Mallox Ransomware Found Evading AMSI Detection Using New PowerShell Script

Dec 27, 2023

The PowerShell script uses a technique developed by a researcher in 2022, which involves patching the Windows Defender registered DLL for AMSI with a shellcode to overwrite the function that scans PowerShell scripts.

Get Free Report & Network Analysis

Please check your email for the free report.