Discussion in 'malware problems & news' started by MrBrian, Apr 15, 2014.
I must say that I don´t completely understand it. Will this also bypass HIPS?
Can anyone explain, of course as simple as possible?
It involves a legitimate program loading a malicious DLL. If your HIPS watches DLL loads, you might catch this.
Here's another article on the PlugX malware mentioned in the paper.
Another article on PlugX malware
Separate names with a comma.