You are on page 1of 6

Type of Cyber Intel

Threat Name
Source of Information
Internet Exposure
Impacted Organization(s)
Description of Threat
CVE
Mode Of Infection(s)
ATT&CK IDS:
Recommended Actions
References

# Sensitivity: Internal Restricted


Malware
Agent Tesla
Multiple Online Blogs
Exposed to Internet
NA
Agent Tesla is a widely used information stealer and Remote Access Tool (RAT), known since 2014. The creators advertise

NA
T1218 Signed Binary Proxy Execution
T1071
4. KeepApplication Layer(irrespective
all the systems Protocol if criticality) updated with latest patches

https://news.sophos.com/en-us/2021/02/02/agent-tesla-amps-up-information-stealing-attacks/

# Sensitivity: Internal Restricted


r sale on dark-web forums and constantly update it. Attackers generally distribute the malware through malicious spam emails as an a

# Sensitivity: Internal Restricted


cious spam emails as an attachment.

# Sensitivity: Internal Restricted


URLs
https://hastebin.com/raw/opozuvaril
https://hastebin.com/raw/usejavazuv

# Sensitivity: Internal Restricted


Hash
73b814d8eb2b47b2d4be1be8c9efe365cd43badd
22216dfc1e168e188e4f10236368bda51a550d79
7b87c864a7157ee8d6bab9f471110b848ac7a91d
ae10b34487219fad4002de03b0fa848950461dc1
aea98d7b068b0c418d1b3d96537e848aeb4440c0
196623be81dbe59e560aba504d081c54b23b822
27a8473b2817fd75eeed9995d67ca9c2761131fa
3cb0429986c10dc6eb2cb4d242cef112014e20e1
42fb3937aff3b4d245fb221e4b54334b76f56bf6
45c4c2b9ce3b2b14e86389eb3c129fe930b6f765
671333726bcbe73bc5344f827aca50b1b4c7f32b
5d8e29c210eff0c6f8066293b804333e61c42285
98b45781cfaa31b38873ec716603578f13ec1049
8e90a85256b4670daaf4c59a518d80efd0be9a39
a458b19290921bd73d6c8d665eb79cd9978577f3
7bb14616fd3a35798f38a919c9dd73f240c9464b

# Sensitivity: Internal Restricted

You might also like