Trend Micro came across a new FAKEAV variant that does not only perform the usual fake alert routine, but also downloads an additional component—a .DLL file that is inserted into the Layered Service Provider (LSP) chain.By inserting itself into the LSP chain, the said .DLL file will be loaded whenever an application uses Windows Socket […]