I have enable powershell logging and when it is executed, a file is dropped onto a network share.
A folder is created for everyday and the file name is the system.randomstring.datatimestamp.txt
The file contains system info, user data, starttime, and command executed.
I looking at how these are imported, I have to associate them to a device.
Is there a way to ingest them into eventlog analyzer as raw data?