StegoLoader

First seen
2015-05-01 00:00:00
Malware type
loader, spyware
Family
Malware family
Profile updated
2026-07-07 14:37:25

Context

StegoLoader is a type of spyware and loader malware that uses steganography to hide its payload in image files. It is used to exfiltrate data from compromised systems and facilitate the download and execution of additional malicious components.

Detection coverage

  • 1 YARA rules

Detection rules

  • MALPEDIA_Win_Stegoloader_Auto (yara-rule)

Reports & references

  • cocomelonc.github.io — Malware Tricks 45 (report)
  • malpedia.caad.fkie.fraunhofer.de — Win.Stegoloader (report)
  • secureworks.com — Stegoloader A Stealthy Information Stealer (report)

External references