APTTrail: SPECTR indicators and references

Fecha
18 Jun 2026
Actor
spectr
Tipo
Ioc
Pais
United Kingdom
Sector
Tech
Confianza
high
100
Prioridad analitica
Alta

Basado en actor, pais, IOCs, TTPs, filtracion y calidad de contexto.

30IOCs
0TTPs
spectrActor
United KingdomPais
Executive Summary
APTTrail mantiene indicadores publicos asociados a SPECTR. Aliases observados: SPECTR, Vermin, firmachagent. Conteo por tipo: domain: 27, url: 5.

Key Points

  • https://cert.gov.ua/article/37815 (Ukrainian)
  • https://cert.gov.ua/article/6280422
  • https://malpedia.caad.fkie.fraunhofer.de/details/win.vermin
  • https://www.virustotal.com/gui/file/076edddf05a35a150d4e973eca9e7acd6249abca54f2d12ca05f0464aaca37e6/detection
  • https://www.virustotal.com/gui/file/250f49264ff06c39f2222d4d7e73685ad39e72effe806341ccbe73d1fc759743/detection

Resumen APTTrail

APTTrail mantiene indicadores publicos asociados a SPECTR. Aliases observados: SPECTR, Vermin, firmachagent. Conteo por tipo: domain: 27, url: 5.

Indicadores de Compromiso (IOCs)

TipoValorContexto
Domainaeroua.onlineAPTTrail
Domainakamaicdn.ruAPTTrail
Domainakamainet021.infoAPTTrail
Domainakamainet022.infoAPTTrail
Domainakamainet023.infoAPTTrail
Domainakamainet024.infoAPTTrail
Domainakamainet066.infoAPTTrail
Domainakamainet067.infoAPTTrail
Domainaviasys.somee.comAPTTrail
Domaincdnakamai.ruAPTTrail
Domaincode.ukraero.spaceAPTTrail
Domainfirma.ukraero.spaceAPTTrail
Domaingetmod.hostAPTTrail
Domaingw.telegrarn.funAPTTrail
Domainmail.ukraero.spaceAPTTrail
Domainmailukr.netAPTTrail
Domainmeteolink.hostAPTTrail
Domainnetbin.hostAPTTrail
Domainnotifymail.ruAPTTrail
Domainprozorro.onlineAPTTrail
Domainstormpredictor.hostAPTTrail
Domainsyncapp.hostAPTTrail
Domaintech-adobe.dyndns.bizAPTTrail
Domaintelegrarn.funAPTTrail
Domainukr.somee.comAPTTrail
Domainukraero.spaceAPTTrail
Domainwindowsupdate.kiev.uaAPTTrail
URLhttp://171.22.120.50APTTrail
URLhttp://176.119.2.194APTTrail
URLhttp://176.119.2.195APTTrail

Referencias

Diamond Model

Adversary
spectr
Ver perfil →
Victim
APTTrail: SPECTR indicators and references
United Kingdom
Capability
Ioc
Infrastructure
aeroua.online
akamaicdn.ru
akamainet021.info
akamainet022.info

Indicadores de Compromiso (IOCs)

TipoValorContextoOSINT
Domain aeroua.online APTTrail VT OffSec SOCRadar
Domain akamaicdn.ru APTTrail VT OffSec SOCRadar
Domain akamainet021.info APTTrail VT OffSec SOCRadar
Domain akamainet022.info APTTrail VT OffSec SOCRadar
Domain akamainet023.info APTTrail VT OffSec SOCRadar
Domain akamainet024.info APTTrail VT OffSec SOCRadar
Domain akamainet066.info APTTrail VT OffSec SOCRadar
Domain akamainet067.info APTTrail VT OffSec SOCRadar
Domain aviasys.somee.com APTTrail VT OffSec SOCRadar
Domain cdnakamai.ru APTTrail VT OffSec SOCRadar
Domain code.ukraero.space APTTrail VT OffSec SOCRadar
Domain firma.ukraero.space APTTrail VT OffSec SOCRadar
Domain getmod.host APTTrail VT OffSec SOCRadar
Domain gw.telegrarn.fun APTTrail VT OffSec SOCRadar
Domain mail.ukraero.space APTTrail VT OffSec SOCRadar
Domain mailukr.net APTTrail VT OffSec SOCRadar
Domain meteolink.host APTTrail VT OffSec SOCRadar
Domain netbin.host APTTrail VT OffSec SOCRadar
Domain notifymail.ru APTTrail VT OffSec SOCRadar
Domain prozorro.online APTTrail VT OffSec SOCRadar
Domain stormpredictor.host APTTrail VT OffSec SOCRadar
Domain syncapp.host APTTrail VT OffSec SOCRadar
Domain tech-adobe.dyndns.biz APTTrail VT OffSec SOCRadar
Domain telegrarn.fun APTTrail VT OffSec SOCRadar
Domain ukr.somee.com APTTrail VT OffSec SOCRadar
Domain ukraero.space APTTrail VT OffSec SOCRadar
Domain windowsupdate.kiev.ua APTTrail VT OffSec SOCRadar
URL http://171.22.120.50 APTTrail VT OffSec SOCRadar
URL http://176.119.2.194 APTTrail VT OffSec SOCRadar
URL http://176.119.2.195 APTTrail VT OffSec SOCRadar

Referencias y enlaces

→ Perfil del actor spectr en el blog → Ver spectr en IntelTracker → URL IntelTracker: cert.gov.ua→ URL IntelTracker: cert.gov.ua→ URL IntelTracker: malpedia.caad.fkie.fraunhofer.de→ URL IntelTracker: www.virustotal.com→ URL IntelTracker: www.virustotal.com→ URL IntelTracker: www.virustotal.com → Fuente OSINT: github.com→ Fuente OSINT: raw.githubusercontent.com→ Fuente OSINT: cert.gov.ua→ Fuente OSINT: cert.gov.ua→ Fuente OSINT: malpedia.caad.fkie.fraunhofer.de→ Fuente OSINT: www.virustotal.com → Buscar spectr en APTTrail → Repositorio APTTrail → Mas incidentes en United Kingdom → Buscar en Google News → Analizar en VirusTotal → Feed RSS del blog
← Volver al panel de inteligencia

Incidentes recientes