Welcome!
We specialize on real-world advanced persistent threats.
Software
  • TDSS Remover
    Disinfects TDSS / TDL / Tidserv / Alureon rootkits

  • Bootkit Remover
    Disinfects Sinowal, Mebroot, Mebratix, Alipop, and Black Internet malware

  • IOCTL Fuzzer
    Helps locate vulnerabilities in Windows drivers
Services
News
NEW ARTICLES
"Bootkits - a new stage of development", (IN)Secure, November 2010
The article provides in-depth analysis of new MBR infectors: Alipop, Mebratix, and Black Internet.
Click here to download the issue

"TDSS botnet – full disclosure. Part II", Hakin9, December 2010
After breaking into the world’s biggest botnet, which was covered in the previous issue of Hakin9, we performed thorough analysis of the botnet’s undercover logic.
Click here to download the issue

"Case study: the Ibank trojan", Virus Bulletin, December 2010
Disclosing the technology behind online banking fraud with an in-depth analysis of the prevalent trojan which targets a wide variety of Russian online banking technologies.
The article is available to Virus Bulletin subscribers.

Q's, feedback and discussion are much appreciated.
NEW ARTICLE
"TDSS botnet: full disclosure" article has been published in Hakin9 #10/2010. This is part one of the complete writeup about breaking into the botnet and analyzing its inner workings.

Download or view the issue (page 18)
News archive