EDRSilencer
- First seen
- 2022-11-15 00:00:00
- Malware type
- trojan, spyware
- Profile updated
- 2026-07-07 14:59:36
Targeted industries: government-and-public-sector financial-services technology-and-telecommunications
Context
Trend Micro describes EDRSilencer as a red team tool originally designed to interfere with endpoint detection and response solutions via the Windows Filtering Platform, which is actively being used by threat actors.
Detection coverage
- 1 YARA rules
Detection rules
- DITEKSHEN_INDICATOR_TOOL_Edrsilencer (yara-rule)
Reports & references
- malpedia.caad.fkie.fraunhofer.de — Win.Edr Silencer (report)
- Trend Micro — Edrsilencer Disrupting Endpoint Security Solutions (report)