Windows Monitoring with Sysmon: Practical Guide and Configuration
One might think that, considering how effective some companies are at logging everything we do to serve us ads, they’d at least apply that to help us understand what’s happening on our systems and monitor their performance and security. But in the case of Windows, traditional logs fall short — and that’s where the importance of Sysmon comes in. Sysmon is a Windows service that logs operating system activity into the event log.