ClearFake malware uses proxy execution to run malicious PowerShell commands

ClearFake malware uses proxy execution to run malicious PowerShell commands gbhackers.com/clearfake… An evolved ClearFake malware campaign abuses trusted Windows feature proxy execution to run malicious PowerShell commands, evading detection and granting persistent control over compromised endpoints.

Edward Kiledjian @ekiledjian