April 7, 2025 By Tushar Subhra Dutta

Malware operators continue exploiting the Windows Screensaver (.scr) file format to distribute malicious payloads, leveraging its executable nature under the guise of harmless system files.
Recent campaigns observed by cybersecurity researchers reveal advanced tactics targeting global enterprises through sophisticated phishing schemes.
One prominent example involves attackers impersonating a Taiwanese freight logistics company to deliver ModiLoader, a longstanding Delphi-based malware loader capable of deploying remote access trojans (RATs) and data stealers.