Skip to content

Agent Tesla

Agent Tesla is a .NET-based Windows information stealer and credential-stealing trojan widely distributed as commodity malware.

Profile source: Mallory opens in a new tab

Agent Tesla

Family profile

Agent Tesla is a .NET-based Windows information stealer and credential-stealing trojan widely distributed as commodity malware. It targets credentials and related data held by Chromium- and Mozilla-based browsers, email clients, messaging applications, Windows Credential Manager, and other installed applications. Variants have keylogging, clipboard-capture, and screen-capture functionality, and can exfiltrate collected information through FTP, SMTP, Telegram, Discord, or other attacker-controlled services. Agent Tesla commonly employs obfuscation, misleading application metadata, anti-debugging, virtual-machine and sandbox checks, and in-memory execution to impede detection and analysis. It is frequently delivered through phishing and malspam, including business-themed invoice, reservation, payment, request, and wire-transfer lures. A version 4 campaign used a Unicode-character-obfuscated JScript attachment in business email compromise-style messages targeting finance personnel, then reflectively loaded the final payload in memory. Agent Tesla has affected Windows users and organizations globally, including Italian business targets in recurring malspam activity.

Capabilities

  • Credential Theft
  • Defense Evasion
  • Exfiltration
  • Keylogging

C2 tracking

Seven-day C2 activity

Derp observations, rolling seven-day window

Observed infrastructure

Last seven days

First activity
Sep 7, 2026
Last activity
Sep 14, 2026
Feed role
C2 / Distribution
Host form
30 IP / 44 hostnames

Leading locations

  • US31
  • NL7
  • DE3
  • CA2
  • GB2
  • HU2
  • RU2
  • VN2
  • ZA2
  • BE1
  • BR1
  • CH1

Leading providers

  • Cloudflare, Inc.6
  • Namecheap, Inc.6
  • Amazon.com, Inc.3
  • HostPapa3
  • Unified Layer3
  • DigitalOcean, LLC2

Infrastructure traits

  • Hosting 55
  • Anycast 6

Samples

Recent associated samples

Reported operators

Threat actors

11 named in public reporting
Lazarus

March 2020 Campaign: 동μͺ½μ˜μΌμ–΄λ‚˜λŠ”ν–‰λ™ (The Rising Action of The East) ... Observed commodity malware: Agent Tesla and Mirai bot.

TA558

After a successful compromise, the group deploys mature remote access trojans and information stealers such as AgentTesla and XWorm on victim endpoints... The two samples analyzed below use AgentTesla and XWorm respectively for command-and-control communication.

RATicate

These campaigns, detailed in our previous report, distributed payloads that included AgentTesla, Formbook, Lokibot, Netwire and Betabot.

Aggah

In this campaign, malicious PowerPoint Add-in files were used to deliver Agent Tesla and PowerShell cryptocurrency-stealing malware.

Gorgon Group

Final Payload – Agent Tesla: Below figure shows injected Agent Tesla payload in RegAsm.exe. Agent Tesla is a well-known keylogger and infostealer written in DotNet.

Subaat

Final Payload – Agent Tesla: Below figure shows injected Agent Tesla payload in RegAsm.exe. Agent Tesla is a well-known keylogger and infostealer written in DotNet.

TA2541

beginning in late 2021, Proofpoint observed this group begin using DiscordApp URLs linking to a compressed file which led to either AgentTesla or Imminent Monitor.

SilverTerrier

The info stealers most popular with SilverTerrier last year were LokiBot (446 unique samples/month), Pony (330 unique samples/month), and Agent Tesla .NET keylogger (95 unique samples/month).

TMT

The group relied exclusively on a variety of publicly available spyware and Remote Access Trojans (RATs), including AgentTesla, Lokibot, AzoRult, Pony, and NetWire.

8220 Gang

...finally deploying stealer and cryptominer malware such as AgentTesla, rhajk, nasqa.

Exploited software

Vulnerabilities linked to Agent Tesla

7 CVEs

MITRE ATT&CK

Agent Tesla in ATT&CK

95 distinct techniques

Techniques

95 techniques
T1055 Process Injection T1566.001 Spearphishing Attachment T1203 Exploitation for Client Execution T1562.001 Disable or Modify Tools T1027 Obfuscated Files or Information T1204.002 Malicious File T1059.005 Visual Basic T1136.001 Local Account T1021.001 Remote Desktop Protocol T1070.004 File Deletion T1059.001 PowerShell T1036 Masquerading T1053.005 Scheduled Task T1055.012 Process Hollowing T1071.001 Web Protocols T1105 Ingress Tool Transfer T1102 Web Service T1566 Phishing T1056.001 Keylogging T1555.004 Windows Credential Manager T1555.003 Credentials from Web Browsers T1620 Reflective Code Loading T1113 Screen Capture T1115 Clipboard Data T1555 Credentials from Password Stores T1497.001 System Checks T1059.007 JavaScript T1622 Debugger Evasion T1048.003 Exfiltration Over Unencrypted Non-C2 Protocol T1048 Exfiltration Over Alternative Protocol T1547.001 Registry Run Keys / Startup Folder T1587.001 Malware T1041 Exfiltration Over C2 Channel T1657 Financial Theft T1129 Shared Modules T1497 Virtualization/Sandbox Evasion T1071.002 File Transfer Protocols T1082 System Information Discovery T1656 Impersonation T1071 Application Layer Protocol T1566.002 Spearphishing Link T1071.003 Mail Protocols T1090.002 External Proxy T1219 Remote Access Tools T1204 User Execution T1027.003 Steganography T1548.002 Bypass User Account Control T1057 Process Discovery T1112 Modify Registry T1140 Deobfuscate/Decode Files or Information T1016 System Network Configuration Discovery T1056 Input Capture T1033 System Owner/User Discovery T1564.003 Hidden Window T1552.002 Credentials in Registry T1124 System Time Discovery T1564.001 Hidden Files and Directories T1562 Impair Defenses T1583.001 Domains T1555.001 Keychain T1608.001 Upload Malware T1553 Subvert Trust Controls T1070 Indicator Removal T1547 Boot or Logon Autostart Execution T1091 Replication Through Removable Media T1055.002 Portable Executable Injection T1218.005 Mshta T1095 Non-Application Layer Protocol T1090.003 Multi-hop Proxy T1125 Video Capture T1087 Account Discovery T1027.001 Binary Padding T1573 Encrypted Channel T1218.011 Rundll32 T1564 Hide Artifacts T1649 Steal or Forge Authentication Certificates T1218.003 CMSTP T1218 System Binary Proxy Execution T1059.003 Windows Command Shell T1005 Data from Local System T1567 Exfiltration Over Web Service T1560 Archive Collected Data T1027.009 Embedded Payloads T1547.009 Shortcut Modification T1218.004 InstallUtil T1497.003 Time Based Checks T1059 Command and Scripting Interpreter T1083 File and Directory Discovery T1027.007 Dynamic API Resolution T1566.003 Spearphishing via Service T1543.003 Windows Service T1114 Email Collection T1027.002 Software Packing T1555.005 Password Managers T1539 Steal Web Session Cookie

Reporting

Research mentioning Agent Tesla

Aug 21
Cyber Security News

Hackers Hide Agent Tesla JScript Behind Unicode Emojis to Evade Detection

A new Agent Tesla v4 campaign is targeting finance departments with a business email compromise-style lure that impersonates Metropolitan Bank and Trust Company and presents a forwarded, internal-looking email thread with a malicious attachment. Researchers said the attack chain is designed to look routine to recipients while delivering an infostealer that focuses on credential theft and account compromise. After execution, the malware uses a JScript dropper with novel Unicode emoji-based obfuscation and deploys DonutLoader shellcode for reflective PE injection, allowing the final payload to run in memory without touching disk. Additional evasion features include ConfuserEx obfuscation, misleading metadata, and debugger detection, while the malware steals credentials from more than 40 applications, captures keystrokes and clipboard data, fingerprints infected hosts, and quickly exfiltrates data to an attacker-controlled FTP server; defenders were advised to hunt for emoji Unicode patterns alongside JScript indicators such as WScript.Shell and CreateObject.

Aug 21
Infosecurity Magazine News

New Agent Tesla Malware Variant Boosts Evasion Capabilities - Infosecurity Magazine

Aug 20
Knowbe4

Anatomy of an Agent Tesla BEC Attack: From Inbox to In-Memory Infostealer

Jul 27
Netresec

PureLogs, PureRAT and misleading zgRAT

Security researchers and email threat monitors reported continued activity from the PureCoder malware ecosystem, with campaigns distributing credential-stealing and remote-access payloads including PureLogs, PureRAT, and PureHVNC. An analysis of the broader Pure malware family described it as a growing threat, while Italian malspam telemetry later showed PureHVNC appearing alongside AgentTesla, FormBook, and Remcos in business-themed phishing lures tied to bank transfers, orders, offers, and requests. Script files were the most common attachment type in those campaigns, followed by Office documents and MSIL binaries. Researchers also warned that industry naming around this malware remains inconsistent, especially the use of zgRAT to describe different PureCoder families. Netresec said the label is being applied to both PureLogs, a .NET infostealer focused on credential and data theft, and PureRAT, a .NET RAT that supports capabilities such as HVNC, webcam and microphone access, keylogging, reverse proxying, and code injection. The report said this overlap affects Suricata and TLS-certificate-based detections, creating false positives and family-level misclassification, and urged defenders to use precise names such as PureLogs or PureRAT when attribution is clear.

Jul 22
Security Online Info

TTF Trap: Fake Font Files Hide a Stealthy Lua Loader

A global phishing campaign dubbed TTF Trap is using business email compromise lures and impersonation of trusted brands such as FedEx to infect Windows users with remote access Trojans and infostealers. Fortinet said the operation begins with phishing emails carrying or linking to ZIP or RAR archives, then launches heavily obfuscated JavaScript that establishes persistence and triggers a disguised loader hidden inside a fake .ttf font file. The loader runs through legitimate LuaJIT or AutoIt interpreters and uses layered obfuscation, in-memory execution, API unhooking, anti-analysis checks, and reflective loading to avoid detection while keeping payloads off disk. Researchers observed the campaign since late March and said related loader code dates back to October 2025; malware delivered in the operation includes Agent Tesla, Remcos, XWorm, Best Private Logger, and Snake Keylogger variants, with the apparent goal of stealing data and maintaining remote access for follow-on attacks.

Jul 21
Cyber Security News

This $2,000-a-Month Crypter Can Kill EDR and Make Malware Disappear From Disk

Proofpoint reported that the Cruciferra crypter-as-a-service is being used by multiple unrelated cybercriminal actors to deliver commodity malware, particularly RATs and infostealers, through email-borne campaigns. Marketed since fall 2025 on exploit[.]in with subscription tiers ranging from $450 to $2,000 per month, the service has been tied to campaigns distributing AsyncRAT, XWorm, zgRAT, Agent Tesla, Formbook, XLoader, Phantom Stealer, and Remcos. Financial services, healthcare, and government organizations appeared frequently among targets, while observed lures included tax-themed messages linked to TA4922 and hospitality-themed campaigns delivering zgRAT. Researchers said Cruciferra is under active development, with both production and testing variants observed and VirusTotal metadata indicating frequent rebuilds and redeployment. The crypter, written in Mono, combines layered evasion and anti-analysis techniques including DLL side-loading, decoy exports, indirect syscalls, API and IAT unhooking, BYOVD-based EDR tampering, persistence, UAC bypass, and a customized Process Ghosting implementation, alongside more than 90 custom or hybrid cryptographic routines designed to conceal payloads and hinder static analysis. Microsoft documentation on the COM Elevation Moniker provides context for one of the Windows privilege-elevation mechanisms relevant to the UAC bypass tradecraft described in the analysis.

Jul 21
Scworld

Sophisticated crypter service Cruciferra evades detection with advanced techniques | brief | SC Media

Jul 21
Gurucul Threat Research

Unpacking β€œCruciferra”: An Analysis of a Sophisticated Crypter Service | Community Portal | Gurucul

We appreciate you

Derp wouldn't exist without the work these projects do for the security community. We rely on their data sources to improve the quality and depth of what we publish. Thank you, we're genuinely grateful.