(Especially MS17–010) — Keep in mind that WannaCry itself is still active — our killswitch prevented 80K infections in the past 7 days alone ! Comae Team dubbed this malware: Byata wevtutil cl Setup & wevtutil cl System & wevtutil cl Security & wevtutil cl Application & fsutil usn deletejournal /D %c:v