Resumen APTTrail
APTTrail mantiene indicadores publicos asociados a APT29. Aliases observados: APT29, CloudDuke, CosmicDuke, Cozy Bear, CozyDuke, GeminiDuke, HammerDuke, Midnight Blizzard, MiniDuke, OnionDuke, PinchDuke, SeaDuke. Conteo por tipo: domain: 741, file_path: 23, ipv4: 9, url: 71.
Indicadores de Compromiso (IOCs)
| Tipo | Valor | Contexto |
|---|---|---|
| Domain | 1597ebba.info.gtjas.site | APTTrail |
| Domain | 3bcc1bba.info.gtjas.site | APTTrail |
| Domain | 4freerussia.cloud | APTTrail |
| Domain | 74d6b7b2.app.giftbox4u.com | APTTrail |
| Domain | 7c291bbe.info.gtjas.site | APTTrail |
| Domain | acciaio.com.br | APTTrail |
| Domain | accounts-google.online | APTTrail |
| Domain | actualcombine.com | APTTrail |
| Domain | adm.govua.cloud | APTTrail |
| Domain | admin-ch.cloud | APTTrail |
| Domain | aeinc.solutions | APTTrail |
| Domain | ahmed-ms.online | APTTrail |
| Domain | airtravelabroad.com | APTTrail |
| Domain | aka-ms.cloud | APTTrail |
| Domain | albrightstonebridge.cloud | APTTrail |
| Domain | amazonmeeting.cloud | APTTrail |
| Domain | amazonsolutions.cloud | APTTrail |
| Domain | americanprogress.cloud | APTTrail |
| Domain | ap-northeast-1-aws.s3-ua.cloud | APTTrail |
| Domain | ap-northeast-1-aws.ukrainesec.cloud | APTTrail |
| Domain | aspeninstitute.cloud | APTTrail |
| Domain | asucloud.us | APTTrail |
| Domain | avis-google.online | APTTrail |
| Domain | aws-app.online | APTTrail |
| Domain | aws-atshop.online | APTTrail |
| Domain | aws-cert.online | APTTrail |
| Domain | aws-cloud.online | APTTrail |
| Domain | aws-cloud.tech | APTTrail |
| Domain | aws-data.cloud | APTTrail |
| Domain | aws-devops.site | APTTrail |
Referencias
- https://app.validin.com/detail?find=151.236.16.138&type=ip4&ref_id=7e3792beeb8#tab=resolutions
- https://app.validin.com/detail?find=151.236.16.149&type=ip4&ref_id=d53e5a59923#tab=resolutions
- https://app.validin.com/detail?find=151.236.16.193&type=ip4&ref_id=d53e5a59923#tab=resolutions
- https://app.validin.com/detail?find=151.236.16.22&type=ip4&ref_id=9a0b40a1dad#tab=resolutions
- https://app.validin.com/detail?find=151.236.16.220&type=ip4&ref_id=d53e5a59923#tab=resolutions
- https://app.validin.com/detail?find=151.236.16.236&type=ip4&ref_id=d53e5a59923#tab=resolutions
- https://app.validin.com/detail?find=151.236.16.245&type=ip4&ref_id=d53e5a59923#tab=resolutions
- https://app.validin.com/detail?find=174.122.28.185&type=ip4&ref_id=d394fab0bcd#tab=resolutions
- https://app.validin.com/detail?find=185.243.99.17&type=ip4&ref_id=27436e81e5c#tab=resolutions
- https://app.validin.com/detail?find=185.76.79.0%2F24&type=ip&ref_id=f1bfad41f10#tab=resolutions
- https://app.validin.com/detail?find=185.76.79.49&type=ip4&ref_id=b0d4a3c06eb#tab=resolutions
- https://app.validin.com/detail?find=3.85.194.174&type=ip4&ref_id=2d521bb95dc#tab=resolutions