Invoke-Obfuscation RUNDLL LAUNCHER - System — Detection Rule

Detects Obfuscated Powershell via RUNDLL LAUNCHER

Read the full analysis on IntelFusions