Resumen APTTrail
APTTrail mantiene indicadores publicos asociados a APT GOLDENJACKAL. Aliases observados: APT GOLDENJACKAL. Conteo por tipo: file_path: 36, ipv4: 1, url: 2.
Indicadores de Compromiso (IOCs)
| Tipo | Valor | Contexto |
|---|---|---|
| FILE_PATH | abert-online.de/meeting/plugins.php | APTTrail |
| FILE_PATH | acehigh.host/robotx.php | APTTrail |
| FILE_PATH | ajapnyakmc.com/wp-content/cache/index.php | APTTrail |
| FILE_PATH | assistance.uz/admin/plugins.php | APTTrail |
| FILE_PATH | asusiran.com/wp-content/plugins/persian-woocommerce/include/class-cache.php | APTTrail |
| FILE_PATH | asusiran.com/wp-content/themes/woodmart/inc/modules/cache.php | APTTrail |
| FILE_PATH | cnom.sante.gov.ml/components/com_avreloaded/views/popup/tmpl/header.php | APTTrail |
| FILE_PATH | croma.vn/wp-content/themes/croma/template-parts/footer.php | APTTrail |
| FILE_PATH | den-photomaster.kz/wp-track.php | APTTrail |
| FILE_PATH | djstuff.fr/wp-content/themes/twentyfourteen/inc/footer.php | APTTrail |
| FILE_PATH | eyetelligence.ai/wp-content/themes/cms/inc/template-parts/footer.php | APTTrail |
| FILE_PATH | finasteridehair.com/wp-includes/class-wp-network-statistics.php | APTTrail |
| FILE_PATH | gradaran.be/wp-content/themes/tb-sound/inc/footer.php | APTTrail |
| FILE_PATH | info.merysof.am/plugins/search/content/plugins.php | APTTrail |
| FILE_PATH | invest.zyrardow.pl/admin/model/setting/plugins.php | APTTrail |
| FILE_PATH | mehrganhospital.com/wp-includes/class-wp-tax-system.php | APTTrail |
| FILE_PATH | meukowcognac.com/wp-content/themes/astra/page-flags.php | APTTrail |
| FILE_PATH | nassiraq.iq/wp-includes/class-wp-header-styles.php | APTTrail |
| FILE_PATH | new.jmcashback.com/wp-track.php | APTTrail |
| FILE_PATH | news.lmond.com/wp-content/themes/newsbook/inc/footer.php | APTTrail |
| FILE_PATH | pabalochistan.gov.pk/new/wp-content/cache/functions.php | APTTrail |
| FILE_PATH | pabalochistan.gov.pk/new/wp-content/themes/dt-the7/inc/cache.php | APTTrail |
| FILE_PATH | pabalochistan.gov.pk/new/wp-content/themes/twentyfifteen/content-manager.php | APTTrail |
| FILE_PATH | pak-developers.net/internal_data/templates/bottom.jpg | APTTrail |
| FILE_PATH | pak-developers.net/internal_data/templates/template.html | APTTrail |
| FILE_PATH | perlesoie.com/wp-content/plugins/contact-form-7/includes/cache.php | APTTrail |
| FILE_PATH | perlesoie.com/wp-content/themes/flatsome/inc/classes/class-flatsome-cache.php | APTTrail |
| FILE_PATH | sbj-i.com/wp-content/plugins/wp-persian/includes/class-wp-cache.php | APTTrail |
| FILE_PATH | sbj-i.com/wp-content/themes/hamyarwp-spacious/cache.php | APTTrail |
| FILE_PATH | sokerpower.com/wp-includes/class-wp-header-styles.php | APTTrail |
Referencias
- https://securelist.com/goldenjackal-apt-group/109677/
- https://twitter.com/k3yp0d/status/1693249804166422939
- https://www.virustotal.com/gui/file/6407fffce3c28fc5933c792b5a6ac7a42f4073e1544a4cf0de1b417d3994b9ea/detection
- https://www.welivesecurity.com/en/eset-research/mind-air-gap-goldenjackal-gooses-government-guardrails/