Raccoon Infostealer

Malware updated a month ago (2024-10-17T12:02:06.708Z)
Download STIX
Preview STIX
Raccoon Infostealer is a type of malware designed to infiltrate computer systems and steal sensitive information. This malicious software can infect devices through suspicious downloads, emails, or websites, often without the user's knowledge. Once embedded in a system, it can extract personal data, disrupt operations, or even hold data for ransom. A significant global threat, Raccoon Infostealer has infected millions of computers worldwide, posing serious cybersecurity concerns. In October 2020, the US Justice Department charged Ukrainian national Mark Sokolovsky with computer fraud for allegedly operating the Raccoon Infostealer, causing widespread infection across millions of computers. Sokolovsky was arrested by Dutch authorities in March 2022. Concurrently, the FBI, along with law enforcement partners in Italy and the Netherlands, successfully dismantled the Command and Control (C2) infrastructure used by the Raccoon Infostealer operation, effectively taking its then-existing version offline. Despite this, Sokolovsky remained in custody in the Netherlands, pending charges for his alleged role in this international cybercrime operation. Sokolovsky was later extradited to the US, where he pleaded guilty to operating the Raccoon Infostealer. The United States, however, does not believe it has recovered all the data stolen by the malware and continues to investigate. In an effort to mitigate further damage, the FBI has established a website allowing users to verify if their email addresses were compromised by the Raccoon Infostealer. As of now, the Ukrainian operator awaits trial in the US, marking a significant step in the fight against global cybercrime.
Description last updated: 2024-10-17T11:45:11.216Z
What's your take? (Question 1 of 5)
Help tune the shared Cybergeist dataset, assist your peers, and earn karma. Expand the panel to get started.
Possible Aliases / Cluster overlaps
It's hard to track cluster overlaps and naming conventions between vendors, so here are some possible overlapping names / profiles you also may want to look at. Create a free account to see the source evidence for each alias, and help fix any errors.
Alias DescriptionVotes
Raccoon is a possible alias for Raccoon Infostealer. Raccoon is a malicious software (malware) developed by Russian-speaking coders, first spotted in April 2019. It was designed to steal sensitive data such as credit card information, email credentials, cryptocurrency wallets, and more from its victims. The malware is offered as a service (MaaS) for $
3
Miscellaneous Associations
Other elements of context that could aid in the identification of relevance
Cybercrime
Malware
Ransomware
Infostealer
Maas
Analyst Notes & Discussion
Be the first to leave your mark here! Log in to share your views and vote.
Source Document References
Information about the Raccoon Infostealer Malware was read from the documents corpus below. This display is limited to 20 results, create a free account to see more
PreviewSource LinkCreatedAtTitle
Securityaffairs
a month ago
Securityaffairs
a month ago
Securityaffairs
3 months ago
Securityaffairs
4 months ago
Securityaffairs
4 months ago
Securityaffairs
4 months ago
Securityaffairs
4 months ago
Securityaffairs
4 months ago
Securityaffairs
5 months ago
Securityaffairs
5 months ago
Securityaffairs
5 months ago
Securityaffairs
6 months ago
Securityaffairs
7 months ago
Securityaffairs
7 months ago
Securityaffairs
7 months ago
Securityaffairs
7 months ago
Securityaffairs
8 months ago
Securityaffairs
8 months ago
Securityaffairs
8 months ago
Securityaffairs
8 months ago