Live Threat Pulse: 2,847 threats detected in last 24h

menu_book Malware Family

StealC

Also known as: StealC, StealC stealer, StealC V2

StealC is a lightweight malware-as-a-service infostealer, influenced by Vidar and Raccoon, that steals browser data, cookies, cryptocurrency wallets, and files. It is known for a flexible, server-side configurable design that lets operators tailor what data each build collects.

What is StealC?

StealC is an infostealer that appeared around 2023 and quickly gained traction. It borrows design ideas from Vidar and Raccoon and is sold as a malware-as-a-service. A later "V2" revision modernised its codebase and expanded its capabilities.

How StealC works

StealC uses a server-side configuration so operators can specify which browsers, extensions, wallets, and file types each campaign should target. It exfiltrates the standard stealer dataset and can fetch additional payloads, functioning as both a stealer and a loader.

Why StealC matters

StealC's configurability and active development have made it a fast-growing contributor to the stealer-log economy, and it frequently appears in the same marketplaces and channels as larger families.

How VantaPrism Tracks StealC

VantaPrism tracks StealC among its monitored families, parsing its logs and tagging exposures with the responsible malware so teams understand the source and likely scope of a compromise.

Check Your Exposure arrow_forward

Frequently Asked Questions

What is StealC V2?

expand_more
StealC V2 is a revised version of the StealC infostealer with a modernised codebase and expanded data-collection and evasion capabilities.

Is StealC related to Vidar or Raccoon?

expand_more
StealC is not the same malware but borrows design concepts from both Vidar and Raccoon, and it competes in the same malware-as-a-service market.
← All Glossary Terms Last reviewed: June 2026