WageMole
· Published 21/04/2026 17:28 · Modified 21/04/2026 17:28
· Source: AlienVault
Essential information
- Confidence
- 100/100
- Published
- 21/04/2026 17:28
- Modified
- 21/04/2026 17:28
- Updated at
- 21/04/2026 17:28
- Revoked
- No
- Author / Source
- AlienVault
- Resource level
- —
- Primary motivation
- —
- Related entities
- 1 reports, 20 attack patterns (mitre), 5 malware, 1 sectors, 10 indicators
Description
No description.
Marking (TLP)
TLP:CLEAR
Related entities
Attack patterns, malware, vulnerabilities, indicators and other entities linked to this intrusion set.
Reports (1)
-
AlienVault Confidence 100 20 MITREs 5 Malwares 10 IOCs 10 Observables 1 APTPublished 21/04/2026 14:09 · Modified 21/04/2026 15:28 · threat-report
Attack patterns (MITRE) (20)
-
T1070.006 usesTimestomp
-
T1070.003 usesClear Command History
-
T1195.002 usesCompromise Software Supply Chain
-
T1036.005 usesMatch Legitimate Resource Name or Location
-
T1027 usesObfuscated Files or Information
-
T1041 usesExfiltration Over C2 Channel
-
T1059.007 usesJavaScript
-
T1573.001 usesSymmetric Cryptography
-
T1567.002 usesExfiltration to Cloud Storage
-
T1071.001 usesWeb Protocols
-
T1195.001 usesCompromise Software Dependencies and Development Tools
-
T1547.001 usesRegistry Run Keys / Startup Folder
-
T1204.002 usesMalicious File
-
T1071.004 usesDNS
-
T1566.001 usesSpearphishing Attachment
-
T1102.002 usesBidirectional Communication
-
T1199 usesTrusted Relationship
-
T1574.001 usesDLL
-
T1140 usesDeobfuscate/Decode Files or Information
-
T1078.001 usesDefault Accounts
Malware (5)
-
DEV#POPPER RAT usesFamilyPublished 21/04/2026 12:09 · Modified 21/04/2026 12:09
-
OtterCookie usesFamilyPublished 08/06/2026 10:05 · Modified 08/06/2026 10:05
-
OmniStealer usesFamilyPublished 21/04/2026 12:09 · Modified 21/04/2026 12:09
-
InvisibleFerret usesFamilyPublished 21/04/2026 12:09 · Modified 21/04/2026 12:09
-
BeaverTail usesFamilyPublished 21/04/2026 12:09 · Modified 21/04/2026 12:09
Sectors (1)
- Technology targets
Indicators (10)
-
23e37cf4e2a7d55ed107b3bc3eb7812a0e3d8f90b23b0c8f549d5c10d089a2c8indicates -
23.27.202.27indicates -
23.27.20.143indicates -
83.168.68.219indicates -
198.105.127.210indicates -
154.91.0.196indicates -
85.239.62.36indicates -
166.88.4.2indicates -
834a92277f1bd82d4d473ac0aa2ddb23208a3a8763a576b882e7326c42bc5412indicates -
23.27.120.142indicates