APTTrail: APT QUASAR indicators and references

Fecha
18 Jun 2026
Actor
apt-quasar
Tipo
Ioc
Pais
Unknown
Sector
-
Confianza
high
100
Prioridad analitica
Alta

Basado en actor, pais, IOCs, TTPs, filtracion y calidad de contexto.

30IOCs
0TTPs
apt-quasarActor
UnknownPais
Executive Summary
APTTrail mantiene indicadores publicos asociados a APT QUASAR. Aliases observados: APT QUASAR. Conteo por tipo: domain: 35.

Key Points

  • http://researchcenter.paloaltonetworks.com/2017/01/unit42-downeks-and-quasar-rat-used-in-recent-targeted-attacks-against-governments/
  • https://www.symantec.com/security_response/writeup.jsp?docid=2017-020114-1619-99&tabid=2

Resumen APTTrail

APTTrail mantiene indicadores publicos asociados a APT QUASAR. Aliases observados: APT QUASAR. Conteo por tipo: domain: 35.

Indicadores de Compromiso (IOCs)

TipoValorContexto
Domainbandtester.comAPTTrail
Domaindatasamsung.comAPTTrail
Domaindown.downloadoneyoutube.co.vuAPTTrail
Domaindownloadlog.linkpc.netAPTTrail
Domaindownloadmyhost.zapto.orgAPTTrail
Domaindownloadtesting.comAPTTrail
Domaindynamicipaddress.linkpc.netAPTTrail
Domainexportball.servegame.orgAPTTrail
Domainftpserverit.otzo.comAPTTrail
Domaingalaxy-s.comAPTTrail
Domaingalaxysupdates.comAPTTrail
Domaingameoolines.comAPTTrail
Domaingamestoplay.bidAPTTrail
Domainhavan.qhigh.comAPTTrail
Domainhelp2014.linkpc.netAPTTrail
Domainhelpyoume.linkpc.netAPTTrail
Domainhostgatero.ddns.netAPTTrail
Domainkolabdown.sytes.netAPTTrail
Domainmicrosoftnewupdate.comAPTTrail
Domainnetstreamag.publicvm.comAPTTrail
Domainnewphoneapp.comAPTTrail
Domainnoredirecto.redirectme.netAPTTrail
Domainonlinesoft.spaceAPTTrail
Domainprogsupdate.comAPTTrail
Domainrotter2.publicvm.comAPTTrail
Domainsafara.sytes.netAPTTrail
Domainsmartsftp.pwAPTTrail
Domainspeedbind.comAPTTrail
Domainsubsidiaryohio.linkpc.netAPTTrail
Domaintopgamse.comAPTTrail

Referencias

Diamond Model

Adversary
apt-quasar
Ver perfil →
Victim
APTTrail: APT QUASAR indicators and references
Capability
Ioc
Infrastructure
bandtester.com
datasamsung.com
down.downloadoneyoutube.co.vu
downloadlog.linkpc.net

Indicadores de Compromiso (IOCs)

TipoValorContextoOSINT
Domain bandtester.com APTTrail VT OffSec SOCRadar
Domain datasamsung.com APTTrail VT OffSec SOCRadar
Domain down.downloadoneyoutube.co.vu APTTrail VT OffSec SOCRadar
Domain downloadlog.linkpc.net APTTrail VT OffSec SOCRadar
Domain downloadmyhost.zapto.org APTTrail VT OffSec SOCRadar
Domain downloadtesting.com APTTrail VT OffSec SOCRadar
Domain dynamicipaddress.linkpc.net APTTrail VT OffSec SOCRadar
Domain exportball.servegame.org APTTrail VT OffSec SOCRadar
Domain ftpserverit.otzo.com APTTrail VT OffSec SOCRadar
Domain galaxy-s.com APTTrail VT OffSec SOCRadar
Domain galaxysupdates.com APTTrail VT OffSec SOCRadar
Domain gameoolines.com APTTrail VT OffSec SOCRadar
Domain gamestoplay.bid APTTrail VT OffSec SOCRadar
Domain havan.qhigh.com APTTrail VT OffSec SOCRadar
Domain help2014.linkpc.net APTTrail VT OffSec SOCRadar
Domain helpyoume.linkpc.net APTTrail VT OffSec SOCRadar
Domain hostgatero.ddns.net APTTrail VT OffSec SOCRadar
Domain kolabdown.sytes.net APTTrail VT OffSec SOCRadar
Domain microsoftnewupdate.com APTTrail VT OffSec SOCRadar
Domain netstreamag.publicvm.com APTTrail VT OffSec SOCRadar
Domain newphoneapp.com APTTrail VT OffSec SOCRadar
Domain noredirecto.redirectme.net APTTrail VT OffSec SOCRadar
Domain onlinesoft.space APTTrail VT OffSec SOCRadar
Domain progsupdate.com APTTrail VT OffSec SOCRadar
Domain rotter2.publicvm.com APTTrail VT OffSec SOCRadar
Domain safara.sytes.net APTTrail VT OffSec SOCRadar
Domain smartsftp.pw APTTrail VT OffSec SOCRadar
Domain speedbind.com APTTrail VT OffSec SOCRadar
Domain subsidiaryohio.linkpc.net APTTrail VT OffSec SOCRadar
Domain topgamse.com APTTrail VT OffSec SOCRadar

Referencias y enlaces

→ Perfil del actor apt-quasar en el blog → Ver apt-quasar en IntelTracker → URL IntelTracker: researchcenter.paloaltonetworks.com→ URL IntelTracker: www.symantec.com → Fuente OSINT: github.com→ Fuente OSINT: raw.githubusercontent.com→ Fuente OSINT: researchcenter.paloaltonetworks.com→ Fuente OSINT: www.symantec.com → Buscar apt-quasar en APTTrail → Repositorio APTTrail → Buscar en Google News → Analizar en VirusTotal → Feed RSS del blog
← Volver al panel de inteligencia

Incidentes recientes