Wazuh virustotal active response script for windows agent

413 views
Skip to first unread message

sneaks rep

unread,
Jan 11, 2022, 6:54:27 AM1/11/22
to Wazuh mailing list
Hi friends! Working on wazuh active response to remove malwate when determined positive with vitus total. The agent is installed on a windows os. Anyone can pls help me with the configuration on the windows host to remove the malware files when deemed positive?

Federico Pacher

unread,
Jan 13, 2022, 7:26:13 AM1/13/22
to Wazuh mailing list

Hi there,

Sorry for my delay. At the time Wazuh does not provide a script to remove malware from Windows agents but there is a step-by-step guide to configure your agents and manager to remove malware from Linux agents. You can simply adapt the script to run on windows. This link shows you how to create windows executable script.
I hope this information helps you
Regards
Reply all
Reply to author
Forward
0 new messages