1. Enumerating Active TCP Connections

2. Retrieving Process Details

3. Getting Process Information with Path

4. Querying Process Information with CIM Instance

5. Filtering Suspicious Network Activity

6. Calculating Session Duration

7. Investigating Process Details (CIM Instance)