Geost
- First seen
- 2016-01-01 00:00:00
- Malware type
- trojan
- Family
- Malware family
- Last IoC activity
- 2026-07-18 15:55:20
- Profile updated
- 2026-07-07 14:06:45
Targeted industries: financial-services
Targeted regions: country_code:ru
Context
Geost is an Android banking trojan that primarily targets financial institutions in Russia, stealing credentials and intercepting SMS messages for two-factor authentication bypass.
Reports & references
- malpedia.caad.fkie.fraunhofer.de — Apk.Geost (report)
- virusbulletin.com — Vb2019 Paper Geost Botnet Story Discovery New Android Banking Trojan Opsec Error (report)
- Trend Micro — Dissecting Geost Exposing The Anatomy Of The Android Trojan Targeting Russian Banks (report)
- gosecure.net — Deep Dive Into An Obfuscation As A Service For Android Malware (report)