Technical Analysis of the Eternity Stealer
ID: 47b807f0-ed4a-5fa7-b841-520d2b165fa6
STIX ID: report--47b807f0-ed4a-5fa7-b841-520d2b165fa6
Feed Name: CloudSEK Blog
Threat Score
This report analyzes the Eternity stealer, a C#-based information-stealing malware that enumerates and decrypts credentials, browser and wallet data, FTP/VPN/app credentials, and Active Directory information, then uploads aggregated PII and sensitive artifacts to a command-and-control server; the analysis details obfuscation methods, deobfuscation routines, targeted applications, and provides IoCs.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
