NetDefend IPS
IPS Advisories
NetDefend
Anti-Virus
Anti-Virus Advisories
NetDefend Web Content Filtering
NetDefend IP Reputation
NetDefend Update Center
IPS History
Oct 15, 2025
Oct 08, 2025
Oct 03, 2025
Sep 25, 2025
Sep 18, 2025
Anti-Virus History
Feb 12, 2022
Jan 06, 2022
Oct 23, 2021
Aug 29, 2021
Aug 23, 2021







Home > NetDefend Live > NetDefend IPS Service
NetDefend IPS Service
Print
Advisory ID
49326
Name
MALWARE.LUMMA.STEALER.INFECTION.WITH.FOLLOW.UP.MALWARE.C
IPS Signature
Advanced IPS Signature
IPS Group
IPS / MALWARE / GENERAL
Issued
Oct 08, 2025
Description
The Lumma Stealer infection, targeting users seeking cracked software, is highly obfuscated. It uses AutoIt scripts, misleading file extensions, an obfuscated batch script, and a $.cab file to evade detection. The initial stealer infection is followed by the installation of a secondary payload, possibly the GhostSocks or GO Backdoor.
Enter your details in the box below to receive an email each time we post a new issue of our newsletter.







Oct 27, 2025