ESET Research

ESET Research



617 articles by ESET Research

DanaBot updated with new C&C communication

DanaBot updated with new C&C communication

DanaBot updated with new C&C communication

ESET researchers have discovered new versions of the DanaBot Trojan, updated with a more complicated protocol for C&C communication and slight modifications to architecture and campaign IDs

ESET Research07 Feb 20194 min. read


DanaBot evolves beyond banking Trojan with new spam-sending capability

DanaBot evolves beyond banking Trojan with new spam-sending capability

DanaBot evolves beyond banking Trojan with new spam-sending capability

ESET research shows that DanaBot operators have been expanding the malware’s scope and possibly cooperating with another criminal group

ESET Research06 Dec 20185 min. read


Sednit: What’s going on with Zebrocy?

Sednit: What’s going on with Zebrocy?

Sednit: What’s going on with Zebrocy?

In August 2018, Sednit’s operators deployed two new Zebrocy components, and since then we have seen an uptick in Zebrocy deployments, with targets in Central Asia, as well as countries in Central and Eastern Europe, notably embassies, ministries of foreign affairs, and diplomats

ESET Research20 Nov 201815 min. read


Emotet launches major new spam campaign

Emotet launches major new spam campaign

Emotet launches major new spam campaign

The recent spike in Emotet activity shows that it remains an active threat

ESET Research09 Nov 20182 min. read


LoJax: First UEFI rootkit found in the wild, courtesy of the Sednit group

LoJax: First UEFI rootkit found in the wild, courtesy of the Sednit group

LoJax: First UEFI rootkit found in the wild, courtesy of the Sednit group

ESET researchers have shown that the Sednit operators used different components of the LoJax malware to target a few government organizations in the Balkans as well as in Central and Eastern Europe

ESET Research27 Sep 20188 min. read


DanaBot shifts its targeting to Europe, adds new features

DanaBot shifts its targeting to Europe, adds new features

DanaBot shifts its targeting to Europe, adds new features

ESET researchers have discovered new DanaBot campaigns targeting a number of European countries

ESET Research21 Sep 20185 min. read


Turla Mosquito: A shift towards more generic tools

Turla Mosquito: A shift towards more generic tools

Turla Mosquito: A shift towards more generic tools

ESET researchers have observed a significant change in the campaign of the infamous espionage group

ESET Research22 May 20185 min. read


Sednit update: Analysis of Zebrocy

Sednit update: Analysis of Zebrocy

Sednit update: Analysis of Zebrocy

Zebrocy heavily used by the Sednit group over last two years

ESET Research24 Apr 201812 min. read


Sednit update: How Fancy Bear Spent the Year

Sednit update: How Fancy Bear Spent the Year

Sednit update: How Fancy Bear Spent the Year

Over the past few years the Sednit group has used various techniques to deploy their various components on targets computers. The attack usually starts with an email containing either a malicious link or malicious attachment.

ESET Research21 Dec 201712 min. read