Resumen APTTrail
APTTrail mantiene indicadores publicos asociados a APT FAMILIARFEELING. Aliases observados: APT FAMILIARFEELING. Conteo por tipo: domain: 13, ipv4: 1.
Indicadores de Compromiso (IOCs)
| Tipo | Valor | Contexto |
|---|---|---|
| Domain | comemail.email | APTTrail |
| Domain | comemails.email | APTTrail |
| Domain | commail.co | APTTrail |
| Domain | daynew.today | APTTrail |
| Domain | daynews.today | APTTrail |
| Domain | t1bet.net | APTTrail |
| Domain | tibet-office.net | APTTrail |
| Domain | tibetfreedom.xyz | APTTrail |
| Domain | tibetfrum.info | APTTrail |
| Domain | tibethouse.info | APTTrail |
| Domain | tibetnews.info | APTTrail |
| Domain | tibetnews.today | APTTrail |
| Domain | tibetyouthcongress.com | APTTrail |
| IP | 45.77.45.222:110 | APTTrail |
Referencias
- https://citizenlab.ca/2018/01/spying-on-a-budget-inside-a-phishing-operation-with-targets-in-the-tibetan-community/
- https://citizenlab.ca/2018/08/familiar-feeling-a-malware-campaign-targeting-the-tibetan-diaspora-resurfaces/
- https://twitter.com/malwrhunterteam/status/1532611343882276864
- https://www.virustotal.com/gui/file/5217c2a1802b0b0fe5592f9437cdfd21f87da1b6ebdc917679ed084e40096bfd/detection
- https://www.virustotal.com/gui/ip-address/140.82.13.183/relations