Behavior monitoring combined with machine learning spoils a massive Dofoil coin mining campaign
Credit to Author: Windows Defender Research| Date: Wed, 07 Mar 2018 21:58:45 +0000
Just before noon on March 6 (PST), Windows Defender AV blocked more than 80,000 instances of several sophisticated trojans that exhibited advanced cross-process injection techniques, persistence mechanisms, and evasion methods. Behavior-based signals coupled with cloud-powered machine learning models uncovered this new wave of infection attempts. The trojans, which are new variants of Dofoil (also known
Read More