Resumen APTTrail
APTTrail mantiene indicadores publicos asociados a APT BLACKGEAR. Aliases observados: APT BLACKGEAR. Conteo por tipo: domain: 121.
Indicadores de Compromiso (IOCs)
| Tipo | Valor | Contexto |
|---|---|---|
| Domain | abcdns.bounceme.net | APTTrail |
| Domain | abcpees.webhop.net | APTTrail |
| Domain | ancelon.webhop.net | APTTrail |
| Domain | anitacxb.servebbs.com | APTTrail |
| Domain | bi-apple.net | APTTrail |
| Domain | bitdefender.minidns.net | APTTrail |
| Domain | ccc.th-fish.com | APTTrail |
| Domain | ccuugo.8866.org | APTTrail |
| Domain | checkerror.obama20009.com | APTTrail |
| Domain | cheng.pc-officer.com | APTTrail |
| Domain | cometocome.8866.org | APTTrail |
| Domain | computerupdate.servegame.com | APTTrail |
| Domain | cooperlzh.liondrive.com | APTTrail |
| Domain | d1c2f3.3322.org | APTTrail |
| Domain | data.lovequintet.com | APTTrail |
| Domain | divineart.dyndns.org | APTTrail |
| Domain | domain.uyghuri.com | APTTrail |
| Domain | enterdia.zyns.com | APTTrail |
| Domain | erbilin.blogdns.com | APTTrail |
| Domain | feng.pc-officer.com | APTTrail |
| Domain | fifaoopp.webhop.net | APTTrail |
| Domain | fisu.rr.nu | APTTrail |
| Domain | gmail.servebbs.com | APTTrail |
| Domain | goodhope.no-ip.org | APTTrail |
| Domain | googleads.serveftp.com | APTTrail |
| Domain | handinhand.blogdns.org | APTTrail |
| Domain | harris.3322.org | APTTrail |
| Domain | hinetrouter.serveftp.org | APTTrail |
| Domain | hongzong.xicp.net | APTTrail |
| Domain | hzcj.8866.org | APTTrail |
Referencias
- https://documents.trendmicro.com/assets/appendix-blackgear-cyberespionage-campaign-resurfaces-abuses-social-media-for-c&c-communication.pdf
- https://malpedia.caad.fkie.fraunhofer.de/actor/blackgear
- https://www.virustotal.com/gui/file/42ee9dd43ea0f2766f1419733d238346603474106157ccabff8eff574c13941a/detection