Skip to content
.ca
Home
Posts
Engagements
Recaps
IOCs
Detections
About
Search posts and IOCs
sign in
Loading…
indicator
filename
eb.sys
copy defanged
copy refanged (live)
First seen
2026-06-19
Last seen
2026-06-19
Sightings
1
Posts referencing this indicator
Killing me gently: Inside Gentlemen’s EDR killer framework
ESET
Custom rootkit driver dropped by the Kaspersky variant of GentleKiller.
2026-06-19
eb.sys · filename · cyfar.ca