Adversaries may abuse the Windows command shell for execution. Tactics TA0002 Sub-technique of T1059 See: MITRE ATT&CK