Malware3 min read
ResiLoader Kills 140+ Security Tools Before Deploying StealC
Malwarebytes documents a new loader that abuses a legitimate driver to terminate EDR processes, then uses process hollowing to inject the StealC infostealer through fake Google and Cloudflare verification pages.
James RiveraJul 3, 2026