{"id":"c1f26136f8be1264bd9ca1b7f81eee0e","title":"VB6 Browser Stealer — VB6 Browser Stealer · 木马/恶意软件 · PE32","md5":"c1f26136f8be1264bd9ca1b7f81eee0e","sha256":"09a6528de56686a9c7ed4f4d1ed0642e94071b929a8d11a2a0220896f24daa82","family":"VB6 Browser Stealer","apt":null,"verdict":null,"sample_type":"木马/恶意软件","lang":"C++","file_format":"PE32","compiler":"MSVC","published_at":"2026-08-09T16:00:00.000Z","summary":"Visual Basic 6 编译的 PE32 可执行文件，436KB。包含 SQLite 数据库操作函数（sqlite3_randomness、sqlite3_transfer_bindings），这是浏览器数据窃取器的典型特征——使用 SQLite 读取 Chrome/Firefox 浏览器的 cookie、密码、历史记录等数据。VB6 原生编译使其绕过某些 .NET 检测。","url":"https://zseceye.com/report/c1f26136f8be1264bd9ca1b7f81eee0e","json_url":"https://zseceye.com/report/c1f26136f8be1264bd9ca1b7f81eee0e.json","html_url":"https://zseceye.com/report/c1f26136f8be1264bd9ca1b7f81eee0e","hash_urls":{"md5":"https://zseceye.com/hash/c1f26136f8be1264bd9ca1b7f81eee0e","sha256":"https://zseceye.com/hash/09a6528de56686a9c7ed4f4d1ed0642e94071b929a8d11a2a0220896f24daa82"},"search_urls":{"md5":"https://zseceye.com/?q=c1f26136f8be1264bd9ca1b7f81eee0e","sha256":"https://zseceye.com/?q=09a6528de56686a9c7ed4f4d1ed0642e94071b929a8d11a2a0220896f24daa82"},"sample_download_url":"https://zseceye.com/report/c1f26136f8be1264bd9ca1b7f81eee0e/sample","sample_filename":"09a6528de56686a9.zip","iocs":[],"ips":[]}