APTTrail: APT DESERTFALCON indicators and references

Fecha
18 Jun 2026
Actor
apt-desertfalcon
Tipo
Ioc
Pais
Unknown
Sector
-
Confianza
high
100
Prioridad analitica
Alta

Basado en actor, pais, IOCs, TTPs, filtracion y calidad de contexto.

26IOCs
0TTPs
apt-desertfalconActor
UnknownPais
Executive Summary
APTTrail mantiene indicadores publicos asociados a APT DESERTFALCON. Aliases observados: APT DESERTFALCON. Conteo por tipo: domain: 23.

Key Points

  • http://www.trendmicro.com/cloud-content/us/pdfs/security-intelligence/white-papers/wp-operation-arid-viper.pdf
  • https://securelist.com/files/2015/02/The-Desert-Falcons-targeted-attacks.pdf

Resumen APTTrail

APTTrail mantiene indicadores publicos asociados a APT DESERTFALCON. Aliases observados: APT DESERTFALCON. Conteo por tipo: domain: 23.

Indicadores de Compromiso (IOCs)

TipoValorContexto
Domainabuhmaid.netAPTTrail
Domainadvtravel.infoAPTTrail
Domainahmedfaiez.infoAPTTrail
Domainandrocity.comAPTTrail
Domainblogging-host.infoAPTTrail
Domainfacebook-emoticons.bitblogoo.comAPTTrail
Domainflushupate.comAPTTrail
Domainflushupdate.comAPTTrail
Domainfpupdate.infoAPTTrail
Domainineltdriver.comAPTTrail
Domainineltdriver.infoAPTTrail
Domainiwork-sys.comAPTTrail
Domainlinkedim.inAPTTrail
Domainlinksis.infoAPTTrail
Domainliptona.netAPTTrail
Domainmediahitech.comAPTTrail
Domainmediahitech.infoAPTTrail
Domainmixedwork.comAPTTrail
Domainnauss-lab.comAPTTrail
Domainnice-mobiles.comAPTTrail
Domainplmedgroup.comAPTTrail
Domainpstcmedia.comAPTTrail
Domaintvgate.rocksAPTTrail

Referencias

Diamond Model

Adversary
apt-desertfalcon
Ver perfil →
Victim
APTTrail: APT DESERTFALCON indicators and references
Capability
Ioc
Infrastructure
abuhmaid.net
advtravel.info
ahmedfaiez.info
androcity.com

Indicadores de Compromiso (IOCs)

TipoValorContextoOSINT
Domain abuhmaid.net APTTrail VT OffSec SOCRadar
Domain advtravel.info APTTrail VT OffSec SOCRadar
Domain ahmedfaiez.info APTTrail VT OffSec SOCRadar
Domain androcity.com APTTrail VT OffSec SOCRadar
Domain blogging-host.info APTTrail VT OffSec SOCRadar
Domain facebook-emoticons.bitblogoo.com APTTrail VT OffSec SOCRadar
Domain flushupate.com APTTrail VT OffSec SOCRadar
Domain flushupdate.com APTTrail VT OffSec SOCRadar
Domain fpupdate.info APTTrail VT OffSec SOCRadar
Domain ineltdriver.com APTTrail VT OffSec SOCRadar
Domain ineltdriver.info APTTrail VT OffSec SOCRadar
Domain iwork-sys.com APTTrail VT OffSec SOCRadar
Domain linkedim.in APTTrail VT OffSec SOCRadar
Domain linksis.info APTTrail VT OffSec SOCRadar
Domain liptona.net APTTrail VT OffSec SOCRadar
Domain mediahitech.com APTTrail VT OffSec SOCRadar
Domain mediahitech.info APTTrail VT OffSec SOCRadar
Domain mixedwork.com APTTrail VT OffSec SOCRadar
Domain nauss-lab.com APTTrail VT OffSec SOCRadar
Domain nice-mobiles.com APTTrail VT OffSec SOCRadar
Domain plmedgroup.com APTTrail VT OffSec SOCRadar
Domain pstcmedia.com APTTrail VT OffSec SOCRadar
Domain tvgate.rocks APTTrail VT OffSec SOCRadar
File The-Desert-Falcons-targeted-attacks.pdf Artefacto observado VT OffSec SOCRadar
Domain www.trendmicro.com Extraido del contenido VT OffSec SOCRadar
Domain securelist.com Extraido del contenido VT OffSec SOCRadar

Referencias y enlaces

→ Perfil del actor apt-desertfalcon en el blog → Ver apt-desertfalcon en IntelTracker → URL IntelTracker: www.trendmicro.com→ URL IntelTracker: securelist.com → Fuente OSINT: github.com→ Fuente OSINT: raw.githubusercontent.com→ Fuente OSINT: www.trendmicro.com→ Fuente OSINT: securelist.com → Buscar apt-desertfalcon en APTTrail → Repositorio APTTrail → Buscar en Google News → Analizar en VirusTotal → Feed RSS del blog
← Volver al panel de inteligencia

Incidentes recientes