Home Malware Programs Trojans XTMEM Stealer

XTMEM Stealer

Posted: July 24, 2020

XTMEM Stealer is a new infostealer that is yet to be promoted on hacking forums, and it might have been developed and used by a single cybercriminal. The project is not advanced at all, and it is riddled with bugs and issues, which are a certain sign that the author is not experienced in the malware development field. For example, the XTMEM Stealer is designed to exfiltrate data via the SMTP protocol, so the attacker needs an email address to use to send the message. However, they have included their email address and password in plaintext, and anyone who analyzes the XTMEM Stealer malware can gain access to the email.

Another trait of this low-quality infostealer is that it targets only a handful of applications – Web browsers like Opera, Mozilla Firefox, Google Chrome and Yandex are its primary targets. For comparison, advanced infostealers try to take cryptocurrency wallets, Steam accounts, Discord sessions and even specific files.

The corrupted file carrying XTMEM Stealer was disguised as a cheat for the popular game Roblox, so it is secure to assume that this is one of the groups that XTMEM Stealer's creator is likely to target. We advise you to stay away from game cheats of all kinds, software activators, and game cracks since they often are used to propagate malware like the XTMEM Stealer.

Loading...