APTTrail: APT GORGON indicators and references

Fecha
18 Jun 2026
Actor
apt-gorgon
Tipo
Ioc
Pais
United States
Sector
-
Confianza
high
100
Prioridad analitica
Alta

Basado en actor, pais, IOCs, TTPs, filtracion y calidad de contexto.

30IOCs
0TTPs
apt-gorgonActor
United StatesPais
Executive Summary
APTTrail mantiene indicadores publicos asociados a APT GORGON. Aliases observados: APT GORGON. Conteo por tipo: domain: 44, file_path: 2, ipv4: 1.

Key Points

  • https://app.any.run/tasks/bb1279af-7fff-4b37-8439-7b303f113082/
  • https://app.any.run/tasks/c32b295c-08f4-4337-8f7f-378ba7f9e02b/
  • https://github.com/StrangerealIntel/CyberThreatIntel/blob/master/Pakistan/APT/Gorgon/23-08-19/Malware%20analysis%2025-08-19.md
  • https://github.com/pan-unit42/iocs/blob/master/gorgon/domains.txt
  • https://otx.alienvault.com/pulse/5d1b49a55c01f486b6ff8cf2

Resumen APTTrail

APTTrail mantiene indicadores publicos asociados a APT GORGON. Aliases observados: APT GORGON. Conteo por tipo: domain: 44, file_path: 2, ipv4: 1.

Indicadores de Compromiso (IOCs)

TipoValorContexto
Domain0-day.usAPTTrail
Domain1688jtn.comAPTTrail
Domain41230077.netAPTTrail
Domain6474sss.comAPTTrail
Domainacorn-paper.comAPTTrail
Domainasaigoldenrice.comAPTTrail
Domainasdiamecwecw8cew.blogspot.comAPTTrail
Domainbjm9.blogspot.comAPTTrail
Domainbrevini-france.cfAPTTrail
Domainbuydildoonline.blogspot.comAPTTrail
Domainbylgay.hopto.orgAPTTrail
Domaindiamondfoxpanel.mlAPTTrail
Domaindixis.bounceme.netAPTTrail
Domaindownloads.blogsyte.comAPTTrail
Domainemawattttson.blogspot.comAPTTrail
Domainfast-cargo.comAPTTrail
Domaingritodopovo.com.brAPTTrail
Domaingrupomsi.comAPTTrail
Domainguelphupholstery.comAPTTrail
Domainhongmenwenhua.comAPTTrail
Domainichoubyou.netAPTTrail
Domainklapki.onlineAPTTrail
Domainmicrosoftoutlook.duckdns.orgAPTTrail
Domainmiganshumarataa.blogspot.comAPTTrail
Domainocha-gidi.xyzAPTTrail
Domainonedrivenet.xyzAPTTrail
Domainpanelonetwothree.gaAPTTrail
Domainpanelonetwothree.mlAPTTrail
Domainqp0o1j3-dmv4kwncw8e.winAPTTrail
Domainsecurebotnetpanel.tkAPTTrail

Referencias

Diamond Model

Adversary
apt-gorgon
Ver perfil →
Victim
APTTrail: APT GORGON indicators and references
United States
Capability
Ioc
Infrastructure
0-day.us
1688jtn.com
41230077.net
6474sss.com

Indicadores de Compromiso (IOCs)

TipoValorContextoOSINT
Domain 0-day.us APTTrail VT OffSec SOCRadar
Domain 1688jtn.com APTTrail VT OffSec SOCRadar
Domain 41230077.net APTTrail VT OffSec SOCRadar
Domain 6474sss.com APTTrail VT OffSec SOCRadar
Domain acorn-paper.com APTTrail VT OffSec SOCRadar
Domain asaigoldenrice.com APTTrail VT OffSec SOCRadar
Domain asdiamecwecw8cew.blogspot.com APTTrail VT OffSec SOCRadar
Domain bjm9.blogspot.com APTTrail VT OffSec SOCRadar
Domain brevini-france.cf APTTrail VT OffSec SOCRadar
Domain buydildoonline.blogspot.com APTTrail VT OffSec SOCRadar
Domain bylgay.hopto.org APTTrail VT OffSec SOCRadar
Domain diamondfoxpanel.ml APTTrail VT OffSec SOCRadar
Domain dixis.bounceme.net APTTrail VT OffSec SOCRadar
Domain downloads.blogsyte.com APTTrail VT OffSec SOCRadar
Domain emawattttson.blogspot.com APTTrail VT OffSec SOCRadar
Domain fast-cargo.com APTTrail VT OffSec SOCRadar
Domain gritodopovo.com.br APTTrail VT OffSec SOCRadar
Domain grupomsi.com APTTrail VT OffSec SOCRadar
Domain guelphupholstery.com APTTrail VT OffSec SOCRadar
Domain hongmenwenhua.com APTTrail VT OffSec SOCRadar
Domain ichoubyou.net APTTrail VT OffSec SOCRadar
Domain klapki.online APTTrail VT OffSec SOCRadar
Domain microsoftoutlook.duckdns.org APTTrail VT OffSec SOCRadar
Domain miganshumarataa.blogspot.com APTTrail VT OffSec SOCRadar
Domain ocha-gidi.xyz APTTrail VT OffSec SOCRadar
Domain onedrivenet.xyz APTTrail VT OffSec SOCRadar
Domain panelonetwothree.ga APTTrail VT OffSec SOCRadar
Domain panelonetwothree.ml APTTrail VT OffSec SOCRadar
Domain qp0o1j3-dmv4kwncw8e.win APTTrail VT OffSec SOCRadar
Domain securebotnetpanel.tk APTTrail VT OffSec SOCRadar

Referencias y enlaces

→ Perfil del actor apt-gorgon en el blog → Ver apt-gorgon en IntelTracker → URL IntelTracker: app.any.run→ URL IntelTracker: app.any.run→ URL IntelTracker: github.com→ URL IntelTracker: github.com→ URL IntelTracker: otx.alienvault.com→ URL IntelTracker: otx.alienvault.com → Fuente OSINT: github.com→ Fuente OSINT: raw.githubusercontent.com→ Fuente OSINT: app.any.run→ Fuente OSINT: app.any.run→ Fuente OSINT: github.com→ Fuente OSINT: github.com → Buscar apt-gorgon en APTTrail → Repositorio APTTrail → Mas incidentes en United States → Buscar en Google News → Analizar en VirusTotal → Feed RSS del blog
← Volver al panel de inteligencia

Incidentes recientes