4104152150x0121838Microsoft-Windows-PowerShell/Operationalwin-dc-mhaag-attack-range-270.attackrange.local11Get-WmiObject Win32_Shadowcopy | ForEach-Object {$_.Delete();}205af966-f636-408b-970e-9755248c2a52