Invoke-Obfuscation VAR+ Launcher - Security — Detection Rule

Detects Obfuscated use of Environment Variables to execute PowerShell

Read the full analysis on IntelFusions