Malware leverages Windows Management Instrumentation (WMI) team described a novel persistence mechanism that leverages the Windows Management Instrumentation (WMI) toolset. In that incident, a Windows 2003 server contained unidentified malware, possibly a variant of the StartPage trojan. After developing countermeasures for the persistence mechanism, CTU researchers discovered additional infections on client environments using the Advanced Endpoint Threat Detection - Red Cloak(TM) platform. The discovery of more widespread use highlights the advantages of leveraging knowledge gained during a response engagement to quickly deploy protections across all client networks.
Created: 2026-02-23
Indicatorsは見つかっていない。
このPulseに見つかったCVEはありません。