APTTrail: UAC-0008 indicators and references

Fecha
18 Jun 2026
Actor
uac-0008
Tipo
Ioc
Pais
Unknown
Sector
-
Confianza
high
100
Prioridad analitica
Alta

Basado en actor, pais, IOCs, TTPs, filtracion y calidad de contexto.

30IOCs
0TTPs
uac-0008Actor
UnknownPais
Executive Summary
APTTrail mantiene indicadores publicos asociados a UAC-0008. Aliases observados: UAC-0008. Conteo por tipo: domain: 24, file_path: 4, url: 1.

Key Points

  • https://cert.gov.ua/article/37246
  • https://otx.alienvault.com/pulse/5cf6846544f75bf827720cb4
  • https://otx.alienvault.com/pulse/5d270b29fccc021c80764db4
  • https://securelist.ru/buhtrap-strikes-again/90980/
  • https://securelist.ru/news-buhtrap/89540/

Resumen APTTrail

APTTrail mantiene indicadores publicos asociados a UAC-0008. Aliases observados: UAC-0008. Conteo por tipo: domain: 24, file_path: 4, url: 1.

Indicadores de Compromiso (IOCs)

TipoValorContexto
Domainallwomens.euAPTTrail
Domainalt-2cdn.netAPTTrail
Domainavidium.ru.comAPTTrail
Domaincorp-microsoft.comAPTTrail
Domaincs1.wpc-v0cdn.orgAPTTrail
Domainedinstvennaya.euAPTTrail
Domainhdfilm-seyret.comAPTTrail
Domainipv6-microsoft.orgAPTTrail
Domainipv6-wpnc.netAPTTrail
Domainkhabmama.euAPTTrail
Domainmail.nais-gov.orgAPTTrail
Domainnais-gov.comAPTTrail
Domainnais-gov.orgAPTTrail
Domainns2-dns.comAPTTrail
Domainns3-dns.comAPTTrail
Domainredmond.corp-microsoft.comAPTTrail
Domainsecure-telemetry.netAPTTrail
Domainservices-glbdns2.comAPTTrail
Domainshkolazhizni.euAPTTrail
Domainsibmama.euAPTTrail
Domainslingshop.ru.comAPTTrail
Domainwidget.forum-pokemon.comAPTTrail
Domainwpc-v0cdn.orgAPTTrail
Domainzhenskoe-mnenie.euAPTTrail
FILE_PATH/g_38472341.phpAPTTrail
FILE_PATHengde.fr/community/viewforum.phpAPTTrail
FILE_PATHfocus.tula.su/viewforum.phpAPTTrail
FILE_PATHtopic.penza.su/viewtopic.phpAPTTrail
URLhttp://195.123.227.99APTTrail

Referencias

Diamond Model

Adversary
uac-0008
Ver perfil →
Victim
APTTrail: UAC-0008 indicators and references
Capability
Ioc
Infrastructure
allwomens.eu
alt-2cdn.net
avidium.ru.com
corp-microsoft.com

Indicadores de Compromiso (IOCs)

TipoValorContextoOSINT
Domain allwomens.eu APTTrail VT OffSec SOCRadar
Domain alt-2cdn.net APTTrail VT OffSec SOCRadar
Domain avidium.ru.com APTTrail VT OffSec SOCRadar
Domain corp-microsoft.com APTTrail VT OffSec SOCRadar
Domain cs1.wpc-v0cdn.org APTTrail VT OffSec SOCRadar
Domain edinstvennaya.eu APTTrail VT OffSec SOCRadar
Domain hdfilm-seyret.com APTTrail VT OffSec SOCRadar
Domain ipv6-microsoft.org APTTrail VT OffSec SOCRadar
Domain ipv6-wpnc.net APTTrail VT OffSec SOCRadar
Domain khabmama.eu APTTrail VT OffSec SOCRadar
Domain mail.nais-gov.org APTTrail VT OffSec SOCRadar
Domain nais-gov.com APTTrail VT OffSec SOCRadar
Domain nais-gov.org APTTrail VT OffSec SOCRadar
Domain ns2-dns.com APTTrail VT OffSec SOCRadar
Domain ns3-dns.com APTTrail VT OffSec SOCRadar
Domain redmond.corp-microsoft.com APTTrail VT OffSec SOCRadar
Domain secure-telemetry.net APTTrail VT OffSec SOCRadar
Domain services-glbdns2.com APTTrail VT OffSec SOCRadar
Domain shkolazhizni.eu APTTrail VT OffSec SOCRadar
Domain sibmama.eu APTTrail VT OffSec SOCRadar
Domain slingshop.ru.com APTTrail VT OffSec SOCRadar
Domain widget.forum-pokemon.com APTTrail VT OffSec SOCRadar
Domain wpc-v0cdn.org APTTrail VT OffSec SOCRadar
Domain zhenskoe-mnenie.eu APTTrail VT OffSec SOCRadar
FILE_PATH /g_38472341.php APTTrail VT OffSec SOCRadar
FILE_PATH engde.fr/community/viewforum.php APTTrail VT OffSec SOCRadar
FILE_PATH focus.tula.su/viewforum.php APTTrail VT OffSec SOCRadar
FILE_PATH topic.penza.su/viewtopic.php APTTrail VT OffSec SOCRadar
URL http://195.123.227.99 APTTrail VT OffSec SOCRadar
Domain cert.gov.ua Extraido del contenido VT OffSec SOCRadar

Referencias y enlaces

→ Perfil del actor uac-0008 en el blog → Ver uac-0008 en IntelTracker → URL IntelTracker: cert.gov.ua→ URL IntelTracker: otx.alienvault.com→ URL IntelTracker: otx.alienvault.com→ URL IntelTracker: securelist.ru→ URL IntelTracker: securelist.ru→ URL IntelTracker: twitter.com → Fuente OSINT: github.com→ Fuente OSINT: raw.githubusercontent.com→ Fuente OSINT: cert.gov.ua→ Fuente OSINT: otx.alienvault.com→ Fuente OSINT: otx.alienvault.com→ Fuente OSINT: securelist.ru → Buscar uac-0008 en APTTrail → Repositorio APTTrail → Buscar en Google News → Analizar en VirusTotal → Feed RSS del blog
← Volver al panel de inteligencia

Incidentes recientes