Resumen APTTrail
APTTrail mantiene indicadores publicos asociados a eraleig ransomware. Aliases observados: eraleig ransomware. Conteo por tipo: domain: 11.
Indicadores de Compromiso (IOCs)
| Tipo | Valor | Contexto |
|---|---|---|
| Domain | bashe4aec32kr6zbifwd5x6xgjsmhg4tbowrbx4pneqhc5mqooyifpid.onion | APTTrail |
| Domain | basheqtvzqwz4vp6ks5lm2ocq7i6tozqgf6vjcasj4ezmsy4bkpshhyd.onion | APTTrail |
| Domain | basherq53eniermxovo3bkduw5qqq5bkqcml3qictfmamgvmzovykyqd.onion | APTTrail |
| Domain | eraleignews.com | APTTrail |
| Domain | fleqwmg7xnanypt5km2m75l72q7nlcvlp2m4sdmgjxorsn6tb3zyp3qd.onion | APTTrail |
| Domain | ns1.eraleignews.com | APTTrail |
| Domain | ns2.eraleignews.com | APTTrail |
| Domain | ns3.eraleignews.com | APTTrail |
| Domain | ns4.eraleignews.com | APTTrail |
| Domain | qcgv5tfer4f46ns6ohh72zeyyh5uavoiybypzpt3lmwk5ecyqykptgqd.onion | APTTrail |
| Domain | wn6vonooq6fggjdgyocp7bioykmfjket7sbp47cwhgubvowwd7ws5pyd.onion | APTTrail |
Referencias
- https://github.com/marktsec/Ransomware_Official_Domains#apt73
- https://rakeshkrish.medium.com/apt73-eraleig-news-unveiling-new-ransomware-group-55aec3e873ff
- https://twitter.com/AlvieriD/status/1782471876897394839
- https://twitter.com/karol_paciorek/status/1783071332583780594
- https://www.thedfirspot.com/general-8-1
- https://www.virustotal.com/gui/ip-address/176.97.75.205/detection