APTTrail: APT CARETO indicators and references

Fecha
18 Jun 2026
Actor
apt-careto
Tipo
Ioc
Pais
Unknown
Sector
-
Confianza
high
100
Prioridad analitica
Alta

Basado en actor, pais, IOCs, TTPs, filtracion y calidad de contexto.

30IOCs
0TTPs
apt-caretoActor
UnknownPais
Executive Summary
APTTrail mantiene indicadores publicos asociados a APT CARETO. Aliases observados: APT CARETO. Conteo por tipo: domain: 32.

Key Points

  • http://kernelmode.info/forum/viewtopic.php?f=16&t=3159
  • https://discussions.nessus.org/thread/7087
  • https://github.com/ti-research-io/ti/blob/main/ioc_extender/ET_Lazarus.json
  • https://s3.amazonaws.com/snort-org/www/rules/community/community-rules.tar.gz
  • https://snort-org-site.s3.amazonaws.com/production/release_files/files/000/012/156/original/snort3-community-rules.tar.gz

Resumen APTTrail

APTTrail mantiene indicadores publicos asociados a APT CARETO. Aliases observados: APT CARETO. Conteo por tipo: domain: 32.

Indicadores de Compromiso (IOCs)

TipoValorContexto
Domainappleupdt.comAPTTrail
Domaincarrus.gotdns.comAPTTrail
Domaincherry1962.dyndns.orgAPTTrail
Domainctronlinenews.dyndns.tvAPTTrail
Domaindfup.selfip.orgAPTTrail
Domainfast8.homeftp.orgAPTTrail
Domaingx5639.dyndns.tvAPTTrail
Domainhelpcenter1it6238.cz.ccAPTTrail
Domainhelpcenter2br6932.ccAPTTrail
Domainisaserver.minrex.gov.cuAPTTrail
Domainkarpeskmon.dyndns.orgAPTTrail
Domainlinkconf.netAPTTrail
Domainmango66.dyndns.orgAPTTrail
Domainmsupdate.ath.cxAPTTrail
Domainmsupdt.comAPTTrail
Domainnav1002.ath.cxAPTTrail
Domainnthost.shacknet.nuAPTTrail
Domainoco-231-ms.xns01.comAPTTrail
Domainpininfarina.dynalias.comAPTTrail
Domainpl400.dyndns.orgAPTTrail
Domainprosoccer1.dyndns.infoAPTTrail
Domainprosoccer2.dyndns.infoAPTTrail
Domainredirserver.netAPTTrail
Domainricush.ath.cxAPTTrail
Domainservices.serveftp.orgAPTTrail
Domainsv.serveftp.orgAPTTrail
Domainswupdt.comAPTTrail
Domaintakami.podzone.netAPTTrail
Domaintunga.homedns.orgAPTTrail
Domainupdates.homeftp.orgAPTTrail

Referencias

Diamond Model

Adversary
apt-careto
Ver perfil →
Victim
APTTrail: APT CARETO indicators and references
Capability
Ioc
Infrastructure
appleupdt.com
carrus.gotdns.com
cherry1962.dyndns.org
ctronlinenews.dyndns.tv

Indicadores de Compromiso (IOCs)

TipoValorContextoOSINT
Domain appleupdt.com APTTrail VT OffSec SOCRadar
Domain carrus.gotdns.com APTTrail VT OffSec SOCRadar
Domain cherry1962.dyndns.org APTTrail VT OffSec SOCRadar
Domain ctronlinenews.dyndns.tv APTTrail VT OffSec SOCRadar
Domain dfup.selfip.org APTTrail VT OffSec SOCRadar
Domain fast8.homeftp.org APTTrail VT OffSec SOCRadar
Domain gx5639.dyndns.tv APTTrail VT OffSec SOCRadar
Domain helpcenter1it6238.cz.cc APTTrail VT OffSec SOCRadar
Domain helpcenter2br6932.cc APTTrail VT OffSec SOCRadar
Domain isaserver.minrex.gov.cu APTTrail VT OffSec SOCRadar
Domain karpeskmon.dyndns.org APTTrail VT OffSec SOCRadar
Domain linkconf.net APTTrail VT OffSec SOCRadar
Domain mango66.dyndns.org APTTrail VT OffSec SOCRadar
Domain msupdate.ath.cx APTTrail VT OffSec SOCRadar
Domain msupdt.com APTTrail VT OffSec SOCRadar
Domain nav1002.ath.cx APTTrail VT OffSec SOCRadar
Domain nthost.shacknet.nu APTTrail VT OffSec SOCRadar
Domain oco-231-ms.xns01.com APTTrail VT OffSec SOCRadar
Domain pininfarina.dynalias.com APTTrail VT OffSec SOCRadar
Domain pl400.dyndns.org APTTrail VT OffSec SOCRadar
Domain prosoccer1.dyndns.info APTTrail VT OffSec SOCRadar
Domain prosoccer2.dyndns.info APTTrail VT OffSec SOCRadar
Domain redirserver.net APTTrail VT OffSec SOCRadar
Domain ricush.ath.cx APTTrail VT OffSec SOCRadar
Domain services.serveftp.org APTTrail VT OffSec SOCRadar
Domain sv.serveftp.org APTTrail VT OffSec SOCRadar
Domain swupdt.com APTTrail VT OffSec SOCRadar
Domain takami.podzone.net APTTrail VT OffSec SOCRadar
Domain tunga.homedns.org APTTrail VT OffSec SOCRadar
Domain updates.homeftp.org APTTrail VT OffSec SOCRadar

Referencias y enlaces

→ Perfil del actor apt-careto en el blog → Ver apt-careto en IntelTracker → URL IntelTracker: kernelmode.info→ URL IntelTracker: discussions.nessus.org→ URL IntelTracker: github.com→ URL IntelTracker: s3.amazonaws.com→ URL IntelTracker: snort-org-site.s3.amazonaws.com → Fuente OSINT: github.com→ Fuente OSINT: raw.githubusercontent.com→ Fuente OSINT: kernelmode.info→ Fuente OSINT: discussions.nessus.org→ Fuente OSINT: github.com→ Fuente OSINT: s3.amazonaws.com → Buscar apt-careto en APTTrail → Repositorio APTTrail → Buscar en Google News → Analizar en VirusTotal → Feed RSS del blog
← Volver al panel de inteligencia

Incidentes recientes