Threat Database Stealers Trojan.DiscordStealer.C

Trojan.DiscordStealer.C

By CagedTech in Stealers, Trojans

Threat Scorecard

Threat Level: 80 % (High)
Infected Computers: 12
First Seen: September 17, 2021
Last Seen: January 12, 2026
OS(es) Affected: Windows

The detection of Trojan.DiscordStealer.C on your system indicates a potential security threat that requires immediate attention. This Trojan-type threat is designed to compromise your system's security and steal sensitive information. It is essential to understand the nature of this threat and take prompt action to remove it and prevent further damage.

What Is Trojan.DiscordStealer.C?

Trojan.DiscordStealer.C is a type of malware that disguises itself as a legitimate program or file to gain unauthorized access to your system. Once inside, it can cause significant harm by stealing sensitive information, such as login credentials, financial data, and personal information. The name "Trojan.DiscordStealer.C" suggests that it may be related to Discord, a popular communication platform, but this does not necessarily mean that Discord is the source of the infection.

How Trojan.DiscordStealer.C Operates

Trojan.DiscordStealer.C operates by exploiting vulnerabilities in your system's security to gain access to sensitive areas. It may use various tactics, such as phishing, social engineering, or exploiting software vulnerabilities, to trick you into installing the malware. Once installed, it can communicate with its command and control servers to receive instructions and transmit stolen data. The malware may also attempt to disable security software or hide its presence to avoid detection.

Symptoms of Infection

Identifying the symptoms of a Trojan.DiscordStealer.C infection can be challenging, as it may not always exhibit obvious signs. However, you may notice unusual system behavior, such as slow performance, unexpected crashes, or unfamiliar programs running in the background. You may also receive suspicious emails or messages, or notice that your personal information is being used without your consent. If you suspect that your system is infected, it is crucial to take immediate action to prevent further damage.

How to Remove Trojan.DiscordStealer.C

  1. Boot your system in Safe Mode with Networking to prevent the malware from loading and to allow for a more effective removal process.
  2. Use a reputable anti-malware tool, such as SpyHunter, to perform a full scan of your system and detect any malicious files or programs.
  3. Uninstall any suspicious programs or applications that may be related to the infection.
  4. Reset your web browsers, including Chrome, Firefox, and Edge, to their default settings to remove any malicious extensions or add-ons.
  5. Reboot your system and perform another scan to ensure that the malware has been completely removed.

Conclusion

Removing Trojan.DiscordStealer.C from your system requires a thorough and multi-step approach. By following the steps outlined above, you can help ensure that the malware is completely removed and prevent further damage to your system and personal information. It is essential to remain vigilant and take proactive measures to protect your system from future threats, such as keeping your operating system and software up to date, using strong antivirus software, and being cautious when clicking on links or downloading attachments from unknown sources.

Analysis Report

General information

Family Name: Trojan.DiscordStealer.C
Signature status: No Signature

Known Samples

MD5: d1930423c85b4266cbe76047a2a96b24
SHA1: d7f5d12b9c67f60885532f966ebada95e3205a2e
SHA256: 03A799958581CF90A97FD3B84F749AE5F414A4F1A5554777F8A709A68C6FE5C8
File Size: 5.24 MB, 5243904 bytes

Windows Portable Executable Attributes

  • File doesn't have "Rich" header
  • File doesn't have exports table
  • File doesn't have security information
  • File is 32-bit executable
  • File is either console or GUI application
  • File is GUI application (IMAGE_SUBSYSTEM_WINDOWS_GUI)
  • File is Native application (NOT .NET application)
  • File is not packed
  • IMAGE_FILE_DLL is not set inside PE header (Executable)
  • IMAGE_FILE_EXECUTABLE_IMAGE is set inside PE header (Executable Image)

File Icons

Windows PE Version Information

Name Value
File Description JNetHack for Windows - Graphical Interface
File Version 3.6.6
Internal Name JNetHackW
Legal Copyright Copyright (C) 1985 - 2020. By Stichting Mathematisch Centrum and M. Stephenson. See license for details.
Original Filename JNetHackW.exe
Private Build 140606
Product Name JNetHack
Product Version 3.6.6

File Traits

  • x86

Block Information

Total Blocks: 13,218
Potentially Malicious Blocks: 3,804
Whitelisted Blocks: 8,435
Unknown Blocks: 979

Visual Map

0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 x x x x x x x x 0 x x x x 0 x x x 0 0 x x x x 0 x 0 x x x x x x x x x 0 x x 0 0 x x x x 0 0 x 0 0 0 0 x x x x x x 0 x 0 x x x x x x x ? x x 0 0 x 0 x 0 0 x 0 x x x x x 0 0 0 0 0 x 0 x x 0 x 0 x 0 0 x x x x x x x 1 0 0 x x 0 x x x x x x x x x 0 x x x 0 x x x x x x x x x x x x ? x x x x x ? ? 0 x ? x x x ? x x x ? x x 0 x 0 x x x 0 0 x 0 x 0 ? x x x x x x x x x x 0 ? ? ? 0 x 0 x x x x x x x x x x ? x 0 x 0 x x x 0 ? ? x x 0 x x ? ? x x x x ? ? ? ? ? 0 ? ? x x x x x 0 ? ? ? x ? x x x x x 0 x x x x x x ? 0 ? x x x x x ? 0 ? x 0 x x 0 ? x x x x x x 0 x ? x 0 x ? 0 x 0 x ? ? ? x 0 x x x x ? ? x 0 x ? x x ? x ? x ? x 0 x x x x x 0 x x x x x x x x x ? x ? ? x x x x x x x x x x ? 0 x x x x x x x x x x 0 x x ? 0 x 0 x x x x x x x 0 x x ? x x x ? x x x x x ? x x x x x ? ? x x x x x x x x x x x x x x x 0 x 0 x x x x 0 x ? x x x x x x x x x x x x x x x x x 0 x x ? 0 x 0 0 x x x x x x 0 x x ? ? x x x x x x x x x 0 x x x x x x x x x x x x x x x x x x x 0 x x 0 x x 0 x x 0 x x 0 x x x x x x x x x 0 x x x x x x x x x 0 x ? x ? ? 0 x x 0 x x x x x x x x 0 x x 0 x x x x x x 0 x x x x 0 x 0 x x x x x ? 0 x ? x x 0 0 x x x x x x 0 x x x x x 0 x 0 x x x x x x 0 x x x x x x x 0 x 0 0 x ? 0 ? ? x ? ? x 0 x 0 x x x x x x x x x x x x 0 x x x x x 0 x x 0 x x ? ? x x x x x x x x x x x x x 0 x x ? x 0 x x x x x x x x 0 x x x x x x x x x x 0 x x x 0 x x x x 0 0 0 x x ? x x x 0 ? x x x x 0 x x x x x ? ? x ? x 0 x x x x x x x x 0 x x x x x x x 0 x x x x x x x x x ? x x x x x 0 x x x 0 x x x 0 x x x 0 x 0 0 x ? x x ? x 0 ? x x x x x 0 x 0 0 x 0 0 0 0 x x x x 0 x x x 0 x x x 0 x x x x ? x x x x x x x x x x x x x 0 x x x x 0 x x x 0 x x x x x x x ? 0 x x x x x ? x ? x x x x x x x 0 x x x x x x x x 0 x x x 0 x 0 x x x 0 ? x x x ? x 0 ? x x x 0 x 0 x x x x 0 x x x x ? x x x ? 0 ? ? 0 x x ? x x x x 0 x 0 x x x x x 0 x x x x 0 x x x x x x 0 x x x x x x x x x x x x x x x x x x x x 0 x 0 0 x 0 x x x x x x x x x 0 x x x 0 x x x x x x x ? ? x x ? x x x x x x 0 x x ? 0 x 0 x x x x x x x 0 x x ? ? ? x x ? 0 x ? 0 ? x 0 x 0 ? x 0 0 x x x x x x x ? x x x x x ? x x x ? x x x 0 x ? ? ? x 0 x x x 0 x x x x x 0 x x x x x x x x x x x 0 x x x x x ? ? 0 x 0 0 0 0 0 x x x x x x x 0 x x ? ? x x x x x 0 x x ? x x x x x x ? x x x x 0 x x 0 x x x x x x x x x x x x x x x x 0 x 0 0 x 0 x 0 x x x x ? x x ? x 0 x ? 0 ? x x x ? ? 0 x ? x x ? ? 0 x x x x x x x x ? ? x x ? ? x ? ? x x ? 0 x x ? x ? x 0 x x x ? x x x x 0 x x ? x x x x x x 0 x x 0 x x 0 0 0 0 ? x 0 x ? x x x x ? x x x x x x ? 0 x x x 0 x 0 x 0 x x x ? x x x x x ? ? x x x ? x ? x x x ? ? x x x x x 0 x 0 x ? ? x ? x x x 0 0 x x ? x x x x 0 ? ? x x ? 0 ? ? x x 0 x x x ? ? x ? x ? 0 x x x ? ? x x x ? x 0 x x x x 0 x ? x x 0 x ? ? ? x x x ? 0 ? ? x ? 0 x ? x x x ? ? ? x ? ? x x x 0 x x x x x x x x x x x 0 ? 0 0 0 0 x x x x x x 0 0 x x x x x x x x x x x 0 x x 0 x x x x x x x x x 0 x x 0 0 x x x 0 x x x x 0 x x x x x x x x x 0 x x ? x x x 0 x x x x x x x x x x x x x ? ? x 0 x x 0 x x x x x x x 0 0 x x x x x x x x x x x x x x x x x x ? x x x x x x x 0 x x x ? 0 ? x 0 x ? ? x x x x ? x 0 x 0 ? ? 0 x x 0 x x x x ? ? ? x ? x x x x ? 0 x ? 0 ? 0 x ? 0 x 0 x x x x 0 0 x x x 0 x x x 0 x 0 0 x x x x x x x ? 0 x x x x 0 x x x 0 x x x x x 0 ? x x x x x x x ? x x x x ? 0 0 x x x ? x x ? x 0 ? x 0 0 x x 0 x ? ? x x x ? x x x x x 0 0 x x 0 0 0 x x 0 0 0 0 x x x x x x x x x x x x x x ? x x ? x x ? 0 ? ? 0 x x x x x x x x 0 x x x x x x x x 0 0 0 x x x x 0 x x ? 0 x ? x x x x x x ? ? 0 0 x ? x x x x x x 0 0 x x 0 0 x x x x x x x x x x x x x x x x x x x x x x x x x ? x x 0 x x x x 0 x x 0 0 x x 0 x x x x x x ? x x x x x x 0 x 0 x 0 x x x x x x x x x 0 x x x 0 x x x x x x x 0 x x x x x x 0 x x ? x ? x 0 x 0 x x 0 ? x x x x x x x x x x 0 x x x x ? x 0 x x x 0 x x x x x x ? x x 0 x x ? x x x x x x 0 x 0 x x x x x x x 0 x x x x ? ? x ? 0 x 0 x 0 x ? x ? x x x 0 x x 0 x x x ? ? 0 x x x x x x x x 0 x 0 0 ? 0 ? x x x x x x 0 x 0 x x x x x x x x x 0 x ? x 0 x x 0 x x x x x x 0 x x x x 0 0 0 x x ? 0 x x x x x x 0 x x x x x x x x x 0 x x ? x x x x x x x 0 x x x x x x x x x x x x x x x x x ? 0 x x x x x x ? x x x ? x x x x 0 0 x 0 x x x x x x ? x x x 0 ? ? x 0 x x x x x x ? x ? ? x 0 ? ? x x x 0 x x x x 0 x 0 x x x x x x x 0 x x x 0 x x ? x x x x x 0 x 0 x 0 x x ? x x x x x ? 0
... Data truncated
0 - Probable Safe Block
? - Unknown Block
x - Potentially Malicious Block

Similar Families

  • DiscordStealer.C

Files Modified

File Attributes
c:\programdata\nethack\3.6\record Generic Read,Write Data,Write Attributes,Write extended,Append data
c:\users\user\nethack\3.6\paniclog Generic Write,Read Attributes

Trending

Most Viewed

Loading...