Sysmon : Psysmon is an official microsoft application for monitoring the systems status and events.
Psysmon is an official microsoft application for monitoring the system's status and events. With it, you can keep detailed control of system events, such as process creation, network connections, file creation and deletion, etc. Program is installed via command-line. If you want to install it you have to open cmd. In the path where you have installed the program. If you want to install it use the command bsysmon -i b.
from there, go to the windows event viewer. Then go to the path applications and services logs/microsoft/windows/sysmon/operational. There, you can see all the events occurring on the system. The program is capable of recording the following process eventspp1 processcreate - creation processpp2 filecreatetime - time of file creationpp3 networkconnect - network connection detectedpp4 changed service status of sysmon cannot be filteredpp.
Sysmon runs on
Windows 10/11
and is available under the
Freeware
license
— the installer is 1 MB.
We’ve catalogued it under
Gnome.
✓
Verified clean. Every Sysmon build on SoftLookup is scanned for viruses, spyware, adware, trojans and backdoors. We re-test on every update.
Help fellow users decide. Share your experience with Sysmon.