Poweliks – Command Line Confusion
https://www.stormshield.com/news/poweliks-command-line-confusion/
Recently, hFireF0X provided a detailed walkthrough on the reverse engineering forum kernelmode.info about Win32/Poweliks malware. The particularity of this malware is that it resides in the Windows registry and uses rundll32.exe to execute JavaScript code. I found it funny that we can execute some...