ESET Research


2300 articles

News from the Dorkside: Dorkbot botnet disrupted

News from the Dorkside: Dorkbot botnet disrupted

News from the Dorkside: Dorkbot botnet disrupted

Law enforcement agencies from around the globe, aided by Microsoft security researchers, today announced the disruption of one of the most widely distributed malware families – Win32/Dorkbot.

Jean-Ian Boutin03 Dec 2015


Operation Buhtrap malware distributed via ammyy.com

Operation Buhtrap malware distributed via ammyy.com

Operation Buhtrap malware distributed via ammyy.com

The free version of Ammyy's remote administrator software were being served a bundle that contained an NSIS installer used by the gang behind Operation Buhtrap.

Jean-Ian Boutin11 Nov 2015


Multi-stage exploit installing trojan

Multi-stage exploit installing trojan

Multi-stage exploit installing trojan

Earlier this year, a new type of trojan caught the attention of ESET researchers. This article will take a deep dive into how the exploit works and briefly describe the final payload.

Marc-Etienne M.Léveillé20 Oct 2015


Brolux trojan targeting Japanese online bankers

Brolux trojan targeting Japanese online bankers

Brolux trojan targeting Japanese online bankers

A banking trojan, detected by ESET as Win32/Brolux.A, is targeting Japanese internet banking users and spreading through at least two vulnerabilities: a Flash vulnerability leaked in the Hacking Team hack and the so-called unicorn bug, a vulnerability in Internet Explorer.

Jean-Ian Boutin and Anton Cherepanov15 Oct 2015


Android AdDisplay using anti-bouncer technique

Android AdDisplay using anti-bouncer technique

Android AdDisplay using anti-bouncer technique

In order to help make Google Play a safer place for Android users, ESET continues to monitor the official Android app market for malicious or potentially unwanted applications.

Lukas Stefanko08 Oct 2015


WhatsApp scam extends into multiple countries and brands

WhatsApp scam extends into multiple countries and brands

WhatsApp scam extends into multiple countries and brands

IKEA, KFC, H&M and 7-Eleven are just a few popular brands that are being exploited by cybercriminals via WhatsApp. We take a closer look at this multi-country, multi-brand fraud.

Lucas Paus07 Oct 2015


Jean-Ian Boutin: Banking trojan threat is not going anywhere

Jean-Ian Boutin: Banking trojan threat is not going anywhere

Jean-Ian Boutin: Banking trojan threat is not going anywhere

In an exclusive for We Live Security, Jean-Ian Boutin, a malware researcher at ESET, shares his thoughts on the past, present and future of banking trojans.

Editor06 Oct 2015


ESET Presentations at Virus Bulletin 2015

ESET Presentations at Virus Bulletin 2015

ESET Presentations at Virus Bulletin 2015

Some of the good things in store for those attending Virus Bulletin 2015.

David Harley27 Sep 2015


Android trojan drops in, despite Google’s Bouncer

Android trojan drops in, despite Google’s Bouncer

Android trojan drops in, despite Google’s Bouncer

ESET recently discovered an interesting stealth attack on Android users, an app that is a regular game but with an interesting addition: the application was bundled with another application.

Lukas Stefanko22 Sep 2015