All Rules in Microsoft.IntelligencePacks.Sysmon Management Pack

 DisplayNameDescriptionIDTargetCategoryEnabledInstance NameCounter NameFrequencyEvent_IDEvent SourceAlert GenerateAlert SeverityAlert PriorityRemotableEvent Log
Microsoft.SystemCenter.Sysmon.CollectEventsRead Sysmon eventsReads Sysmon events from the event log and prepares them for publishingMicrosoft.SystemCenter.Sysmon.CollectEventsMicrosoft.Windows.ComputerEventCollectionFalse00FalseTrueMicrosoft-Windows-Sysmon/Operational
Microsoft.SystemCenter.Sysmon.CollectRuleErrors.CollectEventsMonitoring - Read Sysmon eventsCollects error events from Sysmon events rules for monitoring purposesMicrosoft.SystemCenter.Sysmon.CollectRuleErrors.CollectEventsMicrosoft.Windows.ComputerCustomFalse00FalseFalse