PureLogs Stealer
- First seen
- 2022-03-15 00:00:00
- Malware type
- credential-stealer
- Family
- Malware family
- Last IoC activity
- 2026-07-22 01:11:17
- Profile updated
- 2026-07-07 14:05:25
Targeted industries: financial-services technology-and-telecommunications retail-and-hospitality
Context
PureLogs, also known as PureLog Stealer, is an infostealer malware from the Pure family that aims to steal sensitive information from infected devices.
Detection coverage
- 1 YARA rules
Detection rules
- RUSSIANPANDA_Purelogs_Stealer_Initial_Dropper (yara-rule)
Reports & references
- spamhaus.org — Botnet Threat Update July To December 2025 (report)
- cloud.google.com — Russian Espionage Influence Ukrainian Military Recruits Anti Mobilization Narratives (report)
- cloud.google.com — Russian Espionage Influence Ukrainian Military Recruits Anti Mobilization Narratives (report)
- cyble.com — Stealth In Layers Unmasking Loader In Targeted Email Campaigns (report)
- any.run — Pure Malware Family Analysis (report)
- malpedia.caad.fkie.fraunhofer.de — Win.Purelogs (report)
- medium.com — Purelogs Stealer Complete Malware Analysis Ctf Walkthrough 83E41E7C6Efd (report)
- dimanec.unipegaso.it — Dissecting A New Malspam Chain Delivering Purelogs Infostealer (report)
- netresec.com (report)
- cyble.com — Pure Coder Offers Multiple Malware For Sale In Darkweb Forums (report)
- russianpanda.com — Pure Logs Stealer Malware Analysis (report)
- netresec.com (report)
- swisspost-cybersecurity.ch — Purelogs Infostealer Analysis Dont Judge A Png By Its Header (report)
- blog.dexpose.io — Purelogger Deep Analysis Evasion Data Theft And Encryption Mechanism (report)