Baldr

Aliases: Baldir

First seen
2019-02-01 00:00:00
Malware type
credential-stealer, loader
Family
Malware family
Profile updated
2026-07-07 14:48:00

Targeted industries: financial-services retail-and-hospitality technology-and-telecommunications

Context

Baldr is a credential-stealing malware known for its ability to exfiltrate information from web browsers and cryptocurrency wallets. It is often distributed via malicious emails and exploit kits, targeting a wide range of industries.

Detection coverage

  • 1 YARA rules

Detection rules

  • DITEKSHEN_MALWARE_Win_Baldr (yara-rule)

Reports & references

  • malpedia.caad.fkie.fraunhofer.de — Win.Baldr (report)
  • blog.malwarebytes.com — Say Hello Baldr New Stealer Market (report)
  • sophos.com — Baldr Vs The World (report)
  • krabsonsecurity.com — Taking A Look At Baldr Stealer (report)
  • youtube.com — Watch (report)

External references