Endpoint · Multi-layered · Bratislava · est. 1992
ESET logo

Multi-layer protection
with a lightweight agent and 35 years of experience.

ESET PROTECT is a single platform for protecting endpoints, servers, email and mobile devices. Eight detection technologies work in parallel and complement each other, from classic signatures to the LiveGuard cloud sandbox and the behavioral HIPS layer.

Recognition
The longest run of VB100 awards in the industry.
110+
VB100 awards
110+
million users
200+
countries
ESET is a European developer headquartered in Bratislava. It follows privacy-by-design principles and processes data in line with GDPR.
Multi-layer protection

Every threat is checked
by eight technologies.
They don’t make the same mistakes.

ESET’s architecture is parallel: each layer is trained to catch a different class of threat. If one technology misses, the next one blocks execution at the exploit, behavior or persistence stage.

  • UEFI Scanner. Scans firmware for bootkits before the OS loads.
  • DNA Detection. A family of signatures based on behavior, not on hashes.
  • Advanced Memory Scanner. Analysis of fileless code right in RAM.
  • Exploit Blocker + HIPS. Protection against zero-day exploits and suspicious behavior.
  • Ransomware Shield. Detects ransomware by its behavior.
  • Network Attack Protection. An IDS filter at the network protocol level.
  • Botnet Protection. Interrupting C2 communications.
  • LiveGuard. A cloud sandbox for suspicious attachments and files.
ESET
Core
UEFI Scanner Network Attack Protection Botnet Protection LiveGuard Sandbox Ransomware Shield DNA Detection HIPS Memory Scanner
Footprint · average RAM usage
Less memory. A quieter fan.
ESET Endpoint Security ~110 MB
Lightweight cloud EDR (typical) ~260 MB
Heavy corporate AV ~500 MB
An illustration based on typical configurations. On real machines, CYBER BOOST measures resource use before and after deployment and records the SLA in the project.
Performance

Your defenses are
invisible to users.

ESET’s principle since 1992: security must not slow you down. The scanner runs on events, not on a timer. Updates are incremental. The agent UI is built on native WinAPI, not Electron.

<1%
CPU during background scanning
2-5 MB
average size of an incremental update
0
mandatory reboots after installation
7×
consecutive “Top Product” awards in AV-TEST 2023-24
ESET PROTECT · packages

Start with Entry and grow into MDR.

Licenses are modular. You can move between tiers without reinstalling agents. The table below shows what each package includes.

What’s included Entry
Basic AV
Advanced
+ Encryption
Complete
+ Mail + Cloud
Elite
+ EDR
MDR
+ Managed
ESET Endpoint Security (Windows / macOS / Linux)✓✓✓✓✓
ESET Server Security (Windows Server / Linux)✓✓✓✓✓
ESET PROTECT Cloud / On-Prem console✓✓✓✓✓
ESET Full Disk Encryption-✓✓✓✓
ESET Vulnerability & Patch Management-✓✓✓✓
ESET Mail Security + Cloud Office Security (M365)--✓✓✓
ESET LiveGuard Advanced (cloud sandbox)--✓✓✓
ESET Inspect (EDR) with MITRE rules---✓✓
ESET Threat Intelligence Feed---✓✓
ESET MDR: managed detection and response 24/7----✓
You can add ESET Secure Authentication (2FA) and ESET Mobile Threat Defense licenses to a package. Let’s discuss what fits your devices.
ESET Inspect · EDR

EDR on top of the ESET you know, without replacing agents.

Enterprise Inspector connects to your existing Endpoint Security and adds telemetry, MITRE ATT&CK detection rules and remote response tools.

  • A ready-made rule library - 600+ detections mapped to MITRE tactics and techniques.
  • Retrospective search. IOC search in historical telemetry for up to 90 days.
  • Remote response. Host isolation, remote execution of PowerShell/CMD.
  • Threat hunting. Custom rules in a simple DSL; YARA integration.
  • SOAR outputs. Webhook, REST API and syslog to SIEM (Splunk, Sentinel, QRadar).
ESET Inspect · Detection feed
illustrative
T1059.001 · PowerShell Execution HIGH
cmd.exe → powershell.exe -enc · 4 rule matches
T1003.001 · LSASS Memory CRITICAL
Suspicious handle open · MiniDump artefact
T1547.001 · Run Key Persistence MEDIUM
HKCU\Software\Microsoft\Windows\…\Run · new value
T1071.001 · Web protocol C2 MEDIUM
Outbound HTTPS · uncategorized domain · 30 min beacon
Industries

ESET works equally well
for 50 workstations or 50,000.

Public sector

EU data jurisdiction, GDPR-compliant processing and an on-prem PROTECT configuration on request.

Finance and banking

Protection for ATM networks and core banking servers, 2FA for workstations and remote offices, EDR in the SOC.

Healthcare

Protection for hospital information systems, LIS servers and thin clients; the lightweight agent doesn’t interfere with medical software.

Manufacturing

Protection for OT operator workstations, MES and SCADA proxy servers; HIPS in allow-list mode.

Education

A lightweight agent on old hardware, a multi-tenant console for branches and discounted academic licenses.

SMBs and retail

PROTECT Cloud for small IT teams: everything is managed in the browser, and you can add licenses one seat at a time.

CYBER BOOST × ESET

Authorized reseller and service partner in Uzbekistan.

We supply every ESET license (Endpoint, Server, Mail, Inspect, MDR), prepare on-prem PROTECT servers, migrate policies from old antivirus and train your administrators.

7 days
typical time to migrate 1,000 workstations from a competing antivirus.
UZS / USD
contracts in both currencies, quarterly certificates of completion and VAT documents.
RU/UZ
administrator training and runbooks in Russian and Uzbek.
L1–L3
support through CYBER BOOST, with escalation to ESET HQ when needed.
FAQ

Frequently asked questions about ESET PROTECT.

How is ESET PROTECT different from the classic ESET NOD32?
NOD32 is just an antivirus engine. ESET PROTECT is a corporate platform: a single console, multi-layer protection (HIPS, exploit blocker, ransomware shield, network attack protection), the Inspect EDR module, the LiveGuard cloud sandbox, encryption, 2FA and update management.
Can ESET PROTECT be deployed on-premise?
Yes. ESET PROTECT On-Prem installs on Windows Server or Linux as a Docker image. With ESET PROTECT Cloud, the console runs in the ESET cloud and agents work without a VPN. Customers often start in the cloud and move on-prem later, or the other way around. Licenses can be transferred.
How many resources does the agent use on a machine?
ESET is famous for being lightweight: typical usage is 80-120 MB of RAM and up to 1% CPU on modern workstations. That is 2-4 times less than old signature-based antivirus or heavy cloud EDR.
What does ESET Inspect (EDR) include?
ESET Inspect (EDR) is a full-fledged EDR add-on: telemetry on processes, registry, network and files; a library of ready-made detection rules mapped to MITRE ATT&CK; retrospective IOC search; remote response. It connects on top of existing ESET agents without replacing them.
Does ESET offer an MDR service?
Yes, ESET MDR. ESET analysts monitor your ESET Inspect 24/7, escalate confirmed incidents and respond using agreed playbooks. CYBER BOOST is an authorized partner and can connect the service for you.
Does ESET support macOS and Linux workstations?
Yes. ESET Endpoint Security is available for Windows, macOS and Linux. On servers, Windows Server 2012-2022 and popular Linux distributions (RHEL, Ubuntu, Debian, SUSE) are supported. Everything is managed from a single PROTECT console.
Request · ESET PROTECT

A license quote and a pilot within one business day.

Tell us how many workstations, servers and mailboxes you have, and we will send you a ready package configuration and a link to a free PROTECT Cloud pilot.