PULSE NAME
Copyright Lures Mask a Multi-Stage PureLog Stealer Attack on Key Industries
WHITE dylanroth7 2026-03-20 Modified: 2026-04-19
22
IOCs
MEDIUM VOLUME
We identified a targeted malware campaign delivering PureLog Stealer, an information‑stealing malware that uses multi‑stage packed assemblies to harvest sensitive data, including Chrome browser credentials, extensions, cryptocurrency wallets, and system information, through a file disguised as a legal copyright violation notice. It’s considered a low‑cost, easy‑to‑use infostealer, making it accessible even to less‑skilled threat actors. The attack likely relies on phishing emails that lure victims into downloading a malicious executable tailored to the victim’s local language.
Indicators of Compromise (2 / 22 total)
All FileHash-MD5 FileHash-SHA1 FileHash-SHA256 URL domain hostname
TYPEINDICATORDESCRIPTIONCREATED
FileHash-MD5 bed2daedb43b0e5044edbabe6d1d27e8 2026-03-20
FileHash-MD5 fd16fecedab57b025ab53ad9ca4c882f 2026-03-20