Netskope Threat Labs

StealC

ATP Sandbox Adv. Heuristics

Stealc is an alternate detection name for the StealC information stealer, a subscription service malware that harvests browser credentials, cookies, and cryptocurrency wallets from infected systems. Its operators distribute it through fake downloads and social engineering lures, and stolen data flows to panels used for account takeover and resale. Detections under this name indicate credential exposure that warrants immediate resets.

First seen
February 2023
Last seen
October 2026
Stealc
Alert Name
ByteCode-MSIL.Downloader.StealC
ByteCode-MSIL.Spyware.Stealc
ByteCode-MSIL.Trojan.Stealc
ByteCode-MSIL.Trojan.StealC
Script-PowerShell.Spyware.Stealc
Script-PowerShell.Trojan.StealC
Script-WScript.Downloader.StealC
Shortcut.Spyware.Stealc
Win32.Exploit.StealC
Win32.Ransomware.Stealc