APTTrail: APT BLACKGEAR indicators and references

Fecha
18 Jun 2026
Actor
apt-blackgear
Tipo
Ioc
Pais
Unknown
Sector
Media
Confianza
high
100
Prioridad analitica
Alta

Basado en actor, pais, IOCs, TTPs, filtracion y calidad de contexto.

30IOCs
0TTPs
apt-blackgearActor
UnknownPais
Executive Summary
APTTrail mantiene indicadores publicos asociados a APT BLACKGEAR. Aliases observados: APT BLACKGEAR. Conteo por tipo: domain: 121.

Key Points

  • https://documents.trendmicro.com/assets/appendix-blackgear-cyberespionage-campaign-resurfaces-abuses-social-media-for-c&c-communication.pdf
  • https://malpedia.caad.fkie.fraunhofer.de/actor/blackgear
  • https://www.virustotal.com/gui/file/42ee9dd43ea0f2766f1419733d238346603474106157ccabff8eff574c13941a/detection

Resumen APTTrail

APTTrail mantiene indicadores publicos asociados a APT BLACKGEAR. Aliases observados: APT BLACKGEAR. Conteo por tipo: domain: 121.

Indicadores de Compromiso (IOCs)

TipoValorContexto
Domainabcdns.bounceme.netAPTTrail
Domainabcpees.webhop.netAPTTrail
Domainancelon.webhop.netAPTTrail
Domainanitacxb.servebbs.comAPTTrail
Domainbi-apple.netAPTTrail
Domainbitdefender.minidns.netAPTTrail
Domainccc.th-fish.comAPTTrail
Domainccuugo.8866.orgAPTTrail
Domaincheckerror.obama20009.comAPTTrail
Domaincheng.pc-officer.comAPTTrail
Domaincometocome.8866.orgAPTTrail
Domaincomputerupdate.servegame.comAPTTrail
Domaincooperlzh.liondrive.comAPTTrail
Domaind1c2f3.3322.orgAPTTrail
Domaindata.lovequintet.comAPTTrail
Domaindivineart.dyndns.orgAPTTrail
Domaindomain.uyghuri.comAPTTrail
Domainenterdia.zyns.comAPTTrail
Domainerbilin.blogdns.comAPTTrail
Domainfeng.pc-officer.comAPTTrail
Domainfifaoopp.webhop.netAPTTrail
Domainfisu.rr.nuAPTTrail
Domaingmail.servebbs.comAPTTrail
Domaingoodhope.no-ip.orgAPTTrail
Domaingoogleads.serveftp.comAPTTrail
Domainhandinhand.blogdns.orgAPTTrail
Domainharris.3322.orgAPTTrail
Domainhinetrouter.serveftp.orgAPTTrail
Domainhongzong.xicp.netAPTTrail
Domainhzcj.8866.orgAPTTrail

Referencias

Diamond Model

Adversary
apt-blackgear
Ver perfil →
Victim
APTTrail: APT BLACKGEAR indicators and references
Capability
Ioc
Infrastructure
abcdns.bounceme.net
abcpees.webhop.net
ancelon.webhop.net
anitacxb.servebbs.com

Indicadores de Compromiso (IOCs)

TipoValorContextoOSINT
Domain abcdns.bounceme.net APTTrail VT OffSec SOCRadar
Domain abcpees.webhop.net APTTrail VT OffSec SOCRadar
Domain ancelon.webhop.net APTTrail VT OffSec SOCRadar
Domain anitacxb.servebbs.com APTTrail VT OffSec SOCRadar
Domain bi-apple.net APTTrail VT OffSec SOCRadar
Domain bitdefender.minidns.net APTTrail VT OffSec SOCRadar
Domain ccc.th-fish.com APTTrail VT OffSec SOCRadar
Domain ccuugo.8866.org APTTrail VT OffSec SOCRadar
Domain checkerror.obama20009.com APTTrail VT OffSec SOCRadar
Domain cheng.pc-officer.com APTTrail VT OffSec SOCRadar
Domain cometocome.8866.org APTTrail VT OffSec SOCRadar
Domain computerupdate.servegame.com APTTrail VT OffSec SOCRadar
Domain cooperlzh.liondrive.com APTTrail VT OffSec SOCRadar
Domain d1c2f3.3322.org APTTrail VT OffSec SOCRadar
Domain data.lovequintet.com APTTrail VT OffSec SOCRadar
Domain divineart.dyndns.org APTTrail VT OffSec SOCRadar
Domain domain.uyghuri.com APTTrail VT OffSec SOCRadar
Domain enterdia.zyns.com APTTrail VT OffSec SOCRadar
Domain erbilin.blogdns.com APTTrail VT OffSec SOCRadar
Domain feng.pc-officer.com APTTrail VT OffSec SOCRadar
Domain fifaoopp.webhop.net APTTrail VT OffSec SOCRadar
Domain fisu.rr.nu APTTrail VT OffSec SOCRadar
Domain gmail.servebbs.com APTTrail VT OffSec SOCRadar
Domain goodhope.no-ip.org APTTrail VT OffSec SOCRadar
Domain googleads.serveftp.com APTTrail VT OffSec SOCRadar
Domain handinhand.blogdns.org APTTrail VT OffSec SOCRadar
Domain harris.3322.org APTTrail VT OffSec SOCRadar
Domain hinetrouter.serveftp.org APTTrail VT OffSec SOCRadar
Domain hongzong.xicp.net APTTrail VT OffSec SOCRadar
Domain hzcj.8866.org APTTrail VT OffSec SOCRadar

Referencias y enlaces

→ Perfil del actor apt-blackgear en el blog → Ver apt-blackgear en IntelTracker → URL IntelTracker: documents.trendmicro.com→ URL IntelTracker: malpedia.caad.fkie.fraunhofer.de→ URL IntelTracker: www.virustotal.com → Fuente OSINT: github.com→ Fuente OSINT: raw.githubusercontent.com→ Fuente OSINT: documents.trendmicro.com→ Fuente OSINT: malpedia.caad.fkie.fraunhofer.de→ Fuente OSINT: www.virustotal.com → Buscar apt-blackgear en APTTrail → Repositorio APTTrail → Buscar en Google News → Analizar en VirusTotal → Feed RSS del blog
← Volver al panel de inteligencia

Incidentes recientes