APTTrail: Dark Basin indicators and references

Fecha
18 Jun 2026
Actor
dark-basin
Tipo
Ioc
Pais
Russia
Sector
-
Confianza
high
100
Prioridad analitica
Alta

Basado en actor, pais, IOCs, TTPs, filtracion y calidad de contexto.

30IOCs
0TTPs
dark-basinActor
RussiaPais
Executive Summary
APTTrail mantiene indicadores publicos asociados a Dark Basin. Aliases observados: Dark Basin. Conteo por tipo: domain: 462.

Key Points

  • https://citizenlab.ca/2020/06/dark-basin-uncovering-a-massive-hack-for-hire-operation/
  • https://github.com/nortonlifelock/indicators/blob/master/mercenary.amanda.txt
  • https://www.nortonlifelock.com/blogs/security-response/mercenary-amanda-professional-hackers-hire

Resumen APTTrail

APTTrail mantiene indicadores publicos asociados a Dark Basin. Aliases observados: Dark Basin. Conteo por tipo: domain: 462.

Indicadores de Compromiso (IOCs)

TipoValorContexto
Domain2mblk.comAPTTrail
Domain4mblk.comAPTTrail
Domainablyazovangels.comAPTTrail
Domainablyazovcog.comAPTTrail
Domainablyazovcrimestory.comAPTTrail
Domainablyazovcrimesyndicate.comAPTTrail
Domainablyazovcriminalgang.comAPTTrail
Domainablyazovcriminals.comAPTTrail
Domainablyazovgang.comAPTTrail
Domainablyazovmafia.comAPTTrail
Domainablyazovorganisedcrime.comAPTTrail
Domainaffiliatedomainservice.comAPTTrail
Domainaffliatedomainservice.comAPTTrail
Domainallaboutiot.websiteAPTTrail
Domainanitmationworldnews.comAPTTrail
Domainanothershortnr.comAPTTrail
Domainaplsrvrer.comAPTTrail
Domainassuredreturnplan.comAPTTrail
Domainauditionregistrationonline.comAPTTrail
Domainbackwaterreservoir.comAPTTrail
Domainbasemailservice.comAPTTrail
Domainbaseserveremailbg.comAPTTrail
Domainbasichostingrussia.comAPTTrail
Domainbasichostnetservice.comAPTTrail
Domainbasicmyoffshore.comAPTTrail
Domainbasicruoffshore.comAPTTrail
Domainbasicservicehk.comAPTTrail
Domainbasicservicelux.comAPTTrail
Domainbasicservicemy.comAPTTrail
Domainbasicservicerus.comAPTTrail

Referencias

Diamond Model

Adversary
dark-basin
Ver perfil →
Victim
APTTrail: Dark Basin indicators and references
Russia
Capability
Ioc
Filtracion: 2 MB
Infrastructure
2mblk.com
4mblk.com
ablyazovangels.com
ablyazovcog.com

Indicadores de Compromiso (IOCs)

TipoValorContextoOSINT
Domain 2mblk.com APTTrail VT OffSec SOCRadar
Domain 4mblk.com APTTrail VT OffSec SOCRadar
Domain ablyazovangels.com APTTrail VT OffSec SOCRadar
Domain ablyazovcog.com APTTrail VT OffSec SOCRadar
Domain ablyazovcrimestory.com APTTrail VT OffSec SOCRadar
Domain ablyazovcrimesyndicate.com APTTrail VT OffSec SOCRadar
Domain ablyazovcriminalgang.com APTTrail VT OffSec SOCRadar
Domain ablyazovcriminals.com APTTrail VT OffSec SOCRadar
Domain ablyazovgang.com APTTrail VT OffSec SOCRadar
Domain ablyazovmafia.com APTTrail VT OffSec SOCRadar
Domain ablyazovorganisedcrime.com APTTrail VT OffSec SOCRadar
Domain affiliatedomainservice.com APTTrail VT OffSec SOCRadar
Domain affliatedomainservice.com APTTrail VT OffSec SOCRadar
Domain allaboutiot.website APTTrail VT OffSec SOCRadar
Domain anitmationworldnews.com APTTrail VT OffSec SOCRadar
Domain anothershortnr.com APTTrail VT OffSec SOCRadar
Domain aplsrvrer.com APTTrail VT OffSec SOCRadar
Domain assuredreturnplan.com APTTrail VT OffSec SOCRadar
Domain auditionregistrationonline.com APTTrail VT OffSec SOCRadar
Domain backwaterreservoir.com APTTrail VT OffSec SOCRadar
Domain basemailservice.com APTTrail VT OffSec SOCRadar
Domain baseserveremailbg.com APTTrail VT OffSec SOCRadar
Domain basichostingrussia.com APTTrail VT OffSec SOCRadar
Domain basichostnetservice.com APTTrail VT OffSec SOCRadar
Domain basicmyoffshore.com APTTrail VT OffSec SOCRadar
Domain basicruoffshore.com APTTrail VT OffSec SOCRadar
Domain basicservicehk.com APTTrail VT OffSec SOCRadar
Domain basicservicelux.com APTTrail VT OffSec SOCRadar
Domain basicservicemy.com APTTrail VT OffSec SOCRadar
Domain basicservicerus.com APTTrail VT OffSec SOCRadar

Referencias y enlaces

→ Perfil del actor dark-basin en el blog → Ver dark-basin en IntelTracker → URL IntelTracker: citizenlab.ca→ URL IntelTracker: github.com→ URL IntelTracker: www.nortonlifelock.com → Fuente OSINT: github.com→ Fuente OSINT: raw.githubusercontent.com→ Fuente OSINT: citizenlab.ca→ Fuente OSINT: github.com→ Fuente OSINT: www.nortonlifelock.com → Buscar dark-basin en APTTrail → Repositorio APTTrail → Mas incidentes en Russia → Buscar en Google News → Analizar en VirusTotal → Feed RSS del blog
← Volver al panel de inteligencia

Incidentes recientes