Malware Signature

The following table shows a list of malware samples and the corresponding botnet C&C (ip:port) associated with Stealc

Database Entry


Malware:Stealc
First seen:2023-08-28 15:11:47 UTC
Last seen:2024-01-20 13:18:49 UTC

Malware Samples


The table below documents all malware samples associated with this malware family.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2024-01-20 13:18:49557499e92f38268a8c2dbc0df429af45n/aStealc45.15.156.13:443
2024-01-19 18:48:180518d9c6db9a614769bf43fbff180167n/aStealc45.15.156.13:443
2024-01-11 20:40:21124adf237451ea720d1bbfc144d8fc4eVirustotal results 27 / 69 (39.13%) Stealc49.12.114.15:10220
2024-01-11 17:17:37b8cc0350767e8e8ffb0e50c92aa3b651n/aStealc49.12.114.15:10220
2024-01-11 08:35:592ea565bc6df36a9fa3b9fedb987a74b8n/aStealc49.12.114.15:10220
2024-01-11 07:06:21ae55ff8911f552d42878a93677cff2ccn/aStealc49.12.114.15:10220
2024-01-09 12:15:2555cc830f41f9e74fbcfe2259d304c99bn/aStealc49.12.114.15:10220
2024-01-08 23:25:439c3de6a15dbac7befa3414f812912c90Virustotal results 22 / 55 (40.00%) Stealc49.12.114.15:10220
2024-01-08 21:07:55bebfbe9470a922c295de4bfc642e1652Virustotal results 29 / 68 (42.65%) Stealc49.12.114.15:10220
2023-08-28 15:11:4729c7b693138b81891ce5983104d66edeVirustotal results 29 / 67 (43.28%) Stealc156.236.72.121:443