154100x800000000000000085696Microsoft-Windows-Sysmon/Operationalar-win-2.attackrange.local-2023-11-23 08:42:20.722{0BACA6B2-106C-655F-E101-000000002903}2244C:\Windows\System32\cmd.exe10.0.14393.0 (rs1_release.160715-1616)Windows Command ProcessorMicrosoft® Windows® Operating SystemMicrosoft CorporationCmd.Execmd.exe /c rmdir /s /q C:\Users\Public\testC:\Temp\ATTACKRANGE\Administrator{0BACA6B2-09C2-655F-08E9-060000000000}0x6e9082HighMD5=F4F684066175B77E0C3A000549D2922C,SHA256=935C1861DF1F4018D698E8B65ABFA02D7E9037D8F68CA3C2065B6CA165D44AD2,IMPHASH=3062ED732D4B25D1C64F084DAC97D37A{0BACA6B2-106C-655F-D801-000000002903}2816C:\Windows\System32\cmd.exeC:\Windows\system32\cmd.exe /c ""C:\Temp\1.bat" "ATTACKRANGE\Administrator