

Sysmon Tools
Sysmon View: an off-line Sysmon log visualization tool. Sysmon View helps in tracking and visualizing Sysmon logs by logically grouping and correlating the various Sysmon events together, using existing events data, such as executables names, session GUIDs, event creation time...
Cost / License
- Free
- Open Source
Platforms
- Windows
Features
- Logging
Tags
- threat-hunting
- sysmon
- Monitoring
- windows
- threat intelligence
- sysinternals
- netsec
- threatintel
Sysmon Tools News & Activities
Recent activities
Sysmon Tools information
What is Sysmon Tools?
Sysmon View: an off-line Sysmon log visualization tool. Sysmon View helps in tracking and visualizing Sysmon logs by logically grouping and correlating the various Sysmon events together, using existing events data, such as executables names, session GUIDs, event creation time, etc., the tool then re-arranges this data for display into multiple views
Sysmon Shell: a Sysmon configuration utility. Sysmon Shell can aid in writing and applying Sysmon XML configurations through a simple GUI interface.
Sysmon Box: a Sysmon and Network capture logging utility. Sysmon Box is a small utility that can aid in building a database of captured Sysmon and Network traffic.






