154100x800000000000000013131Microsoft-Windows-Sysmon/Operationalar-win-2.attackrange.local-2023-09-14 07:50:10.095{78EA5E2B-BB32-6502-B100-000000000C03}3584C:\Windows\System32\taskkill.exe10.0.14393.0 (rs1_release.160715-1616)Terminates ProcessesMicrosoft® Windows® Operating SystemMicrosoft Corporationtaskkill.exetaskkill /f /im cmd.exeC:\Users\Administrator\AR-WIN-2\Administrator{78EA5E2B-BB11-6502-7888-040000000000}0x488782HighMD5=8C066C766F5CD84CBC47E14712C54FD0,SHA256=0EA8C0267A76B543302C4258B78BC477AA8876767B7A526549CCE34EEF6D859F,IMPHASH=5F3868B59CD541824A308E7BB7B9CAC3{78EA5E2B-BB22-6502-AF00-000000000C03}5036C:\Windows\System32\cmd.exe"C:\Windows\system32\cmd.exe" AR-WIN-2\Administrator