logo

Infostealer Logs Analysis Report

ID: ac4d93ae-a3dd-5d11-be6f-dc09470cdb44

STIX ID: report--ac4d93ae-a3dd-5d11-be6f-dc09470cdb44

Feed Name: ASEC

Threat Score
72/100

Date Published: 2024-11-28

Date Updated: 2026-04-26

Author: ATCP

...
...

This report examines Top-30 fields extracted from Infostealer logs (Aug–Oct 2024) across ~28.25M infections, identifying attacker build IDs (many linked to Telegram channels), primary infection/injection paths (68.2% .NET Framework paths; common abused executables include regasm.exe, bitlockertogo.exe, msbuild.exe), and victim metadata by country, OS, and user type—providing large-scale profiling of threat actors, common TTPs, and artifact indicators to inform detection and response.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.