ISR Stealer

First seen
2019-05-15 00:00:00
Malware type
credential-stealer
Profile updated
2026-07-07 15:07:29

Targeted industries: financial-services technology-and-telecommunications

Context

ISR Stealer is a modified version of the Hackhound Stealer. It is written in VB and often comes in a .NET-wrapper. ISR Stealer makes use of two Nirsoft tools: Mail PassView and WebBrowserPassView. Incredibly, it uses an hard-coded user agent string: HardCore Software For : Public

Reports & references

  • malpedia.caad.fkie.fraunhofer.de — Win.Isr Stealer (report)
  • McAfee — Phishing Attacks Employ Old Effective Password Stealer (report)

External references