- Download sysmon from https://download.sysinternals.com/files/Sysmon.zip,
- Extract Sysmon.zip under C:/ drive,
- Run CMD as administrator and execute command below;
C:/Sysmon/Sysmon64 -accepteula -i -h md5,sha256 -n
- Copy our recommended config file to C:/Sysmon folder and execute command below on CMD,
Sysmon64 -c C:/Sysmon/sysmonconfig-logsign.xml
After complete NXLog integration ,Sysmon will start forward logs to Logsign.