Note
Access to this page requires authorization. You can try signing in or changing directories.
Access to this page requires authorization. You can try changing directories.
This new version of config_v8.xml adds the latest additions from Sysmon :
- FileCreateStreamHash events
- PipeEvent events
- WmiEvent events
In addition, the XML was cleaned and all the events categories are now ordered by the event number.
Link to file: https://github.com/MotiBa/Sysmon/