Tag Archives: Sysmon

Sysmon v11.0 from Sysinternals tools released

[German]Microsoft employee Mark Russinovich released his Sysinternals tool Sysmon in version 11.0 on April 28, 2020. Here is some information about it. And also a look how the whole thing looks like from a security point of view. Advertising

Posted in Software, Update, Windows | Tagged , , | 1 Comment


Sysmon: extract ProcessGUIDs, ParentProcessGUIDs, LogonGUIDs

How can we extract the data obtained by Sysmon like ProcessGUIDs, ParentProcessGUIDs, LogonGUIDs? Someone wrote a small PowerShell script. Perhaps interesting for one or the other reader. Advertising

Posted in Windows | Tagged , | Leave a comment