ESET Research


2300 articles

Nemucod serves nasty package: Ransomware and ad-clickers

Nemucod serves nasty package: Ransomware and ad-clickers

Nemucod serves nasty package: Ransomware and ad-clickers

The operators of the notorious trojan downloader Nemucod seem to have stepped up their game, serving their victims with ransomware and ad-clickers.

Ondrej Kubovič18 Aug 2016


Nemucod now spreading banking trojans in Brazil

Nemucod now spreading banking trojans in Brazil

Nemucod now spreading banking trojans in Brazil

On the morning of Friday August 12th, ESET researchers noticed a huge outbreak of a new Spy.Banker variant, detected as Spy.Banker.ADEA. It happened at around 12pm CET.

Cassius Puodzius17 Aug 2016


Fake Prisma apps found on Google Play

Fake Prisma apps found on Google Play

Fake Prisma apps found on Google Play

ESET researchers have discovered fake Prisma apps of different types, including several dangerous trojan downloaders. The Google Play security team has since removed them.

Lukas Stefanko03 Aug 2016


Malicious scripts gaining prevalence in Brazil

Malicious scripts gaining prevalence in Brazil

Malicious scripts gaining prevalence in Brazil

Malicious scripts are gaining prevalence in Brazil, reports ESET's Matías Porolli.

Matías Porolli19 Jul 2016


Fake apps on Google Play tricked users into paying instead of delivering promised followers

Fake apps on Google Play tricked users into paying instead of delivering promised followers

Fake apps on Google Play tricked users into paying instead of delivering promised followers

ESET has discovered eight fake applications on Google Play, which were promising to boost the number of followers on users’ social network profiles. Our security software is detecting these as Android/Fasurke.

Lukas Stefanko14 Jul 2016


Nymaim rides again in 2016 and reaches Brazil

Nymaim rides again in 2016 and reaches Brazil

Nymaim rides again in 2016 and reaches Brazil

During the first half of this year, ESET has observed an increase in the number of detections of Nymaim, a long-known malware family whose prevalence has fallen markedly since 2014.

Cassius Puodzius12 Jul 2016


New OSX/Keydnap malware is hungry for credentials

New OSX/Keydnap malware is hungry for credentials

New OSX/Keydnap malware is hungry for credentials

For the last few weeks, ESET has been investigating OSX/Keydnap, a malware that steals the content of the keychain while maintaining a permanent backdoor.

Marc-Etienne M.Léveillé06 Jul 2016


Espionage toolkit targeting Central and Eastern Europe uncovered

Espionage toolkit targeting Central and Eastern Europe uncovered

Espionage toolkit targeting Central and Eastern Europe uncovered

Over the course of the last year, ESET has detected and analyzed several instances of malware used for targeted espionage – dubbed SBDH toolkit.

Tomáš Gardoň01 Jul 2016


Operation Groundbait: Espionage in Ukrainian war zones

Operation Groundbait: Espionage in Ukrainian war zones

Operation Groundbait: Espionage in Ukrainian war zones

After BlackEnergy and Operation Potao Express, ESET researchers have uncovered another cyberespionage operation in Ukraine: Operation Groundbait.

Robert Lipovsky and Anton Cherepanov18 May 2016