Microsoft documentation here: Sysmon – Sysinternals | Microsoft Learn
Logs location: C:\Windows\System32\winevt\Logs
config.xml file from SwiftOnSecurity:
personal blog
Microsoft documentation here: Sysmon – Sysinternals | Microsoft Learn
Logs location: C:\Windows\System32\winevt\Logs
config.xml file from SwiftOnSecurity: