Troll Stealer
S1196 · Windows
Troll Stealer is an information stealer written in Go associated with Kimsuky operations. Troll Stealer has typically been delivered through a dropper disguised as a legitimate security program installation file. Troll Stealer features code similar to AppleSeed, also uniquely associated with Kimsuky operations.
ATT&CK S1196
Sigma rules0
YARA rules0
Live IOCs0