
Name Type Description Extension ID Text Extension Text Version Text
Browser History
Returns browser history for IE 10+, Edge, Chrome, Firefox, and Safari (Mac OS X).
Deploy the Distribute Browser History Tools package prior to running this sensor.
Columns
Name Type Description User Text Browser Text URL Domain Text Date Text Times Visited Numeric Parameters
Name Description Type Possible / Default Values LoadIE Internet Explorer Checkbox Disabled LoadFirefox Firefox Checkbox Disabled LoadChrome Chrome Checkbox Disabled LoadSafari Safari Checkbox Disabled VisitTimeFilterType Search Type Selection Days
Hours
Date Range
VisitTimeFilterValue Search period Numeric VisitTimeFilterRange Date Range Date/Time Range SearchType Search Type Selection Blacklist
Whitelist
Manual
IncludeURLs Include URLs Checkbox Disabled IncludedURLs URLs to include Text ExcludeURLs Exclude URLs Checkbox Disabled ExcludedURLs URLs to exclude Text
Chrome Extensions Summary
Returns distinct list of installed Extensions (including extension ID) based on an enumeration of each users Windows profile. Only searches local windows profiles.
Columns
Name Type Description Chrome Profile Text Extension ID Text Extension Text Version Text
Browser Home Pages
Lists the homepages of each user for Internet Explorer, Firefox, and Chrome
username | browser | homepage
Columns
Name Type Description User Text Browser Text Homepage Text
Firefox Extensions
Returns installed Extensions based on the contents of the addons.json file from each users Windows profile and each Firefox profile. Only searches local windows profiles.
Columns
Name Type Description Windows Profile Text Firefox Profile Text Extension Text Version Text
Browser History - Exclusion List Version
Returns the version of either the blacklist.dat or whitelist.dat files currently on a given system.
Parameters
Name Description Type Possible / Default Values FILE Exclusion File Selection Blacklist
Whitelist
Browser History Domains
Returns the domains from browser history for IE 10+, Edge, Chrome, Firefox, and Safari (Mac OS X).
Deploy the Distribute Browser History Tools package prior to running this sensor.
Columns
Name Type Description URL Domain Text Parameters
Name Description Type Possible / Default Values LoadIE Internet Explorer Checkbox Disabled LoadFirefox Firefox Checkbox Disabled LoadChrome Chrome Checkbox Disabled LoadSafari Safari Checkbox Disabled VisitTimeFilterType Search Type Selection Days
Hours
Date Range
VisitTimeFilterValue Search period Numeric VisitTimeFilterRange Date Range Date/Time Range SearchType Search Type Selection Blacklist
Whitelist
Manual
IncludeURLs Include URLs Checkbox Disabled IncludedURLs URLs to include Text ExcludeURLs Exclude URLs Checkbox Disabled ExcludedURLs URLs to exclude Text
Browser History - URL Exists
Returns whether a given search URL is in the browser history for IE 10+, Edge, Chrome, Firefox, and Safari (Mac OS X).
Deploy the Distribute Browser History Tools package prior to running this sensor.
Columns
Name Type Description Exists Text Parameters
Name Description Type Possible / Default Values LoadIE Internet Explorer Checkbox Disabled LoadFirefox Firefox Checkbox Disabled LoadChrome Chrome Checkbox Disabled LoadSafari Safari Checkbox Disabled VisitTimeFilterType Search Type Selection Days
Hours
Date Range
VisitTimeFilterValue Search period Numeric VisitTimeFilterRange Date Range Date/Time Range SearchType Search Type Selection Blacklist
Whitelist
Manual
IncludedURLs URLs to include Text
Firefox Plugins
Returns installed plugins based on the registry keys
SOFTWARE\WOW6432Node\MozillaPlugins and
SOFTWARE\MozillaPlugins
Columns
Name Type Description Name Text Version Text Path Text
User Default Web Browser
Returns the default browser for each user and each protocol.
User | Browser | Version | Protocol
Columns
Name Type Description User Text Browser Text Version Text Protocol Text
Chrome Extensions
Returns installed Extensions based on an enumeration of each users Windows profile. Only searches local windows profiles.
Columns
Name Type Description Windows Profile Text Chrome Profile Text Extension Text Version Text
Has Browser History Tools
Determines if the endpoint has the BrowserHistorySearch binary and it is the version supported by the BrowserHistory sensor.
Returns "True", "False"
Actions
Deploy Distribute Browser History Viewer
Packages:
Deploy Distribute Browser History Viewer for Mac
Packages: