Wevtutil

MITRE
Malware Type:
Tool
First seen:
Unknown
Last seen:
Unknown
Details:

[Wevtutil](https://attack.mitre.org/software/S0645) is a Windows command-line utility that enables administrators to retrieve information about event logs and publishers.(Citation: Wevtutil Microsoft Documentation)

Associated Techniques (5)
ID ATT&CK Tactics
T1005 Data from Local System -
T1070.001 Clear Windows Event Logs -
T1562.002 Disable Windows Event Logging -
T1685.001 Disable or Modify Windows Event Log -
T1685.005 Clear Windows Event Logs -