├── LICENSE ├── PSSysmonTools ├── Code │ ├── ConfigurationMerger.ps1 │ ├── GeneratedCode.ps1 │ ├── SysmonRuleParser.ps1 │ └── SysmonSchemaValidator.ps1 ├── PSSysmonTools.psd1 ├── PSSysmonTools.psm1 ├── Schemas │ ├── SysmonConfigurationSchema_3_40.xsd │ ├── SysmonConfigurationSchema_4_00.xsd │ └── SysmonConfigurationSchema_4_10.xsd └── Tests │ ├── Module.Tests.ps1 │ ├── PSSysmonTools.Tests.ps1 │ ├── SampleConfigs │ ├── README.txt │ ├── Sysmon_3_40_Autogenerated.xml │ ├── Sysmon_3_40_Empty.xml │ ├── Sysmon_4_0_Autogenerated.xml │ └── Sysmon_4_0_Empty.xml │ └── SupportedSysmonBinaries │ ├── README.txt │ ├── Sysmon_6_20.exe │ ├── Sysmon_7_00.exe │ ├── Sysmon_7_01.exe │ └── Sysmon_8_00.exe ├── README.md └── SysmonRegFormat.pdf /LICENSE: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/olafhartong/PSSysmonTools/HEAD/LICENSE -------------------------------------------------------------------------------- /PSSysmonTools/Code/ConfigurationMerger.ps1: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/olafhartong/PSSysmonTools/HEAD/PSSysmonTools/Code/ConfigurationMerger.ps1 -------------------------------------------------------------------------------- /PSSysmonTools/Code/GeneratedCode.ps1: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/olafhartong/PSSysmonTools/HEAD/PSSysmonTools/Code/GeneratedCode.ps1 -------------------------------------------------------------------------------- /PSSysmonTools/Code/SysmonRuleParser.ps1: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/olafhartong/PSSysmonTools/HEAD/PSSysmonTools/Code/SysmonRuleParser.ps1 -------------------------------------------------------------------------------- /PSSysmonTools/Code/SysmonSchemaValidator.ps1: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/olafhartong/PSSysmonTools/HEAD/PSSysmonTools/Code/SysmonSchemaValidator.ps1 -------------------------------------------------------------------------------- /PSSysmonTools/PSSysmonTools.psd1: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/olafhartong/PSSysmonTools/HEAD/PSSysmonTools/PSSysmonTools.psd1 -------------------------------------------------------------------------------- /PSSysmonTools/PSSysmonTools.psm1: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/olafhartong/PSSysmonTools/HEAD/PSSysmonTools/PSSysmonTools.psm1 -------------------------------------------------------------------------------- /PSSysmonTools/Schemas/SysmonConfigurationSchema_3_40.xsd: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/olafhartong/PSSysmonTools/HEAD/PSSysmonTools/Schemas/SysmonConfigurationSchema_3_40.xsd -------------------------------------------------------------------------------- /PSSysmonTools/Schemas/SysmonConfigurationSchema_4_00.xsd: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/olafhartong/PSSysmonTools/HEAD/PSSysmonTools/Schemas/SysmonConfigurationSchema_4_00.xsd -------------------------------------------------------------------------------- /PSSysmonTools/Schemas/SysmonConfigurationSchema_4_10.xsd: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/olafhartong/PSSysmonTools/HEAD/PSSysmonTools/Schemas/SysmonConfigurationSchema_4_10.xsd -------------------------------------------------------------------------------- /PSSysmonTools/Tests/Module.Tests.ps1: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/olafhartong/PSSysmonTools/HEAD/PSSysmonTools/Tests/Module.Tests.ps1 -------------------------------------------------------------------------------- /PSSysmonTools/Tests/PSSysmonTools.Tests.ps1: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/olafhartong/PSSysmonTools/HEAD/PSSysmonTools/Tests/PSSysmonTools.Tests.ps1 -------------------------------------------------------------------------------- /PSSysmonTools/Tests/SampleConfigs/README.txt: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/olafhartong/PSSysmonTools/HEAD/PSSysmonTools/Tests/SampleConfigs/README.txt -------------------------------------------------------------------------------- /PSSysmonTools/Tests/SampleConfigs/Sysmon_3_40_Autogenerated.xml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/olafhartong/PSSysmonTools/HEAD/PSSysmonTools/Tests/SampleConfigs/Sysmon_3_40_Autogenerated.xml -------------------------------------------------------------------------------- /PSSysmonTools/Tests/SampleConfigs/Sysmon_3_40_Empty.xml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/olafhartong/PSSysmonTools/HEAD/PSSysmonTools/Tests/SampleConfigs/Sysmon_3_40_Empty.xml -------------------------------------------------------------------------------- /PSSysmonTools/Tests/SampleConfigs/Sysmon_4_0_Autogenerated.xml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/olafhartong/PSSysmonTools/HEAD/PSSysmonTools/Tests/SampleConfigs/Sysmon_4_0_Autogenerated.xml -------------------------------------------------------------------------------- /PSSysmonTools/Tests/SampleConfigs/Sysmon_4_0_Empty.xml: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/olafhartong/PSSysmonTools/HEAD/PSSysmonTools/Tests/SampleConfigs/Sysmon_4_0_Empty.xml -------------------------------------------------------------------------------- /PSSysmonTools/Tests/SupportedSysmonBinaries/README.txt: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/olafhartong/PSSysmonTools/HEAD/PSSysmonTools/Tests/SupportedSysmonBinaries/README.txt -------------------------------------------------------------------------------- /PSSysmonTools/Tests/SupportedSysmonBinaries/Sysmon_6_20.exe: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/olafhartong/PSSysmonTools/HEAD/PSSysmonTools/Tests/SupportedSysmonBinaries/Sysmon_6_20.exe -------------------------------------------------------------------------------- /PSSysmonTools/Tests/SupportedSysmonBinaries/Sysmon_7_00.exe: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/olafhartong/PSSysmonTools/HEAD/PSSysmonTools/Tests/SupportedSysmonBinaries/Sysmon_7_00.exe -------------------------------------------------------------------------------- /PSSysmonTools/Tests/SupportedSysmonBinaries/Sysmon_7_01.exe: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/olafhartong/PSSysmonTools/HEAD/PSSysmonTools/Tests/SupportedSysmonBinaries/Sysmon_7_01.exe -------------------------------------------------------------------------------- /PSSysmonTools/Tests/SupportedSysmonBinaries/Sysmon_8_00.exe: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/olafhartong/PSSysmonTools/HEAD/PSSysmonTools/Tests/SupportedSysmonBinaries/Sysmon_8_00.exe -------------------------------------------------------------------------------- /README.md: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/olafhartong/PSSysmonTools/HEAD/README.md -------------------------------------------------------------------------------- /SysmonRegFormat.pdf: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/olafhartong/PSSysmonTools/HEAD/SysmonRegFormat.pdf --------------------------------------------------------------------------------