Elastic Windows Event Explorer
Channel - Microsoft-Windows-Sysmon/Operational
Publishers
Microsoft-Windows-Sysmon