APTTrail: apt-c-01 indicators and references

Fecha
18 Jun 2026
Actor
apt-c-01
Tipo
Ioc
Pais
China
Sector
-
Confianza
high
100
Prioridad analitica
Alta

Basado en actor, pais, IOCs, TTPs, filtracion y calidad de contexto.

30IOCs
0TTPs
apt-c-01Actor
ChinaPais
Executive Summary
APTTrail mantiene indicadores publicos asociados a apt-c-01. Aliases observados: apt-c-01, poison ivy. Conteo por tipo: domain: 183, ipv4: 4, url: 2.

Key Points

  • https://hunt.io/blog/greenspot-apt-targets-163com-fake-downloads-spoofing
  • https://mp.weixin.qq.com/s/6wVfE9SE3wVuazxVppe3tA
  • https://threatbook.io/domain/download163ease.com
  • https://ti.360.net/uploads/2018/09/20/6f8ad451646c9eda1f75c5d31f39f668.pdf (Chinese)
  • https://twitter.com/RedDrip7/status/1118009381679878144

Resumen APTTrail

APTTrail mantiene indicadores publicos asociados a apt-c-01. Aliases observados: apt-c-01, poison ivy. Conteo por tipo: domain: 183, ipv4: 4, url: 2.

Indicadores de Compromiso (IOCs)

TipoValorContexto
Domain126mailserver.serveftp.comAPTTrail
Domain143-244-183-240.cprapid.comAPTTrail
Domain360urlscan.comAPTTrail
Domain64-176-165-42.cprapid.comAPTTrail
Domain6c99b2c4cf5a.expolebanon.comAPTTrail
Domainaccess.webplurk.comAPTTrail
Domainaccounts126.comAPTTrail
Domainafte856422126.comAPTTrail
Domainaliago.dyndns.dkAPTTrail
Domainannie165.zyns.comAPTTrail
Domainapp.newfacebk.comAPTTrail
Domainas1688.webhop.orgAPTTrail
Domainatrew56877.comAPTTrail
Domainavdsart.comAPTTrail
Domainbabana.wikaba.comAPTTrail
Domainbackaaa.beijingdasihei.comAPTTrail
Domainbearingonly.rebatesrule.netAPTTrail
Domainbribieislandhistory.comAPTTrail
Domainbt0116.servebbs.netAPTTrail
Domainbuendnis-fuer-kinder.comAPTTrail
Domaincaac-cn.comAPTTrail
Domaincaac-cn.orgAPTTrail
Domaincanberk.gecekodu.comAPTTrail
Domainceepitbj.servepics.comAPTTrail
Domaincensor.siteAPTTrail
Domaincenter-gai.comAPTTrail
Domaincertifications.servicesAPTTrail
Domainchamber.icuAPTTrail
Domaincheck.blogdns.comAPTTrail
Domainchina.serveblog.netAPTTrail

Referencias

Diamond Model

Adversary
apt-c-01
Ver perfil →
Victim
APTTrail: apt-c-01 indicators and references
China
Capability
Ioc
Infrastructure
126mailserver.serveftp.com
143-244-183-240.cprapid.com
360urlscan.com
64-176-165-42.cprapid.com

Indicadores de Compromiso (IOCs)

TipoValorContextoOSINT
Domain 126mailserver.serveftp.com APTTrail VT OffSec SOCRadar
Domain 143-244-183-240.cprapid.com APTTrail VT OffSec SOCRadar
Domain 360urlscan.com APTTrail VT OffSec SOCRadar
Domain 64-176-165-42.cprapid.com APTTrail VT OffSec SOCRadar
Domain 6c99b2c4cf5a.expolebanon.com APTTrail VT OffSec SOCRadar
Domain access.webplurk.com APTTrail VT OffSec SOCRadar
Domain accounts126.com APTTrail VT OffSec SOCRadar
Domain afte856422126.com APTTrail VT OffSec SOCRadar
Domain aliago.dyndns.dk APTTrail VT OffSec SOCRadar
Domain annie165.zyns.com APTTrail VT OffSec SOCRadar
Domain app.newfacebk.com APTTrail VT OffSec SOCRadar
Domain as1688.webhop.org APTTrail VT OffSec SOCRadar
Domain atrew56877.com APTTrail VT OffSec SOCRadar
Domain avdsart.com APTTrail VT OffSec SOCRadar
Domain babana.wikaba.com APTTrail VT OffSec SOCRadar
Domain backaaa.beijingdasihei.com APTTrail VT OffSec SOCRadar
Domain bearingonly.rebatesrule.net APTTrail VT OffSec SOCRadar
Domain bribieislandhistory.com APTTrail VT OffSec SOCRadar
Domain bt0116.servebbs.net APTTrail VT OffSec SOCRadar
Domain buendnis-fuer-kinder.com APTTrail VT OffSec SOCRadar
Domain caac-cn.com APTTrail VT OffSec SOCRadar
Domain caac-cn.org APTTrail VT OffSec SOCRadar
Domain canberk.gecekodu.com APTTrail VT OffSec SOCRadar
Domain ceepitbj.servepics.com APTTrail VT OffSec SOCRadar
Domain censor.site APTTrail VT OffSec SOCRadar
Domain center-gai.com APTTrail VT OffSec SOCRadar
Domain certifications.services APTTrail VT OffSec SOCRadar
Domain chamber.icu APTTrail VT OffSec SOCRadar
Domain check.blogdns.com APTTrail VT OffSec SOCRadar
Domain china.serveblog.net APTTrail VT OffSec SOCRadar

Referencias y enlaces

→ Perfil del actor apt-c-01 en el blog → Ver apt-c-01 en IntelTracker → URL IntelTracker: hunt.io→ URL IntelTracker: mp.weixin.qq.com→ URL IntelTracker: threatbook.io→ URL IntelTracker: ti.360.net→ URL IntelTracker: twitter.com→ URL IntelTracker: twitter.com → Fuente OSINT: github.com→ Fuente OSINT: raw.githubusercontent.com→ Fuente OSINT: hunt.io→ Fuente OSINT: mp.weixin.qq.com→ Fuente OSINT: threatbook.io→ Fuente OSINT: ti.360.net → Buscar apt-c-01 en APTTrail → Repositorio APTTrail → Mas incidentes en China → Buscar en Google News → Analizar en VirusTotal → Feed RSS del blog
← Volver al panel de inteligencia

Incidentes recientes