Analysis of PureCrypter, another modular loader 🖼️

PureCrypter is yet another modular loader widely used by threat actors to distribute their malware. SEKOIA assess that loaders will continue to be popular among threat actors, as this malware family notably avoids static detection by antivirus software. Encryption of the second-stage and the final payloads, as well as implemented anti-analysis techniques, further complexify detection and analysis. We published results of our in-depth analysis in the [FLINT 2022-051 - PureCrypter: a widely used loader distributing a variety of malware](https://app.sekoia.io/intelligence/objects/report--9a6d446b-d765-4f7c-8ccb-684076ccdae3). ![changelog_flint_051.png](BASE/products/901462981/changelog/13154/inline-bbe3fa966230e95ef812495ba03dce1e.jpg) To provide our customers with actionable intelligence, SEKOIA analysts will continue to track PureCrypter, analyse malware technical evolution and keep an eye on threats distributed by the loader. Related resources: * [FLINT 2022-051 - PureCrypter: a widely used loader distributing a variety of malware](https://app.sekoia.io/intelligence/objects/report--9a6d446b-d765-4f7c-8ccb-684076ccdae3) * [PureCrypter malware page](https://app.sekoia.io/intelligence/objects/malware--1d5fc7af-5ab1-4341-b8d3-1a46c6e551c7)