SteamMonitorStealer
Steam gaming platform account credential DLL stealer. steam_monitor_02F90000.dl filename suggests DLL injection into Steam process. IsDebuggerPresent anti-analysis. WSAStartup network connectivity. XOR-obfuscated string with RDP substring. cmd.exe /c start process execution.
Threat Profile
Type
Infostealer
Programming LanguageC/C++
C2 ProtocolTCP
First Seen2024
Targets
Oyuncu/Steam Kullanicilari
Purpose / Capabilities
- Steam Credential Theft
No C2 servers have been identified for this family yet.
Research Reports (1)
SteamMonitorStealer c6433d9a -- steam_monitor_02F90000.dl Steam Hesap Izleme DLL IsDebuggerPresent Anti-Debug WSAStartup Ag Baglanti XOR Obfuske String cmd.exe | Yuksek
SteamMonitorStealer c6433d9a PE32 DLL x86 696KB packed 7.04 entropi. steam_monitor Steam hesap hedef. IsDebuggerPresent anti-debug. WSAStartup ag. XOR obfuske string. cmd.exe start.
Read Report →