top of page

Mercurial Grabber.exe May 2026

Primarily uses Discord Webhooks to exfiltrate stolen data directly to an attacker-controlled Discord channel. Key Capabilities

Written in C# (C Sharp) using the .NET framework, making it relatively easy to reverse-engineer if it isn't obfuscated. Mercurial Grabber.exe

The file is the compiled output of an open-source information stealer (infostealer) originally published on GitHub in 2021. While its creators claimed it was for "educational purposes," it has been widely adopted by threat actors to steal personal data from gamers and casual web users. Primarily uses Discord Webhooks to exfiltrate stolen data

Sources of the Liturgy

mrmphazell AT gmail DOT com

Website © 2026 — Clear Echo. Hazell

bottom of page