Posh-Sysmon
1.1
Module for the creation and managing of Sysinternal Sysmon configuration XML files.
Minimum PowerShell version
3.0
Installation Options
Owners
Copyright
(c) 2018 Carlos Perez carlos_Perez@darkoperator.com. All rights reserved.
Package Details
Author(s)
- Carlos Perez carlos_Perez@darkoperator.com
Tags
Functions
Get-SysmonHashingAlgorithm Get-SysmonRule New-SysmonConfiguration New-SysmonDriverLoadFilter New-SysmonFileCreateFilter New-SysmonImageLoadFilter New-SysmonNetworkConnectFilter New-SysmonProcessCreateFilter New-SysmonProcessTerminateFilter Remove-SysmonRule Remove-SysmonRuleFilter Set-SysmonHashingAlgorithm Set-SysmonRule Get-SysmonEventData Get-SysmonRuleFilter New-SysmonProcessAccessFilter New-SysmonFileCreateStreamHashFilter New-SysmonRegistryFilter New-SysmonPipeFIlter New-SysmonWmiFilter ConvertFrom-SysmonBinaryConfiguration ConvertTo-SysmonXMLConfiguration Get-SysmonConfiguration
Dependencies
This module has no dependencies.
FileList
- Posh-Sysmon.nuspec
- build.ps1
- Config.ps1
- Filters.ps1
- LICENSE
- Posh-Sysmon.psd1
- Posh-SysMon.psm1
- README.md
- docs\Get-SysmonEventData.md
- docs\Get-SysmonHashingAlgorithm.md
- docs\Get-SysmonRule.md
- docs\Get-SysmonRuleFilter.md
- docs\New-SysmonConfiguration.md
- docs\New-SysmonDriverLoadFilter.md
- docs\New-SysmonFileCreateFilter.md
- docs\New-SysmonFileCreateStreamHash.md
- docs\New-SysmonFileCreateStreamHashFilter.md
- docs\New-SysmonImageLoadFilter.md
- docs\New-SysmonNetworkConnectFilter.md
- docs\New-SysmonPipeEvent.md
- docs\New-SysmonPipeFilter.md
- docs\New-SysmonProcessAccessFilter.md
- docs\New-SysmonProcessCreateFilter.md
- docs\New-SysmonProcessTerminateFilter.md
- docs\New-SysmonRegistryEvent.md
- docs\New-SysmonRegistryFilter.md
- docs\Remove-SysmonRule.md
- docs\Remove-SysmonRuleFilter.md
- docs\Set-SysmonHashingAlgorithm.md
- docs\Set-SysmonRule.md
- en-US\Posh-SysMon-help.xml
- en-US\Posh-SysMon.psm1-Help.xml
- Format\Sysmon.ConfigOption.ps1xml
- Format\Sysmon.Rule.Filter.ps1xml
- Format\Sysmon.Rule.ps1xml
- Functions\ConvertFrom-SysmonBinaryConfiguration.ps1
- Functions\ConvertTo-SysmonXMLConfiguration.ps1
- Functions\Get-SysmonConfiguration.ps1
- Functions\Get-SysmonEventData.ps1
- Functions\Get-SysmonHashingAlgorithm.ps1
- Functions\Get-SysmonRule.ps1
- Functions\Get-SysmonRuleFilter.ps1
- Functions\New-SysmonConfiguration.ps1
- Functions\New-SysmonCreateRemoteThreadFilter.ps1
- Functions\New-SysmonDriverLoadFilter.ps1
- Functions\New-SysmonFileCreateFilter.ps1
- Functions\New-SysmonFileCreateStreamHashFilter.ps1
- Functions\New-SysmonImageLoadFilter.ps1
- Functions\New-SysmonNetworkConnectFilter.ps1
- Functions\New-SysmonPipeFilter.ps1
- Functions\New-SysmonProcessAccessFilter.ps1
- Functions\New-SysmonProcessCreateFilter.ps1
- Functions\New-SysmonProcessTerminateFilter.ps1
- Functions\New-SysmonRawAccessReadFilter.ps1
- Functions\New-SysmonRegistryFilter.ps1
- Functions\New-SysmonWmiFilter.ps1
- Functions\Remove-SysmonRule.ps1
- Functions\Remove-SysmonRuleFilter.ps1
- Functions\Set-SysmonHashingAlgorithm.ps1
- Functions\Set-SysmonRule.ps1
- Functions\Schemas\SysmonConfigurationSchema_3_40.xsd
- Functions\Schemas\SysmonConfigurationSchema_4_00.xsd
- lib\sysmon3_1.dtd
- lib\sysmon3_2.dtd
- lib\sysmon3_3.dtd