Skip to content
.ca
Home
Posts
Engagements
Recaps
IOCs
Detections
About
Search posts and IOCs
sign in
Loading…
indicator
filename
G11.sys
copy defanged
copy refanged (live)
First seen
2026-06-19
Last seen
2026-06-19
Sightings
1
Posts referencing this indicator
Killing me gently: Inside Gentlemen’s EDR killer framework
ESET
PoisonX rootkit driver dropped by the G11 variant of GentleKiller.
2026-06-19
G11.sys · filename · cyfar.ca