Flesh Stealer

Malware type
credential-stealer, spyware, trojan
Last IoC activity
2026-07-20 08:00:16
Profile updated
2026-07-07 15:01:41

Targeted industries: financial-services technology-and-telecommunications retail-and-hospitality healthcare-and-pharmaceutical

Context

According to M4lcode, FleshStealer is a sophisticated, modular, and obfuscated .NET-based information-stealing malware designed for comprehensive data exfiltration from Windows systems. Its architecture is built for scale and stealth, utilizing multithreading to simultaneously run multiple data harvesting routines with minimal system disruption. The malware targets a wide range of applications and services, including browsers, messaging apps, email clients, VPNs, cryptocurrency wallets, FTP clients, game launchers, and local file storage.

Reports & references

  • malpedia.caad.fkie.fraunhofer.de — Win.Flesh Stealer (report)
  • blog.dexpose.io — Flesh Stealer A Report On Multivector Data Theft (report)

External references