ETW Trace Evasion Activity (a238b5d0-ce2d-4414-a676-7a531b3d13d6)
Detects command line activity that tries to clear or disable any ETW trace log which could be a sign of logging evasion.
Detects command line activity that tries to clear or disable any ETW trace log which could be a sign of logging evasion.