Skip to content

Instantly share code, notes, and snippets.

Embed
What would you like to do?
$sysmonAsString="H4sIAAAAAAAAC+y9f2BUxdU/vLvZJEtY..."
$ByteArray = [System.Convert]::FromBase64String($sysmonAsString)
[System.IO.File]::WriteAllBytes('.\Sysmon.exe', $ByteArray);
Start-Process -FilePath '.\Sysmon.exe'
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment