Prynt Stealer disponible pour $100 par mois

Les experts sont tombés sur un autre logiciel malveillant qui a rejoint les rangs des dangereux voleurs d'informations.. Nommé Prynt Stealer, the malware provides operators with rich functionality, including a keylogger and clipboard monitoring.

Prynt Stealer is capable of attacking a wide range of popular browsers, instant messengers, and gaming applications. Aussi, the malware does an excellent job of compromising financial information.

The authors of Prynt Stealer give their child a subscription: $100 par mois, $200 per quarter, et $700 par année. You can also purchase a lifetime license for $900.

De plus, buyers are provided with a separate malware builder with which they can create custom malware that can bypass detection on the victim’s device.

Licence de voleur Prynt
Licence de voleur Prynt

Cyble analysts studied the new cyberthreat, noting that when developing Prynt Stealer, the priority of the authors was given to the secrecy of the program. Par exemple, binary obfuscation and Rijndael encrypted strings can testify to this.

Aussi, all command and control servers (C2) of the attackers are encrypted using AES256, and the AppData directory, which is used to temporarily store stolen data, is hidden along with subfolders.

Having penetrated the victim’s device, the info-stealer starts scanning all disks, trying to find documents, database files, source codes, and images there, the size of which does not exceed 5 KB. Après cela, the malware is mistaken for autofill, credentials, bank cards, search history, and cookies stored in browsers.

Suivant, Prynt Stealer goes through messengers like Discord, Pidgin, and Telegram, and also tries to pull out Discord tokens. Save files in video games and gamer account information on Ubisoft Uplay, Steam, and Minecraft systems are also of interest to the malware. Infostealer is also capable of stealing information from FileZilla, OpenVPN, NordVPN, and ProtonVPN.

Laissez un commentaire