New Generation of Raccoon Stealer v2
ID: 5c8e7d8a-9d83-5df9-92d8-b3bb48ab2864
STIX ID: report--5c8e7d8a-9d83-5df9-92d8-b3bb48ab2864
Feed Name: Zscaler Security Research Blog
Raccoon Stealer v2 is an information-stealing malware (sold as Malware-as-a-Service) analyzed in this report: the sample (EXE) is written in C and uses Base64+RC4 string encryption, dynamic WinAPI resolution, hardcoded C2 IPs, HTTP-based communication to retrieve additional DLL payloads, host fingerprinting, and exfiltration of browser credentials and crypto-wallet data; the report provides file hashes, C2 IP(s), downloaded DLL names, example paths, and detection coverage.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
