Resumen APTTrail
APTTrail mantiene indicadores publicos asociados a APT ATLASCROSS. Aliases observados: APT ATLASCROSS. Conteo por tipo: domain: 11.
Indicadores de Compromiso (IOCs)
| Tipo | Valor | Contexto |
|---|---|---|
| Domain | activequest.goautodial.com | APTTrail |
| Domain | chat.thedresscodeapp.com | APTTrail |
| Domain | crm.cardabel.com | APTTrail |
| Domain | data.vectorse.com | APTTrail |
| Domain | engage.adaptqe.com | APTTrail |
| Domain | ops-ca.mioying.com | APTTrail |
| Domain | order.staging.photobookworldwide.com | APTTrail |
| Domain | public.pusulait.com | APTTrail |
| Domain | search.allaccountingcareers.com | APTTrail |
| Domain | secure.poliigon.com | APTTrail |
| Domain | superapi-staging.mlmprotec.com | APTTrail |
Referencias
- https://nsfocusglobal.com/warning-newly-discovered-apt-attacker-atlascross-exploits-red-cross-blood-drive-phishing-for-cyberattack/
- https://otx.alienvault.com/pulse/6514782fe337d1b070430c99
- https://www.virustotal.com/gui/file/2ef26042422e2cf48870e6d97921f8d916f6886457d013602623d06906f10fda/detection
- https://www.virustotal.com/gui/file/380f5069a6d9b4689058ba53876b0571a9f81cf8d1388d71ee555118a0d967c8/detection
- https://www.virustotal.com/gui/file/5e914133503e60491b445e5a06f3fa8144463340a3c9dc6d875bbfdcd6ff7f55/detection
- https://www.virustotal.com/gui/file/9c2f990f2d23f380f1cf8f83e9e23749f7ef097bda5b530c7d43fbf5feb3ba99/detection