Netskope Threat Labs

Edrkillshift

ATP Sandbox Adv. Heuristics

This generic detection identifies attempts to tamper with endpoint detection and response agents so that security tooling cannot observe or stop an intrusion.

First seen
September 2024
Last seen
September 2026
Alert Name
Win64.Trojan.Edrkillshift