← Back to Pulse Feed
PULSE DETAIL
The eSentire Threat Response Unit identified a campaign involving MintsLoader, a PowerShell-based malware loader, delivering payloads like Stealc and BOINC client. MintsLoader uses a Domain Generation Algorithm and anti-VM techniques to evade detection. The infection process begins with a spam email link downloading a JScript file, which then executes PowerShell commands to retrieve and execute the malware stages. StealC, an information stealer, is delivered as the final payload, targeting sensitive data from browsers, applications, and crypto-wallets. The campaign affected organizations in the US and Europe, primarily in the Electricity, Oil & Gas, and Legal Services industries.
MITRE ATT&CK & Malware Families
Indicators of Compromise (1 / 67 total)
| TYPE | INDICATOR | DESCRIPTION | CREATED | |
|---|---|---|---|---|
| FileHash-MD5 | 760f00e30887017cdea9809fd1c38e52 | MD5 of 91e405e8a527023fb8696624e70498ae83660fe6757cef4871ce9bcc659264d3 | 2025-01-20 |