⚠
XenoStealer
stealer1 mutex signatures
[BASIC_INFORMATION]
FAMILY_NAME:
XenoStealer
CATEGORY:
STEALER
DESCRIPTION:
XenoStealer is a sophisticated information stealer malware based on an open-source framework that targets browsers, email clients, chat applications, and cryptocurrency wallets. It uses advanced obfuscation techniques including Microsoft Script Encoder and .NET Reactor to evade detection.
ALIASES:
Xeno Stealer
TAGS:
infostealerbrowser_data_theftcryptocurrency_theftemail_client_theftchat_application_theftobfuscated_codeprocess_injectionpersistence
[MUTEX_SIGNATURES](1)
[MUTEX_01]
aMdFrsHoGcGgAKUyLCoEIuoHpvwCAzaz
ANALYST: @adhikara13 DATE: 2025-07-30
[QUICK_ACTIONS]
[THREAT_INTELLIGENCE]
ATTRIBUTION:
⚠Unknown
FIRST_OBSERVED:
2025
[SIGMA_RULE]
[STATISTICS]
MUTEX_COUNT:1
THREAT_ACTORS:1
ALIASES:1
TAGS:8
CATEGORY:STEALER
Malware profile loaded successfully