Main page

RisePro Stealer

Hunt queries (Shodan, Censys, Fofa, URLScan)

    Hunt query sharings are temporarily disabled.

Summary

TL; DR: An emerging Windows info-stealer

Type: Information stealer

Targeted Operating Systems: Windows

Threat tag: win.risepro

Reporting: https://malpedia.caad.fkie.fraunhofer.de/details/win.risepro 

Screenshots

 

Example of a distribution website.

Overview of RisePro stealer delivered by Privaloader

Screenshot of the telegram bot used to interact with the infected host

IOCs

© Malpulse. https://twitter.com/malpulse Malpulse Virustotal Profile Malpulse Threatfox Profile