APTTrail: apt-c-40 indicators and references

Fecha
18 Jun 2026
Actor
apt-c-40
Tipo
Ioc
Pais
Australia
Sector
-
Confianza
high
100
Prioridad analitica
Alta

Basado en actor, pais, IOCs, TTPs, filtracion y calidad de contexto.

30IOCs
0TTPs
apt-c-40Actor
AustraliaPais
Executive Summary
APTTrail mantiene indicadores publicos asociados a apt-c-40. Aliases observados: apt-c-40, apt40, leviathan, mudcarp, periscope. Conteo por tipo: domain: 61, file_path: 2, url: 7.

Key Points

  • https://github.com/ti-research-io/ti/blob/main/ioc_extender/ET_Gh0st_Variant.json
  • https://medium.com/@Sebdraven/apt-40-in-malaysia-61ed9c9642e9
  • https://otx.alienvault.com/pulse/5ca740c67a9dbc78fe32f9b9
  • https://otx.alienvault.com/pulse/5e3dbad21b45e958a0d9e5a6
  • https://otx.alienvault.com/pulse/5efa1262602caffb4ac35148

Resumen APTTrail

APTTrail mantiene indicadores publicos asociados a apt-c-40. Aliases observados: apt-c-40, apt40, leviathan, mudcarp, periscope. Conteo por tipo: domain: 61, file_path: 2, url: 7.

Indicadores de Compromiso (IOCs)

TipoValorContexto
Domainaccountsx.bounceme.netAPTTrail
Domainapi.dreamsbottle.comAPTTrail
Domainappexistence.comAPTTrail
Domainarmybar.hopto.orgAPTTrail
Domainaustralianmorningnews.comAPTTrail
Domainbbranchs.comAPTTrail
Domainbyfleur.myftp.orgAPTTrail
Domaincankerscarcass.comAPTTrail
Domaincapitana.onthewifi.comAPTTrail
Domaincdn.aexhausts.comAPTTrail
Domainchemscalere.comAPTTrail
Domaincm.musicandfile.comAPTTrail
Domaincnnzapmeta.comAPTTrail
Domaindexercisep.comAPTTrail
Domainduutsxlydw.comAPTTrail
Domaindynamics.ddnsking.comAPTTrail
Domaineujinonline.sytes.netAPTTrail
Domaingoo2k88yyh2.chickenkiller.comAPTTrail
Domainguardggg.comAPTTrail
Domainheraldsun.meAPTTrail
Domainiherlvufjknw.comAPTTrail
Domainimage.australianmorningnews.comAPTTrail
Domainja.iherlvufjknw.comAPTTrail
Domainkaty197.chickenkiller.comAPTTrail
Domainkulkarni.bounceme.netAPTTrail
Domainlaodailylive.comAPTTrail
Domainlaodata.networkAPTTrail
Domainlaodiplomat.comAPTTrail
Domainlaotranslations.comAPTTrail
Domainmail2.ignorelist.comAPTTrail

Referencias

Diamond Model

Adversary
apt-c-40
Ver perfil →
Victim
APTTrail: apt-c-40 indicators and references
Australia
Capability
Ioc
Infrastructure
accountsx.bounceme.net
api.dreamsbottle.com
appexistence.com
armybar.hopto.org

Indicadores de Compromiso (IOCs)

TipoValorContextoOSINT
Domain accountsx.bounceme.net APTTrail VT OffSec SOCRadar
Domain api.dreamsbottle.com APTTrail VT OffSec SOCRadar
Domain appexistence.com APTTrail VT OffSec SOCRadar
Domain armybar.hopto.org APTTrail VT OffSec SOCRadar
Domain australianmorningnews.com APTTrail VT OffSec SOCRadar
Domain bbranchs.com APTTrail VT OffSec SOCRadar
Domain byfleur.myftp.org APTTrail VT OffSec SOCRadar
Domain cankerscarcass.com APTTrail VT OffSec SOCRadar
Domain capitana.onthewifi.com APTTrail VT OffSec SOCRadar
Domain cdn.aexhausts.com APTTrail VT OffSec SOCRadar
Domain chemscalere.com APTTrail VT OffSec SOCRadar
Domain cm.musicandfile.com APTTrail VT OffSec SOCRadar
Domain cnnzapmeta.com APTTrail VT OffSec SOCRadar
Domain dexercisep.com APTTrail VT OffSec SOCRadar
Domain duutsxlydw.com APTTrail VT OffSec SOCRadar
Domain dynamics.ddnsking.com APTTrail VT OffSec SOCRadar
Domain eujinonline.sytes.net APTTrail VT OffSec SOCRadar
Domain goo2k88yyh2.chickenkiller.com APTTrail VT OffSec SOCRadar
Domain guardggg.com APTTrail VT OffSec SOCRadar
Domain heraldsun.me APTTrail VT OffSec SOCRadar
Domain iherlvufjknw.com APTTrail VT OffSec SOCRadar
Domain image.australianmorningnews.com APTTrail VT OffSec SOCRadar
Domain ja.iherlvufjknw.com APTTrail VT OffSec SOCRadar
Domain katy197.chickenkiller.com APTTrail VT OffSec SOCRadar
Domain kulkarni.bounceme.net APTTrail VT OffSec SOCRadar
Domain laodailylive.com APTTrail VT OffSec SOCRadar
Domain laodata.network APTTrail VT OffSec SOCRadar
Domain laodiplomat.com APTTrail VT OffSec SOCRadar
Domain laotranslations.com APTTrail VT OffSec SOCRadar
Domain mail2.ignorelist.com APTTrail VT OffSec SOCRadar

Referencias y enlaces

→ Perfil del actor apt-c-40 en el blog → Ver apt-c-40 en IntelTracker → URL IntelTracker: github.com→ URL IntelTracker: medium.com→ URL IntelTracker: otx.alienvault.com→ URL IntelTracker: otx.alienvault.com→ URL IntelTracker: otx.alienvault.com→ URL IntelTracker: otx.alienvault.com → Fuente OSINT: github.com→ Fuente OSINT: raw.githubusercontent.com→ Fuente OSINT: github.com→ Fuente OSINT: medium.com→ Fuente OSINT: otx.alienvault.com→ Fuente OSINT: otx.alienvault.com → Buscar apt-c-40 en APTTrail → Repositorio APTTrail → Mas incidentes en Australia → Buscar en Google News → Analizar en VirusTotal → Feed RSS del blog
← Volver al panel de inteligencia

Incidentes recientes