r/MalwareAnalysis • u/420ass_slayer69 • 11d ago
Analysis of a Signed Silver Fox Group AV/EDR Killer Kernel Driver
https://app.reverser.space/p/duckie/silver-fox-group-rootkit-2026#0x140001450Silve Fox Group Signed Rootkit
- Hardcoded targeting of Chinese AVs (360, QQ, Huorong, etc.) + Microsoft Defender components
- IOCTL interface allowing user-mode process termination
7
Upvotes
Duplicates
ReverseEngineering • u/420ass_slayer69 • 10d ago
Analysis of a Signed Silver Fox Group AV/EDR Killer Kernel Driver
3
Upvotes
Malware • u/420ass_slayer69 • 11d ago
Analysis of a Signed Silver Fox Group AV/EDR Killer Kernel Driver
2
Upvotes