Who IsErIk: A Resurface of an Advanced Persistent Adware?

Bogdan BOTEZATU

September 23, 2019

Promo Protect all your devices, without slowing them down.
Free 30-day trial
Who IsErIk: A Resurface of an Advanced Persistent Adware?

As the malware industry expands, new tricks added to the cyber-criminal arsenal show up on a daily basis. Our Advanced Threat Control team has identified a massive expansion of the malicious repertoire meant to resurface old, but not-forgotten threats.

The main focus of this analysis is an adware loader, first discovered in 2016, which has kept such a low profile that researchers  still haven’t agreed to a common denomination, generically identifying it as APA – Advanced Persistent Adware.

Bitdefender researchers have discovered a new large scale malware campaign dubbed IsErik – a family of Advanced Persistent Adware that features advanced evasion mechanisms, as well as the ability to execute remote code received from the command and control server.

Download the whitepaper

Bitdefender has compiled an extended IoC list and made it available for download.

tags


Author


Bogdan BOTEZATU

Information security professional. Living my second childhood at @Bitdefender as director of threat research.

View all posts

You might also like

Bookmarks


loader