Threat Reports

Read other reports

Uncloaking the Underbelly of JinxLoader

Loaders that are readily available in underground markets make it easy for cybercriminals, even newbies, to launch successful attacks. One such tool that has been gaining infamy—JinxLoader—has become available in hacker forums.1 

Nineteen JinxLoader indicators of compromise (IoCs) have been made public in November 2023, which we at WhoisXML API queried on various DNS tools to identify all potential infection vectors.

Our IoC expansion analysis for JinxLoader led to the discovery of:

  • 314 email-connected domains
  • 158 IP-connected domains, one of which turned out to be malicious
  • 1,116 string-connected domains, one of which turned out to be malicious

Download a sample of the threat research materials now or contact us to access the complete set of research materials.

  • [1] https://twitter.com/Unit42_Intel/status/1730237085246775562

Latest Reports

Read other reports

Try our WhoisXML API for free

Get Started

Have questions?

We are here to listen. For a quick response, please select your request type. By submitting a request, you agree to our Terms of Service and Privacy Policy.

Message sent!

We'll contact you shortly.

Oops!

Something went wrong. Contact us via regular email.

Contact Us

White Paper Download

Please complete the form below to download the required file:

Your business email will be validated while the request is being processed. This may take time.