Disable SysMon (driver)

/static/assets/windows-logo.svg
The Fltmc.exe program is a system-supplied command line utility for common minifilter driver management operations. This procedure leverages the tool to disable the driver for SysMon, which will in effect stop the computer from generating logs.
locked
View Command

To view this TTPs command, you must be logged in with a professional or enterprise license.

Login

Test this TTP

Download Operator (1.7.1)