APTTrail: 54bb47h indicators and references

Fecha
18 Jun 2026
Actor
54bb47h
Tipo
Ioc
Pais
United Kingdom
Sector
-
Confianza
high
100
Prioridad analitica
Alta

Basado en actor, pais, IOCs, TTPs, filtracion y calidad de contexto.

30IOCs
0TTPs
54bb47hActor
United KingdomPais
Executive Summary
APTTrail mantiene indicadores publicos asociados a 54bb47h. Aliases observados: 54bb47h, sabbath. Conteo por tipo: domain: 21, ipv4: 5, url: 1.

Key Points

  • https://github.com/thetanz/ransomwatch/blob/main/docs/INDEX.md
  • https://twitter.com/th3_protoCOL/status/1490847701012869120
  • https://www.mandiant.com/resources/sabbath-ransomware-affiliate
  • https://www.virustotal.com/gui/file/79b47780382f54ca039ad248d8241e42a7ed6b1e4b75af836890e4e46c0f8737/detection

Resumen APTTrail

APTTrail mantiene indicadores publicos asociados a 54bb47h. Aliases observados: 54bb47h, sabbath. Conteo por tipo: domain: 21, ipv4: 5, url: 1.

Indicadores de Compromiso (IOCs)

TipoValorContexto
Domain4bb47h5qu4k7l4d7v5ix3i6ak6elysn3net4by4ihmvrhu7cvbskoqd.onionAPTTrail
Domain54bb47h.blogAPTTrail
Domain54bb47h5qu4k7l4d7v5ix3i6ak6elysn3net4by4ihmvrhu7cvbskoqd.onionAPTTrail
Domainaequuira1aedeezais5i.probes.spaceAPTTrail
Domainaimee0febai5phoht2ti.probes.websiteAPTTrail
Domaincofeeloveers.comAPTTrail
Domaindatatransferdc.comAPTTrail
Domaindoratir.comAPTTrail
Domainfarhadl.comAPTTrail
Domainfrankir.comAPTTrail
Domaingordonzon.comAPTTrail
Domaingreentuks.comAPTTrail
Domainhelpgoldr.comAPTTrail
Domainjeithe7eijeefohch3qu.probes.siteAPTTrail
Domainmarkettc.bizAPTTrail
Domainprobes.siteAPTTrail
Domainprobes.spaceAPTTrail
Domainprobes.websiteAPTTrail
Domainsecuringyourpc.comAPTTrail
Domainsecurity4themasses.comAPTTrail
Domaintinysidney.comAPTTrail
IP45.141.84.182:443APTTrail
IP45.146.166.24:443APTTrail
IP45.147.230.137:3001APTTrail
IP45.147.230.221:2002APTTrail
IP45.79.55.129:443APTTrail
URLhttp://45.79.55.129APTTrail

Referencias

Diamond Model

Adversary
54bb47h
Ver perfil →
Victim
APTTrail: 54bb47h indicators and references
United Kingdom
Capability
Ioc
Infrastructure
4bb47h5qu4k7l4d7v5ix3i6ak6elysn3net4by4ihmvrhu7cvbskoqd.onion
54bb47h.blog
54bb47h5qu4k7l4d7v5ix3i6ak6elysn3net4by4ihmvrhu7cvbskoqd.onion
aequuira1aedeezais5i.probes.space

Indicadores de Compromiso (IOCs)

TipoValorContextoOSINT
Domain 4bb47h5qu4k7l4d7v5ix3i6ak6elysn3net4by4ihmvrhu7cvbskoqd.onion APTTrail VT OffSec SOCRadar
Domain 54bb47h.blog APTTrail VT OffSec SOCRadar
Domain 54bb47h5qu4k7l4d7v5ix3i6ak6elysn3net4by4ihmvrhu7cvbskoqd.onion APTTrail VT OffSec SOCRadar
Domain aequuira1aedeezais5i.probes.space APTTrail VT OffSec SOCRadar
Domain aimee0febai5phoht2ti.probes.website APTTrail VT OffSec SOCRadar
Domain cofeeloveers.com APTTrail VT OffSec SOCRadar
Domain datatransferdc.com APTTrail VT OffSec SOCRadar
Domain doratir.com APTTrail VT OffSec SOCRadar
Domain farhadl.com APTTrail VT OffSec SOCRadar
Domain frankir.com APTTrail VT OffSec SOCRadar
Domain gordonzon.com APTTrail VT OffSec SOCRadar
Domain greentuks.com APTTrail VT OffSec SOCRadar
Domain helpgoldr.com APTTrail VT OffSec SOCRadar
Domain jeithe7eijeefohch3qu.probes.site APTTrail VT OffSec SOCRadar
Domain markettc.biz APTTrail VT OffSec SOCRadar
Domain probes.site APTTrail VT OffSec SOCRadar
Domain probes.space APTTrail VT OffSec SOCRadar
Domain probes.website APTTrail VT OffSec SOCRadar
Domain securingyourpc.com APTTrail VT OffSec SOCRadar
Domain security4themasses.com APTTrail VT OffSec SOCRadar
Domain tinysidney.com APTTrail VT OffSec SOCRadar
IP 45.141.84.182:443 APTTrail VT OffSec SOCRadar
IP 45.146.166.24:443 APTTrail VT OffSec SOCRadar
IP 45.147.230.137:3001 APTTrail VT OffSec SOCRadar
IP 45.147.230.221:2002 APTTrail VT OffSec SOCRadar
IP 45.79.55.129:443 APTTrail VT OffSec SOCRadar
URL http://45.79.55.129 APTTrail VT OffSec SOCRadar
Domain github.com Extraido del contenido VT OffSec SOCRadar
Domain twitter.com Extraido del contenido VT OffSec SOCRadar
Domain www.mandiant.com Extraido del contenido VT OffSec SOCRadar

Referencias y enlaces

→ Perfil del actor 54bb47h en el blog → Ver 54bb47h en IntelTracker → URL IntelTracker: github.com→ URL IntelTracker: twitter.com→ URL IntelTracker: www.mandiant.com→ URL IntelTracker: www.virustotal.com → Fuente OSINT: github.com→ Fuente OSINT: raw.githubusercontent.com→ Fuente OSINT: github.com→ Fuente OSINT: twitter.com→ Fuente OSINT: www.mandiant.com→ Fuente OSINT: www.virustotal.com → Buscar 54bb47h en APTTrail → Repositorio APTTrail → Mas incidentes en United Kingdom → Buscar en Google News → Analizar en VirusTotal → Feed RSS del blog
← Volver al panel de inteligencia

Incidentes recientes