Windows Event Loggingand Forwarding - ACSC | Cyber.gov.au

It is important to increase the value of the process creation events by including command line arguments with process creation events. This feature is enabled for Microsoft Windows 8.1 and Microsoft Windows Server 2012 R2, and newer versions. ... This event category will forward PowerShell engine start events, and with the following Group ... ................
................