Stealer0x3401

Malware type
credential-stealer
Profile updated
2026-07-07 15:21:27

Targeted industries: technology-and-telecommunications financial-services

Context

According to PTSecurity, this stealer harvests system information which is then RC4 encrypted and Base64 encoded before sending it to the C2 server.

Reports & references

  • malpedia.caad.fkie.fraunhofer.de — Win.Stealer 0X3401 (report)
  • ptsecurity.com — Apt31 Cloud Attacks (report)

External references