How to Track Firewall Activity with the Windows Firewall Log

In the process of filtering Internet traffic, all firewalls have some type of logging feature that documents how the firewall handled various types of traffic. These logs can provide valuable information like source and destination IP addresses, port numbers, and protocols. You can also use the Windows Firewall log file to monitor TCP and UDP connections and packets that are blocked by the firewall.

Source: How to Track Firewall Activity with the Windows Firewall Log

Configure Windows diagnostic data in your organization (Windows 10) | Microsoft Docs

Endpoints The Microsoft Data Management Service routes data back to our secure cloud storage. Only Microsoft personnel with a valid business justification are permitted access. The following table defines the endpoints for Connected User Experiences and Telemetry component: Windows release Endpoint Windows 10, versions 1703 and 1709 Diagnostics data: v10.vortex-win.data.microsoft.com/collect/v1 Functional: v20.vortex-win.data.microsoft.com/collect/v1 Windows Advanced Threat Protection is country specific

Source: Configure Windows diagnostic data in your organization (Windows 10) | Microsoft Docs

Sysinternals Suite – Windows Sysinternals | Microsoft Docs

Sysinternals Suite

By Mark Russinovich
Updated: February 18, 2019
Download Sysinternals Suite (23.2 MB)
Download Sysinternals Suite for Nano Server (4.6 MB)

Introduction

The Sysinternals Troubleshooting Utilities have been rolled up into a single Suite of tools. This file contains the individual troubleshooting tools and help files. It does not contain non-troubleshooting tools like the BSOD Screen Saver.

The Suite is a bundling of the following selected Sysinternals Utilities: AccessChkAccessEnumAdExplorerAdInsightAdRestoreAutologonAutorunsBgInfoBlueScreenCacheSetClockResContigCoreinfoCtrl2CapDebugViewDesktopsDisk2vhdDiskExtDiskMonDiskViewDisk Usage (DU)EFSDumpFindLinksHandleHex2decJunctionLDMDumpListDLLsLiveKdLoadOrderLogonSessionsMoveFileNotMyFaultNTFSInfoPageDefragPendMovesPipeListPortMonProcDumpProcess ExplorerProcess MonitorPsExecPsFilePsGetSidPsInfoPsKillPsListPsLoggedOnPsLogListPsPasswdPsPingPsServicePsShutdownPsSuspendPsToolsRAMMapRegDelNullRegHideRegJumpRegistry Usage (RU)SDeleteShareEnumShellRunasSigcheckStreamsStringsSyncSysmonTCPViewVMMapVolumeIDWhoIsWinObjZoomIt

Download Sysinternals Suite (22.6 MB)
Download Sysinternals Suite for Nano Server (4.7 MB)

 

Source: Sysinternals Suite – Windows Sysinternals | Microsoft Docs

Some stuff about things