← Back to Pulse Feed
PULSE DETAIL
NodeStealer is an information-stealing malware that primarily targets Facebook business accounts and cryptocurrency wallets. It has been active since at least July 2022 and was first exposed by Meta in May 2023. The malware is distributed through various methods, including downloading and extracting files, and it sets persistence by adding registry run keys.
Indicators of Compromise (5 / 97 total)
| TYPE | INDICATOR | DESCRIPTION | CREATED | |
|---|---|---|---|---|
| FileHash-SHA1 | 6deb330eca4573c8f260065c6ea61adfb2b40012 | — | 2023-08-07 | |
| FileHash-SHA1 | 791947c1401a3073cbe146ebf8e3e5b83511f8cd | — | 2023-08-07 | |
| FileHash-SHA1 | 87211089cefb190045e4b725eb8cbfcc2b8bb176 | — | 2023-08-07 | |
| FileHash-SHA1 | e54b2f78cfc56df8afe6ae6a0ca72bdbf5260ceb | — | 2023-08-07 | |
| FileHash-SHA1 | fae9ae27839a58084fc4b2d528631e0446afc73e | — | 2023-08-07 |