StealC Malware — Analysis, Campaigns & Threat Activity

Threat entity extracted from intelligence sources

Frequency
68
occurrences
First Seen
October 28, 2025
Last Seen
July 21, 2026

StealC is an infostealer malware family that steals credentials and other sensitive data from infected systems.

StealC is a malware family tracked across 28 threat clusters and 68 intelligence report mentions on ThreatCluster. First observed October 28, 2025; most recent activity July 21, 2026.

Overview

StealC is an infostealer malware family that steals credentials and other sensitive data from infected systems. Recent reporting links its distribution to malicious Blender 3D model files, highlighting a novel delivery vector that targets users in gaming and 3D asset ecosystems. Its prominence in gaming-targeted infostealer campaigns underscores its significance as a threat vector and a signal of evolving cybercrime tactics.

Related Threat Clusters

Recent Intelligence Reports

  • AgentBaiting Uses Fake AI Skills and MCP Servers to Deliver SmartLoader and StealC Malware — Gbhackers · July 21, 2026
  • ESET takes part in global Operation Endgame to disrupt Amadey botnet and Stealc infostealer — Eset · June 29, 2026
  • ESET takes part in global Operation Endgame to disrupt Amadey botnet and Stealc infostealer — Tech.Einnews · June 29, 2026
  • Proofpoint — www.proofpoint.com · June 25, 2026
  • StealC infrastructure takedown assisted by AI analysis, C2 infiltration — Feeds.Feedburner · June 25, 2026
  • ESET takes part in global operation to disrupt Amadey and Stealc — www.globenewswire.com · June 25, 2026
  • ESET takes part in global Operation Endgame to disrupt Amadey botnet and Stealc infostealer — Cybermagazine · June 25, 2026
  • Europol Disrupts StealC and Amadey Malware Infrastructure in Operation Endgame — Securityaffairs.Co · June 24, 2026

Frequently asked questions

What is StealC?

StealC is an infostealer malware family that steals credentials and other sensitive data from infected systems.

Is StealC still active?

The most recent intelligence report mentioning StealC on ThreatCluster is dated July 21, 2026. Activity was first observed October 28, 2025, giving a tracked span from then to July 21, 2026.

What is StealC associated with?

Across ThreatCluster reporting, StealC most frequently co-occurs with Evil Corp, Hanemoney, SmartApeSG, ZPHP, Botnet, among 12 tracked related entities.

What are the latest developments involving StealC?

The most significant recent cluster is “Operation Endgame Disrupts Evil Corp's SocGholish Malware Network” (67 articles · Updated June 18, 2026). StealC appears across 28 threat clusters in total, listed above with sources.

How much reporting does ThreatCluster have on StealC?

StealC appears in 68 intelligence report mentions across 28 deduplicated threat clusters, aggregated from 17,000+ monitored sources.

CVSS v3.1 Breakdown