APTTrail: apt10 indicators and references

Fecha
18 Jun 2026
Actor
apt10
Tipo
Ioc
Pais
Japan
Sector
Tech
Confianza
high
100
Prioridad analitica
Alta

Basado en actor, pais, IOCs, TTPs, filtracion y calidad de contexto.

30IOCs
0TTPs
apt10Actor
JapanPais
Executive Summary
APTTrail mantiene indicadores publicos asociados a apt10. Aliases observados: apt10, earth kasha, gallium, noopldr, stone panda. Conteo por tipo: domain: 1486, ipv4: 11, url: 2.

Key Points

  • http://blog.jpcert.or.jp/2017/02/chches-malware--93d6.html
  • http://jsac.jpcert.or.jp/archive/2021/pdf/JSAC2021_202_niwa-yanagishita_en.pdf
  • http://researchcenter.paloaltonetworks.com/2017/02/unit42-menupass-returns-new-malware-new-attacks-japanese-academics-organizations/
  • https://1275.ru/ioc/8083/earth-kasha-apt10-apt-iocs/
  • https://app.any.run/tasks/875fe058-ade2-4d26-86fc-411417e33dff/

Resumen APTTrail

APTTrail mantiene indicadores publicos asociados a apt10. Aliases observados: apt10, earth kasha, gallium, noopldr, stone panda. Conteo por tipo: domain: 1486, ipv4: 11, url: 2.

Indicadores de Compromiso (IOCs)

TipoValorContexto
Domain002562066559681.r3u8.comAPTTrail
Domain031168053846049.r3u8.comAPTTrail
Domain0625.have8000.comAPTTrail
Domain1.gadskysun.comAPTTrail
Domain100fanwen.comAPTTrail
Domain11.usyahooapis.comAPTTrail
Domain19518473326.r3u8.comAPTTrail
Domain1960445709311199.r3u8.comAPTTrail
Domain1j.www1.bizAPTTrail
Domain1z.itsaol.comAPTTrail
Domain2012yearleft.comAPTTrail
Domain2014.zzux.comAPTTrail
Domain202017845.r3u8.comAPTTrail
Domain2139465544784.r3u8.comAPTTrail
Domain2789203959848958.r3u8.comAPTTrail
Domain5590428449750026.r3u8.comAPTTrail
Domain5q.niushenghuo.infoAPTTrail
Domain6r.suibian2010.infoAPTTrail
Domain9gowg.techAPTTrail
DomainJepsen.r3u8.comAPTTrail
Domaina.wubangtu.infoAPTTrail
Domaina1.suibian2010.infoAPTTrail
Domainab.4pu.comAPTTrail
Domainabc.wikaba.comAPTTrail
Domainabcd100621.3322.orgAPTTrail
Domainabcd120719.6600.orgAPTTrail
Domainabcd120807.3322.orgAPTTrail
Domainacc.emailfound.infoAPTTrail
Domainacc.lehigtapp.comAPTTrail
Domainacsocietyy.comAPTTrail

Referencias

Diamond Model

Adversary
apt10
Ver perfil →
Victim
APTTrail: apt10 indicators and references
Japan
Capability
Ioc
Infrastructure
002562066559681.r3u8.com
031168053846049.r3u8.com
0625.have8000.com
1.gadskysun.com

Indicadores de Compromiso (IOCs)

TipoValorContextoOSINT
Domain 002562066559681.r3u8.com APTTrail VT OffSec SOCRadar
Domain 031168053846049.r3u8.com APTTrail VT OffSec SOCRadar
Domain 0625.have8000.com APTTrail VT OffSec SOCRadar
Domain 1.gadskysun.com APTTrail VT OffSec SOCRadar
Domain 100fanwen.com APTTrail VT OffSec SOCRadar
Domain 11.usyahooapis.com APTTrail VT OffSec SOCRadar
Domain 19518473326.r3u8.com APTTrail VT OffSec SOCRadar
Domain 1960445709311199.r3u8.com APTTrail VT OffSec SOCRadar
Domain 1j.www1.biz APTTrail VT OffSec SOCRadar
Domain 1z.itsaol.com APTTrail VT OffSec SOCRadar
Domain 2012yearleft.com APTTrail VT OffSec SOCRadar
Domain 2014.zzux.com APTTrail VT OffSec SOCRadar
Domain 202017845.r3u8.com APTTrail VT OffSec SOCRadar
Domain 2139465544784.r3u8.com APTTrail VT OffSec SOCRadar
Domain 2789203959848958.r3u8.com APTTrail VT OffSec SOCRadar
Domain 5590428449750026.r3u8.com APTTrail VT OffSec SOCRadar
Domain 5q.niushenghuo.info APTTrail VT OffSec SOCRadar
Domain 6r.suibian2010.info APTTrail VT OffSec SOCRadar
Domain 9gowg.tech APTTrail VT OffSec SOCRadar
Domain Jepsen.r3u8.com APTTrail VT OffSec SOCRadar
Domain a.wubangtu.info APTTrail VT OffSec SOCRadar
Domain a1.suibian2010.info APTTrail VT OffSec SOCRadar
Domain ab.4pu.com APTTrail VT OffSec SOCRadar
Domain abc.wikaba.com APTTrail VT OffSec SOCRadar
Domain abcd100621.3322.org APTTrail VT OffSec SOCRadar
Domain abcd120719.6600.org APTTrail VT OffSec SOCRadar
Domain abcd120807.3322.org APTTrail VT OffSec SOCRadar
Domain acc.emailfound.info APTTrail VT OffSec SOCRadar
Domain acc.lehigtapp.com APTTrail VT OffSec SOCRadar
Domain acsocietyy.com APTTrail VT OffSec SOCRadar

Referencias y enlaces

→ Perfil del actor apt10 en el blog → Ver apt10 en IntelTracker → URL IntelTracker: blog.jpcert.or.jp→ URL IntelTracker: jsac.jpcert.or.jp→ URL IntelTracker: researchcenter.paloaltonetworks.com→ URL IntelTracker: 1275.ru→ URL IntelTracker: app.any.run→ URL IntelTracker: app.any.run → Fuente OSINT: github.com→ Fuente OSINT: raw.githubusercontent.com→ Fuente OSINT: blog.jpcert.or.jp→ Fuente OSINT: jsac.jpcert.or.jp→ Fuente OSINT: researchcenter.paloaltonetworks.com→ Fuente OSINT: 1275.ru → Buscar apt10 en APTTrail → Repositorio APTTrail → Mas incidentes en Japan → Buscar en Google News → Analizar en VirusTotal → Feed RSS del blog
← Volver al panel de inteligencia

Incidentes recientes