logo

MINT STEALER: Running by a BulletProof Hoster

ID: c61cd7c2-f508-5eba-8bd0-4d71f6a96b75

STIX ID: report--c61cd7c2-f508-5eba-8bd0-4d71f6a96b75

Feed Name: THE RAVEN FILE

Threat Score
75/100

Date Published: 2024-12-14

Date Updated: 2026-04-19

Author: RakeshKrish

...
...

This research article documents Mint Stealer — a commodity infostealer sold on underground forums and supported by a Russian-associated actor operating bulletproof hosting and cashout services. The report covers Mint Stealer's capabilities (credential, cookie, crypto wallet and FTP/SSH theft), distribution filenames and phishing vectors, sample hashes and domains, exposed infrastructure and IPs, actor attribution to a Telegram handle 'Artem', related offensive services (RAT, ransomware, hosting), and a short shallow code/log analysis with multiple IOCs for detection and blocking.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.