This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Intercept X advanced With EDR query for a keylogger

Hi , 

I have a keylogger written in python listening and sending a file containing the keys pressed by the user to an email every time the user press esc. i want to detect it using Sophos edr by a query that look to a process sending a file periodically or by looking in the system for process that is listening for keys. Does this query exist or should i create one my own. if anyone know how please share.

THANKS !!!!!!!!!!

Regards. 



This thread was automatically locked due to age.