Resumen APTTrail
APTTrail mantiene indicadores publicos asociados a AirdViper. Aliases observados: AirdViper, apt-c-23, apt23, micropsia, pierogi. Conteo por tipo: domain: 570, file_path: 7, ipv4: 7, url: 1.
Indicadores de Compromiso (IOCs)
| Tipo | Valor | Contexto |
|---|---|---|
| Domain | 1jve.com | APTTrail |
| Domain | 9oo91e.co | APTTrail |
| Domain | aamir-khan.site | APTTrail |
| Domain | accaunts-googlc.com | APTTrail |
| Domain | account-gocgle.com | APTTrail |
| Domain | account-googlc.com | APTTrail |
| Domain | accountforuser.website | APTTrail |
| Domain | accountforusers.website | APTTrail |
| Domain | accounts-gocgle.com | APTTrail |
| Domain | accounts-goog-le.com | APTTrail |
| Domain | accounts-googlc.com | APTTrail |
| Domain | accountusers.website | APTTrail |
| Domain | accuant-googlc.com | APTTrail |
| Domain | acount-manager.com | APTTrail |
| Domain | acount-manager.info | APTTrail |
| Domain | acount-manager.net | APTTrail |
| Domain | acount-manager.org | APTTrail |
| Domain | activedardash.club | APTTrail |
| Domain | adamnews.for.ug | APTTrail |
| Domain | advanced-files.club | APTTrail |
| Domain | ahnlabin.com | APTTrail |
| Domain | akashipro.com | APTTrail |
| Domain | al-amalhumandevelopment.com | APTTrail |
| Domain | alain.ps | APTTrail |
| Domain | alishatnixon.site | APTTrail |
| Domain | alisonparker.club | APTTrail |
| Domain | alttaeb.info | APTTrail |
| Domain | amanda-hart.website | APTTrail |
| Domain | amyacunningham.us | APTTrail |
| Domain | android-settings.info | APTTrail |
Referencias
- https://about.fb.com/news/2021/04/taking-action-against-hackers-in-palestine/
- https://about.fb.com/wp-content/uploads/2021/04/Technical-threat-report-Arid-Viper-April-2021.pdf
- https://analyze.intezer.com/files/e32dcca3d5771823c83d017d30ed49dc05428f1024f8a619b50ffa8c4a7b4688
- https://blog.google/technology/safety-security/tool-of-first-resort-israel-hamas-war-in-cyber/
- https://blog.radware.com/security/2018/07/micropsia-malware/
- https://content.connect.symantec.com/sites/default/files/2018-08/APT-C-23%20IOCs.pdf (Appendix)
- https://docs.google.com/document/d/1oYX3uN6KxIX_StzTH0s0yFNNoHDnV8VgmVqU5WoeErc (2018-07-27: APT-C-23 Infrastructure and Micropsia samples)
- https://github.com/google/threat-team/blob/main/2024/2024-02-14-tool-of-first-resort-israel-hamas-war-cyber/indicators.csv
- https://github.com/ti-research-io/ti/blob/main/ioc_extender/ET_APT-C-23_MICROPSIA_Variant.json
- https://news.sophos.com/en-us/2021/11/23/android-apt-spyware-targeting-middle-east-victims-improves-its-capabilities/
- https://news.sophos.com/en-us/2021/11/23/android-apt-spyware-targeting-middle-east-victims-improves-its-capabilities/
- https://otx.alienvault.com/pulse/5db3616a90ebed5e230cb2d5