Suspicious Usage of For Loop with Recursive Directory Search in CMD
Last updated on:
In this page
About the rule
Rule Type
Standard
Rule Description
Detects command shell activity resolving executable paths dynamically?behavior often seen in malicious LNK or batch-based attacks.
Severity
Critical
Detection
Execution Mode
realtime
Log Sources
Windows
Author
@Joseliyo Sanchez, @Joseliyo_Jstnk


