TF-MAL-osx.pearl_stealer
📛 Threat Title
Malware family: Pearl Stealer
Description
ThreatFox malware family `osx.pearl_stealer`. Printable name: Pearl Stealer.
Indicators of Compromise (0)
No indicators of compromise on this threat.
References (1)
- ThreatFox: IOCs for this family ThreatFox Malwares
Remediations (10)
-
web:arstechnica.com
Once-hobbled Lumma Stealer is back with lures that are hard to resist ClickFix bait, combined with advanced Castleloader malware , is installing Lumma "at scale."
-
web:assets.kpmg.com
Stealth tactics include scanning for VMs & debugging tools, hiding malicious activities in background processes, and using trusted system tools to avoid detection. Lumma Stealer's exploitation of legitimate services and use of obfuscated payloads to steal sensitive information underscores the need for robust security measures to combat such ...
-
web:hunt.io
Vidar is an info stealer that popped up in late 2018 and is a malware -as-a-service. It targets Windows systems, stealing data from browsers, digital wallets and other applications. Vidar can also be a downloader for other malware , including ransomware, making it even more dangerous for compromised systems.
-
web:malpedia.caad.fkie.fraunhofer.de
Details for the Pearl Stealer malware family including references, samples and yara signatures.
-
web:redpiranha.net
Updated Malware Signatures (Week 2 - August 2025) ... PEAR Ransomware PEAR (aka Pure Extraction And Ransom) emerged in June 2025 as a Tor-centric, data-broker operation. During 2-8 Aug, the group publicly listed its first batch of victims and brought multiple onion services online.
-
web:www.cisa.gov
Summary The Federal Bureau of Investigation (FBI) and the Cybersecurity and Infrastructure Security Agency (CISA) are releasing this joint advisory to disseminate known tactics, techniques, and procedures (TTPs) and indicators of compromise (IOCs) associated with threat actors deploying the LummaC2 information stealer (infostealer) malware . LummaC2 malware is able to infiltrate victim computer ...
-
web:www.csa.gov.sg
Defending Against RedLine Stealer Malware 4 February 2025 RedLine Stealer is a malware -as-a-service (MaaS) info- stealer that is designed to harvest sensitive information from compromised machines such as login credentials, browser autocomplete data and financial details such as credit card information.
-
web:www.hhs.gov
Executive Summary Vidar (also known as Vidar Stealer ) is an infostealer malware operating as malware -as-a-service, which was first discovered in late 2018 and is likely a direct evolution of the Arkei trojan. Sold on the dark web for anywhere between $130 and $750 (depending on the license), the malware runs on Windows and can collect a wide range of sensitive data from browsers and digital ...
-
web:www.mphasis.com
Summary RedLine is a stealer malware that aims primarily at banking credentials and collects information such as saved credentials, autofill data, and credit card details, as well as usernames, location data, hardware configuration, and information about installed security software. RedLine may also steal cryptocurrency.
-
web:www.quorumcyber.com
Executive Summary Vidar is a strain of "information stealer ", or "infostealer", malware , compiled in C++, which collects personal information, private documents, and account data from the devices of infected users. The malware itself is either a fork, or evolution of, the "Arkei" malware variant.
AI Forensic Analysis
Only Available for Registered Users. Sign in to view.