StegoLoader
- First seen
- 2015-05-01 00:00:00
- Malware type
- loader, spyware
- Family
- Malware family
- Profile updated
- 2026-07-07 14:37:25
Context
StegoLoader is a type of spyware and loader malware that uses steganography to hide its payload in image files. It is used to exfiltrate data from compromised systems and facilitate the download and execution of additional malicious components.
Detection coverage
- 1 YARA rules
Detection rules
- MALPEDIA_Win_Stegoloader_Auto (yara-rule)
Reports & references
- cocomelonc.github.io — Malware Tricks 45 (report)
- malpedia.caad.fkie.fraunhofer.de — Win.Stegoloader (report)
- secureworks.com — Stegoloader A Stealthy Information Stealer (report)