Just discovered a staged dropper chain (Amadey + RedLine Stealer) hiding inside iolo’s AV SDK folder. Defender: "threat not fully removed". Confirmed by Dr.Web LiveDisk. SSD removed. Full writeup + screenshots coming. Anyone else seen AVs protecting the malware itself? #infosec #malware #amadey