Hackers Are Now Exploiting Windows Event Logs
eSecurity Planet
MAY 10, 2022
The system uses DLL (Dynamic Link Library) files to store some resources the application needs and will load automatically. Kaspersky researchers explored the code and discovered it acts as a proxy to intercept all calls to the original library (the legitimate one) and prepare the next stages, which indicates an iterative procedure.
Let's personalize your content