Resumen APTTrail
APTTrail mantiene indicadores publicos asociados a APT SPACEPIRATES. Aliases observados: APT SPACEPIRATES. Conteo por tipo: domain: 79, ipv4: 13, url: 5.
Indicadores de Compromiso (IOCs)
| Tipo | Valor | Contexto |
|---|---|---|
| Domain | 0077.x24hr.com | APTTrail |
| Domain | alex.dnset.com | APTTrail |
| Domain | amazon-corp.wikaba.com | APTTrail |
| Domain | api.microft.dynssl.com | APTTrail |
| Domain | app.hostareas.com | APTTrail |
| Domain | apple-corp.changeip.org | APTTrail |
| Domain | as.amazon-corp.wikaba.com | APTTrail |
| Domain | asd.powergame.0077.x24hr.com | APTTrail |
| Domain | bamo.ocry.com | APTTrail |
| Domain | cdnsvc.microft.dynssl.com | APTTrail |
| Domain | chdsjjkrazomg.dhcp.biz | APTTrail |
| Domain | comein.journal.itsaol.com | APTTrail |
| Domain | community.reportsearch.dynamic-dns.net | APTTrail |
| Domain | dnsinfo.microft.dynssl.com | APTTrail |
| Domain | docs.microft.dynssl.com | APTTrail |
| Domain | edge.microft.dynssl.com | APTTrail |
| Domain | elienceso.kozow.com | APTTrail |
| Domain | erdcserver.microft.dynssl.com | APTTrail |
| Domain | eset.zzux.com | APTTrail |
| Domain | exowa.microft.dynssl.com | APTTrail |
| Domain | fgjhkergvlimdfg2.wikaba.com | APTTrail |
| Domain | fileserverrt.reportsearch.dynamic-dns.net | APTTrail |
| Domain | flashplayeractivex.info | APTTrail |
| Domain | freewula.strangled.net | APTTrail |
| Domain | fssprus.dns04.com | APTTrail |
| Domain | ftp.microft.dynssl.com | APTTrail |
| Domain | gamepoer7.com | APTTrail |
| Domain | gigabitdate.com | APTTrail |
| Domain | goon.oldvideo.longmusic.com | APTTrail |
| Domain | journal.itsaol.com | APTTrail |
Referencias
- https://www.ptsecurity.com/ww-en/analytics/pt-esc-threat-intelligence/space-pirates-tools-and-connections/
- https://www.virustotal.com/gui/file/0f818f9b39c262087b3bdaca6783406e1ecf51696c4c98632095e47f713ce7ce/detection
- https://www.virustotal.com/gui/file/19b797b92b2879cde03d894e954a25c4ae2d85c9e50fa43beb2ec8458f6fef7b/detection
- https://www.virustotal.com/gui/file/45c944889a482ae2e0e0a8e260c3be737cb612c8804164badef61e8a8713b92f/detection
- https://www.virustotal.com/gui/file/4a7cf906c8cc871176d0702245953eeee5065f9651186cd8ae594e6835b8a8eb/detection
- https://www.virustotal.com/gui/file/5b4e69c19738490df9cc55dee7bfdab49eff2ef98003aced28a66cebabbf2bec/detection
- https://www.virustotal.com/gui/file/5ec2134f34f128edd61124ef6ea7a9f9c55c6ef58c610907aa87f6d9b308dca6/detection
- https://www.virustotal.com/gui/file/84eb2efa324eba0c2e06c3b84395e9f5e3f28a3c9b86edd1f813807ba39d9acb/detection
- https://www.virustotal.com/gui/file/ce1fb1a7bd7c108bceb71b0ca92d8d04b244e1bd7e9e7db5082e0c1d7e836f94/detection
- https://www.virustotal.com/gui/file/d6af2d1df948e2221a4bdaa3dd736dc0646c95d76f1aa1a1d314e5b20185e161/detection
- https://www.virustotal.com/gui/file/e5f471dcd4f5a47f0a53fc389e58c70b9ef81805c503ed6b100950d02ee7f777/detection
- https://www.virustotal.com/gui/file/f6c4c84487bbec5959068e4a8b84e515de4695c794769c3d3080bf5c2bb63d00/detection