Just discovered a staged dropper chain (Amadey + RedLine Stealer)
hiding inside iolo’s AV SDK folder.
Defender: "threat not fully removed".
Confirmed by Dr.Web LiveDisk. SSD removed.
Full writeup + screenshots coming.
Anyone else seen AVs protecting the malware itself?
#infosec #malware #amadey
1 year ago
0
0
0
0