Suspicious wevtutil Usage
Clear Windows Event Logs, Indicator Removal
Clear Windows Event Logs, Indicator Removal
Data Destruction, File Deletion, Indicator Removal
Exfiltration Over Unencrypted Non-C2 Protocol, Exfiltration Over Alternative Protocol
Process Injection
Rename System Utilities, Masquerading