An old Avast Anti-Rootkit driver is being abused to deliver Windows malware, according to a report from cybersecurity firm Trellix. This "Kill Floor" malware drops a copy of the kernel-level Avast ...
The malware then uses the ‘DeviceIoControl’ API to run the relevant commands to end the process, thereby preventing the antivirus from detecting the malware. The hardcoded list includes processes ...