
21 Jul
2014
21 Jul
'14
1:03 a.m.
On 21/07/14 03:20, Andrew McGlashan wrote:
I did read something, somewhere, but I can't recall enough details to find it. I do recall something about AV not checking the scripts, but again, I can't find that detail now.
PowerShell wasn't shipped with Windows by default until Windows 7, so a hypothetical reason could be simply due to the actual threat being quite low. Either way, anti-virus can block at the file access layer, so blocking a known malicious PowerShell script is no more or less difficult than blocking, say, a batch or VBScript virus.