ViperSoftX Uses Deep Learning-based Tesseract to Exfiltrate Information
ID: cd6ff0aa-7541-5937-bd05-cd245d9db761
STIX ID: report--cd6ff0aa-7541-5937-bd05-cd245d9db761
Feed Name: ASEC
Threat Score
**AhnLab ASEC analysis:** ViperSoftX is an actively distributed malware family (often disguised as cracks/keygens) that has been updated to install additional payloads including Quasar RAT and a new TesseractStealer which embeds Tesseract OCR to scan and exfiltrate user images containing OTPs, wallet seed phrases, and passwords; the report details infection/update mechanisms (PowerShell droppers, scheduled tasks), IOCs (file hashes, URLs, detection names), and recommended user precautions.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
