Resumen APTTrail
APTTrail mantiene indicadores publicos asociados a APT PUNISHINGOWL. Aliases observados: APT PUNISHINGOWL. Conteo por tipo: domain: 9, ipv4: 2.
Indicadores de Compromiso (IOCs)
| Tipo | Valor | Contexto |
|---|---|---|
| Domain | acquerifec.com | APTTrail |
| Domain | ayobabelan.com | APTTrail |
| Domain | b0aweb0.refec.site | APTTrail |
| Domain | bloggoversikten.com | APTTrail |
| Domain | outlook-d12.zyns.com | APTTrail |
| Domain | refec.site | APTTrail |
| Domain | refreb0.com | APTTrail |
| Domain | refreb1.info | APTTrail |
| Domain | ws.iferc.com | APTTrail |
| IP | 82.221.100.40:443 | APTTrail |
| IP | 95.174.65.218:443 | APTTrail |
Referencias
- https://habr.com/ru/companies/pt/articles/990374/
- https://www.virustotal.com/gui/file/09636fbca343f268ee7c0c033e37a9b007fe40ce914c4273ed961d84b52bed17/detection
- https://www.virustotal.com/gui/file/6aa09062a755775e1b11dfd5fa80981fa50e1ecf4ba3f1ae41b2ed8b671e0f6a/detection
- https://www.virustotal.com/gui/file/b1782f8f3440ce4b184f27c4047439aa998058ec17319a5b08031eda545d5a50/detection
- https://www.virustotal.com/gui/file/dfd49ea1911fb7e800440c82b6518828ec7fa7c595d7ea6baabec29e5d9cecec/detection
- https://www.virustotal.com/gui/file/f25506f5a7f3580edae159bbdbca3f8d17dfeeaadcc548c8202a764399550778/detection