BlackEnergy trojan strikes again: Attacks Ukrainian electric power industry

On December 23rd, 2015, around half of the homes in the Ivano-Frankivsk region in Ukraine (population around 1.4 million) were left without electricity for a few hours. According to the Ukrainian news media outlet TSN, the cause of the power outage was a “hacker attack” utilizing a “virus”. Looking at ESET’s own telemetry, we have … More BlackEnergy trojan strikes again: Attacks Ukrainian electric power industry

Multi-stage exploit installing trojan

Introduction ESET researchers receive and analyze thousands of new malware samples every day. Earlier this year, one of them caught our attention because it was not an ordinary executable file, but a preference file used by a specific program. Further analysis quickly revealed the file actually is malicious and exploited a vulnerability in the software … More Multi-stage exploit installing trojan

Beware banking trojans and their nasty helpers

Banking trojans are rife, infecting thousands of users around the globe and helping cybercriminals gain illegal access to banking credentials and account information. But to do this, they often need assistance from an assortment of trojan downloaders, webinject files and the like. In this feature, we take a closer look at four especially severe examples. … More Beware banking trojans and their nasty helpers

The Trojan Games: Odlanor malware cheats at poker

Whenever ESET malware researchers discover a new interesting attack, a new piece of malware, or an old threat evolving in an interesting way, we share the news on this blog. Every once in a while, though, we stumble upon something that stands out, something that doesn’t fall into the “common” malware categories that we encounter … More The Trojan Games: Odlanor malware cheats at poker

Aggressive Android ransomware spreading fast

We have been following the evolution and mass spreading of Android ransomware for a while now. After seeing early ransomware families combining fake antivirus with the ability to lock the devices screen (Android Defender, for example), last year we discovered Simplocker, the first Android ransomware to actually encrypt user files. This time, ESET researchers have … More Aggressive Android ransomware spreading fast