Anton Cherepanov

Anton Cherepanov

Senior Malware Researcher


Education: Specialist degree in IT

Favorite activities? Traveling, reading

What is your golden rule for cyberspace? Use common sense

When did you get your first computer and what kind was it? In 1996 a 486DX4-100

Favorite computer game/activity? CTF games


35 articles by Anton Cherepanov

TeleBots are back: Supply-chain attacks against Ukraine

TeleBots are back: Supply-chain attacks against Ukraine

TeleBots are back: Supply-chain attacks against Ukraine

This blogpost reveals many details about the Diskcoder.C (aka ExPetr or NotPetya) outbreak and related information about previously unpublished attacks.

Anton Cherepanov30 Jun 201710 min. read


Industroyer: Biggest threat to industrial control systems since Stuxnet

Industroyer: Biggest threat to industrial control systems since Stuxnet

Industroyer: Biggest threat to industrial control systems since Stuxnet

ESET has analyzed a sophisticated and extremely dangerous malware, known as Industroyer, which is designed to disrupt critical industrial processes.

Anton Cherepanov and Robert Lipovsky12 Jun 20175 min. read


XData ransomware making rounds amid global WannaCryptor scare

XData ransomware making rounds amid global WannaCryptor scare

XData ransomware making rounds amid global WannaCryptor scare

A week after the global outbreak of WannaCryptor, also known as WannaCry, another ransomware, known as XData, has been making rounds.

Anton Cherepanov23 May 20172 min. read


The rise of TeleBots: Analyzing disruptive KillDisk attacks

The rise of TeleBots: Analyzing disruptive KillDisk attacks

The rise of TeleBots: Analyzing disruptive KillDisk attacks

ESET's Anton Cherepanov analyzes the work of TeleBots, a malicious toolset that was used in focused cyberattacks against targets in Ukraine's financial sector.

Anton Cherepanov13 Dec 201611 min. read


Modern attacks on Russian financial institutions

Modern attacks on Russian financial institutions

Modern attacks on Russian financial institutions

ESET's Anton Cherepanov Jean-Ian Boutin discuss their paper, titled Modern Attacks on Russian Financial Institutions, which was published earlier this year.

Anton Cherepanov and Jean-Ian Boutin12 Dec 20164 min. read


Book of Eli: African targeted attacks

Book of Eli: African targeted attacks

Book of Eli: African targeted attacks

ESET's latest research analyzes a piece of malware active since 2012, but which has targeted one specific country – Libya.

Anton Cherepanov22 Sep 20165 min. read


Operation Groundbait: Espionage in Ukrainian war zones

Operation Groundbait: Espionage in Ukrainian war zones

Operation Groundbait: Espionage in Ukrainian war zones

After BlackEnergy and Operation Potao Express, ESET researchers have uncovered another cyberespionage operation in Ukraine: Operation Groundbait.

Robert Lipovsky and Anton Cherepanov18 May 20162 min. read


BlackEnergy by the SSHBearDoor: attacks against Ukrainian news media and electric industry

BlackEnergy by the SSHBearDoor: attacks against Ukrainian news media and electric industry

BlackEnergy by the SSHBearDoor: attacks against Ukrainian news media and electric industry

The cybercriminal group behind BlackEnergy, the malware family that has been around since 2007 and has made a comeback in 2014, was also active in the year 2015.

Anton Cherepanov03 Jan 20166 min. read


Brolux trojan targeting Japanese online bankers

Brolux trojan targeting Japanese online bankers

Brolux trojan targeting Japanese online bankers

A banking trojan, detected by ESET as Win32/Brolux.A, is targeting Japanese internet banking users and spreading through at least two vulnerabilities: a Flash vulnerability leaked in the Hacking Team hack and the so-called unicorn bug, a vulnerability in Internet Explorer.

Jean-Ian Boutin and Anton Cherepanov15 Oct 20154 min. read