SysmonSearch icon indicating copy to clipboard operation
SysmonSearch copied to clipboard

Investigate suspicious activity by visualizing Sysmon's event log

Results 15 SysmonSearch issues
Sort by recently updated
recently updated
newest added

Please give me the exapmle of following: //monitor rule file path "savepath": "[path to the script]/rule_files" I can't understand what "monitor rule" is. Regards,

After following the steps as mentioned in the wiki > https://github.com/JPCERTCC/SysmonSearch/wiki/how-to-install#stixioc-server-setup I run up to the following response from the StixIoc server (on both Windows 7 x64 and Ubuntu 18.04...

Bumps [certifi](https://github.com/certifi/python-certifi) from 2019.9.11 to 2022.12.7. Commits 9e9e840 2022.12.07 b81bdb2 2022.09.24 939a28f 2022.09.14 aca828a 2022.06.15.2 de0eae1 Only use importlib.resources's new files() / Traversable API on Python ≥3.11 ... b8eb5e9 2022.06.15.1...

dependencies
python

Bumps [certifi](https://github.com/certifi/python-certifi) from 2019.11.28 to 2022.12.7. Commits 9e9e840 2022.12.07 b81bdb2 2022.09.24 939a28f 2022.09.14 aca828a 2022.06.15.2 de0eae1 Only use importlib.resources's new files() / Traversable API on Python ≥3.11 ... b8eb5e9 2022.06.15.1...

dependencies
python

My index name is not winlogbeat-* so nothing can not display on SysmonSearch Dashboard. Which part I should change to display log on Dashboard? plz This is the noti ![image](https://user-images.githubusercontent.com/50724075/205854149-dea699f8-9270-499e-a1e6-c11748148306.png)