<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
  <channel>
    <title>PowerShell Parser — Blog</title>
    <link>https://www.powershellparser.com/es/blog</link>
    <description>Latest from Blog</description>
    <language>es</language>
    <lastBuildDate>Tue, 29 Sep 2026 14:11:26 GMT</lastBuildDate>
    <atom:link href="https://www.powershellparser.com/es/blog/feed.xml" rel="self" type="application/rss+xml"/>
    <item>
      <title>Cómo analizar los registros de PowerShell en el navegador</title>
      <link>https://www.powershellparser.com/es/blog/analyze-powershell-logs-in-browser</link>
      <guid isPermaLink="true">https://www.powershellparser.com/es/blog/analyze-powershell-logs-in-browser</guid>
      <description>Paso a paso: abra registros .evtx de PowerShell, el historial de PSReadLine y las transcripciones en un visor gratuito en el navegador, reconstruya los bloques de script, decodifique comandos codificados y exporte a CSV o JSON.</description>
      <author>Florian Amette</author>
      <pubDate>Tue, 08 Sep 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Análisis forense de la transcripción de PowerShell: cómo leer la transcripción</title>
      <link>https://www.powershellparser.com/es/blog/powershell-transcription-forensics</link>
      <guid isPermaLink="true">https://www.powershellparser.com/es/blog/powershell-transcription-forensics</guid>
      <description>Cómo se estructuran las transcripciones de PowerShell, qué registra el encabezado, cómo funcionan las marcas de tiempo de los comandos con -IncludeInvocationHeader y cómo investigarlas.</description>
      <author>Florian Amette</author>
      <pubDate>Mon, 07 Sep 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Análisis forense de ConsoleHost_history.txt de PSReadLine</title>
      <link>https://www.powershellparser.com/es/blog/psreadline-consolehost-history-forensics</link>
      <guid isPermaLink="true">https://www.powershellparser.com/es/blog/psreadline-consolehost-history-forensics</guid>
      <description>Qué registra el archivo de historial de PSReadLine, dónde se encuentra, por qué no tiene marcas de tiempo y cómo usarlo (y cuáles son sus límites) en una investigación.</description>
      <author>Florian Amette</author>
      <pubDate>Sun, 06 Sep 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Decodificar -EncodedCommand y la ofuscación de PowerShell</title>
      <link>https://www.powershellparser.com/es/blog/decode-powershell-encoded-command</link>
      <guid isPermaLink="true">https://www.powershellparser.com/es/blog/decode-powershell-encoded-command</guid>
      <description>Cómo funcionan -EncodedCommand y las técnicas habituales de ofuscación de PowerShell (base64/UTF-16LE, gzip/deflate, códigos de carácter, concatenación, el operador de formato y las comillas invertidas) y cómo decodificarlas de forma segura.</description>
      <author>Florian Amette</author>
      <pubDate>Sat, 05 Sep 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Cómo recopilar los registros, las transcripciones y el historial de PowerShell</title>
      <link>https://www.powershellparser.com/es/blog/collect-powershell-logs-transcripts-history</link>
      <guid isPermaLink="true">https://www.powershellparser.com/es/blog/collect-powershell-logs-transcripts-history</guid>
      <description>Adquiera los registros de eventos de PowerShell, el historial de PSReadLine y las transcripciones desde un host en vivo, una colección de triaje o una imagen de disco, con comandos listos para copiar y los errores más habituales.</description>
      <author>Florian Amette</author>
      <pubDate>Fri, 04 Sep 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Registros de eventos de PowerShell en el análisis forense: todos los ID que importan</title>
      <link>https://www.powershellparser.com/es/blog/powershell-event-logs-forensics-guide</link>
      <guid isPermaLink="true">https://www.powershellparser.com/es/blog/powershell-event-logs-forensics-guide</guid>
      <description>Un mapa de los event ID forenses de PowerShell en los registros Operational y clásico Windows PowerShell (4104, 4103, 400, 403, 600, 800) y de lo que demuestra cada uno.</description>
      <author>Florian Amette</author>
      <pubDate>Thu, 03 Sep 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Script Block Logging de PowerShell (4104): guía forense</title>
      <link>https://www.powershellparser.com/es/blog/powershell-script-block-logging-4104-forensics</link>
      <guid isPermaLink="true">https://www.powershellparser.com/es/blog/powershell-script-block-logging-4104-forensics</guid>
      <description>Qué registra el event ID 4104, cómo divide Windows los bloques de script largos en varios eventos, por qué aparecen bloques de nivel Warning sin el registro completo y cómo interpretarlo en un caso.</description>
      <author>Florian Amette</author>
      <pubDate>Wed, 02 Sep 2026 00:00:00 GMT</pubDate>
    </item>
  </channel>
</rss>