FormBook Malware Spreads via Malvertising Using MalVirt Loader to Evade Detection _thehackernews.com
| posted by rouiejay12 in : threats | No comments |
1

An ongoing malvertising campaign is being used to distribute virtualized .NET loaders that are designed to deploy the FormBook information-stealing malware.

"The loaders, dubbed MalVirt, use obfuscated virtualization for anti-analysis and evasion along with the Windows Process Explorer driver for terminating processes," SentinelOne researchers Aleksandar Milenkoski and Tom Hegel said in a technical write-up.

Comments

You must log in or register to comment.

There's nothing here…