Ginzo Stealer

First seen
2022-05-14 00:00:00
Malware type
credential-stealer
Family
Malware family
Profile updated
2026-07-07 14:45:11

Targeted industries: financial-services technology-and-telecommunications retail-and-hospitality

Context

Ginzo Stealer is an information-stealing malware developed in the .NET framework. It is designed to siphon sensitive information such as credentials and data from infected systems.

Detection coverage

  • 1 YARA rules

Detection rules

  • SEKOIA_Infostealer_Win_Ginzostealer_Str (yara-rule)

Reports & references

  • ke-la.com — Information Stealers A New Landscape (report)
  • malpedia.caad.fkie.fraunhofer.de — Win.Ginzo (report)
  • gdatasoftware.com — Ginzo Free Malware (report)
  • govcert.ch — Unflattening Confuserex Code In Ida (report)
  • Cisco Talos — Haskers Gang Zingostealer (report)
  • twitter.com — 1506933328599044100 (report)

External references