https://jean0828.github.io/blog/posts/Monitoring-Powershell-commands-with-Elastic-Stack/
Monitoring Powershell commands with Elastic Stack - Unf0rG1v3n