How to check if my PC’s HTTPS/TLS connection is monitored or a key-logger is installed?

A few days ago, in the office, we were asked by our bosses to install a program. This was supposed to be an Antivirus program.

But after installing this program many of our colleagues have been facing some issues like a perf… Continue reading How to check if my PC’s HTTPS/TLS connection is monitored or a key-logger is installed?

LuckyMouse signs malicious NDISProxy driver with certificate of Chinese IT company

Since March 2018 we have discovered several infections where a previously unknown Trojan was injected into the lsass.exe system process memory. This campaign was active immediately prior to Central Asian high-level meeting and we suppose that actor behind still follows regional political agenda. Continue reading LuckyMouse signs malicious NDISProxy driver with certificate of Chinese IT company

BusyGasper – the unfriendly spy

In early 2018 we found a suspicious Android sample that, as it turned out, belonged to an unknown spyware family. Further investigation showed that the malware, which we named BusyGasper, is not all that sophisticated, but demonstrates some unusual features for this type of threat. Continue reading BusyGasper – the unfriendly spy