Why/How to Threat Hunting With Windows Process Creation/Termination (Event ID 4688/4689) Logs