Geost

First seen
2016-01-01 00:00:00
Malware type
trojan
Family
Malware family
Last IoC activity
2026-07-18 15:55:20
Profile updated
2026-07-07 14:06:45

Targeted industries: financial-services

Targeted regions: country_code:ru

Context

Geost is an Android banking trojan that primarily targets financial institutions in Russia, stealing credentials and intercepting SMS messages for two-factor authentication bypass.

Reports & references

  • malpedia.caad.fkie.fraunhofer.de — Apk.Geost (report)
  • virusbulletin.com — Vb2019 Paper Geost Botnet Story Discovery New Android Banking Trojan Opsec Error (report)
  • Trend Micro — Dissecting Geost Exposing The Anatomy Of The Android Trojan Targeting Russian Banks (report)
  • gosecure.net — Deep Dive Into An Obfuscation As A Service For Android Malware (report)

External references