Netskope Threat Labs

TroyStealer

ATP Sandbox Adv. Heuristics

TroyStealer is a generic detection name for trojan based information stealers that harvest credentials and sensitive data from infected systems. Malware detected under this name collects passwords, browser data, and files, and it typically arrives through phishing and loader chains. Analysts should investigate the delivery mechanism and reset exposed credentials, because generic stealer detections usually mark one stage of a longer intrusion.

First seen
January 2026
Last seen
October 2026
Troystealer
Alert Name
Win64.Trojan.Troystealer
Win64.Trojan.TroyStealer