Wevtutil

MITRE
Malware Type:
Tool
First seen:
Unknown
Last seen:
Unknown
Details:

[Wevtutil](https://attack.mitre.org/software/S0645) is a Windows command-line utility that enables administrators to retrieve information about event logs and publishers.(Citation: Wevtutil Microsoft Documentation)

Associated Techniques (3)
ID ATT&CK Tactics
T1005 Data from Local System -
T1070.001 Clear Windows Event Logs -
T1562.002 Disable Windows Event Logging -
Metadata
ID: 782
Created: 13/01/2026 17:48
Updated: 06/03/2026 16:00