Sysmon fails to use config file in Windows 7
Sysmon fails to use EventFiltering properties written in config file. I am trying to use,for example, this kind of config to detect network activity from powershell process:
<Sysmon schemaversion=”4.21″>
<HashA… Continue reading Sysmon fails to use config file in Windows 7