ATLASAGENT

ATLASAGENTAtlasAgent

Description

AtlasAgent used in this attack activity is Trojan horse program developed by AtlasCross. The main functions of the Trojan are to obtain host information, process information, prevent opening of multi-programs, inject specified shellcode and download files from CnC servers. The Trojan communicates with the CnC through HTTP protocol, encrypts communication data using Base64 encoding after RC4 encryption, and encrypts key APIs using two encryption methods at the same time.

Related by meaning· 6

Nearest entities by semantic similarity across the cs-graph corpus.

Actor
AtlasCross
Software
ATLAS
Software
DangerAds
Software
Ataware
Software
TSCookieRAT
Software
ALMA Communicator
Sourced from MITRE ATT&CK Enterprise . Curated by Adam Lundqvist, SQUR.