EDRSilencer

First seen
2022-11-15 00:00:00
Malware type
trojan, spyware
Profile updated
2026-07-07 14:59:36

Targeted industries: government-and-public-sector financial-services technology-and-telecommunications

Context

Trend Micro describes EDRSilencer as a red team tool originally designed to interfere with endpoint detection and response solutions via the Windows Filtering Platform, which is actively being used by threat actors.

Detection coverage

  • 1 YARA rules

Detection rules

  • DITEKSHEN_INDICATOR_TOOL_Edrsilencer (yara-rule)

Reports & references

  • malpedia.caad.fkie.fraunhofer.de — Win.Edr Silencer (report)
  • Trend Micro — Edrsilencer Disrupting Endpoint Security Solutions (report)

External references