New Mimic Ransomware Abuses Everything APIs for its Encryption Process

Discussion in 'malware problems & news' started by guest, Jan 27, 2023.

  1. guest

    guest Guest

    New ransomware strain exploits Windows search tool Everything
    By Justin Luna @_justinluna - January 27, 2023
    Trend Micro: New Mimic Ransomware Abuses Everything APIs for its Encryption Process
     
  2. Rasheed187

    Rasheed187 Registered Member

    Joined:
    Jul 10, 2004
    Posts:
    18,178
    Location:
    The Netherlands
    I've read the article but they didn't explain how this Mimic ransomware is capable of disabling Win Defender. Would have been interesting to know. And I suppose if the user has downloaded this tool via attachment, they would most likely click on yes anyway, so UAC bypass wouldn't even be necessary.

     
  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.