Skip to content

Malware

Astaroth

aka Guildma

First spotted in the wild in 2017, Astaroth is a highly prevalent, information-stealing Latin American banking trojan.

Astaroth, also known as Guildma, is a Windows malware family.

Background

Astaroth, first observed in the wild in 2017, is a widespread, data-stealing Latin American banking trojan. Coded in Delphi, it employs several novel execution and attack methods. While the trojan originally focused on Brazilian victims, it has since expanded to target users across North America and Europe.


Source: Malpedia (Fraunhofer FKIE).