SYMBOLCOMMON_NAMEaka. SYNONYMS
apk.salvador (Back to overview)

Salvador Stealer


According to ANY.RUN, this is a banking trojan that this collection sensitive user information, including: Registered mobile number, Aadhaar number, PAN card details, Date of birth, and Net banking user ID and password. It uses Telegram as C2.

References
2025-04-01ANY.RUNAdhikara
Salvador Stealer: New Android Malware That Phishes Banking Details & OTPs
Salvador Stealer

There is no Yara-Signature yet.