How to get started with Microsoft Sysinternals' Sysmon advanced event logging