PureLand

Summary
An InfoStealer distributed via trojanized video games
Class
InfoStealer
Class Summary
Infostealers are generally designed as simple malicious programs focused specifically on the the theft of information. Although they might also be able to spy on users, this is not generally their primary goal. They generally execute and immediately look on disk at hardcoded locations for valuable files. These valuable files range from browser data, crypto, keychains and more.
Description

PureLand is an info-stealing malware embedded in a pirated version of the legitimate indie video game "PureLand." Distributed via email, the Trojanized game promises to generate cryptocurrency for users as they play. Notably, PureLand was discovered concurrently with Realst Stealer, another malware that employs a strikingly similar social engineering tactic but features a different final payload.

Example Hashes
  • aa033e9f102bc8d98360e6079da3c8b4d7e2d3c8