Hide Navigation Hide TOC HackTool - SysmonEnte Execution (d29ada0f-af45-4f27-8f32-f7b77c3dbc4e) Detects the use of SysmonEnte, a tool to attack the integrity of Sysmon Cluster A Galaxy A Cluster B Galaxy B Level HackTool - SysmonEnte Execution (d29ada0f-af45-4f27-8f32-f7b77c3dbc4e) Sigma-Rules Disable Windows Event Logging - T1562.002 (4eb28bed-d11a-4641-9863-c2ac017d910a) Attack Pattern 1 Disable Windows Event Logging - T1562.002 (4eb28bed-d11a-4641-9863-c2ac017d910a) Attack Pattern Impair Defenses - T1562 (3d333250-30e4-4a82-9edc-756c68afc529) Attack Pattern 2