EYService (Malware Family) By Fraunhofer FKIE Archived: 2026-04-06 15:14:49 UTC EYService is the main part of the backdoor used by Nazar APT. This a passive backdoor that relies on, now discontinued, Packet Sniffer SDK (PSSDK) from Microolap. [TLP:WHITE] win_eyservice_auto (20251219 | Detects win.eyservice.) Source: https://malpedia.caad.fkie.fraunhofer.de/details/win.eyservice https://malpedia.caad.fkie.fraunhofer.de/details/win.eyservice Page 1 of 1