Malicious LNK in Startup
Identifies .lnk files dropped into Startup folders, a persistence technique tied to WinRAR exploitation.
Microsoft Sentinel (KQL)

Identifies .lnk files dropped into Startup folders, a persistence technique tied to WinRAR exploitation.

Already have an account?