APTTrail: rare werewolf indicators and references

Fecha
18 Jun 2026
Actor
rare-werewolf
Tipo
Ioc
Pais
Unknown
Sector
-
Confianza
high
100
Prioridad analitica
Alta

Basado en actor, pais, IOCs, TTPs, filtracion y calidad de contexto.

30IOCs
0TTPs
rare-werewolfActor
UnknownPais
Executive Summary
APTTrail mantiene indicadores publicos asociados a rare werewolf. Aliases observados: rare werewolf. Conteo por tipo: domain: 249, ipv4: 1.

Key Points

  • https://app.validin.com/detail?find=89.110.65.154&type=ip4&ref_id=e41544d48ff#tab=resolutions
  • https://securelist.com/librarian-ghouls-apt-wakes-up-computers-to-steal-data-and-mine-crypto/116536/
  • https://www.kaspersky.ru/blog/librarian-ghouls-cad-formats/38199/
  • https://www.kaspersky.ru/blog/malicious-mailout-scr-attachment/37823/
  • https://www.virustotal.com/gui/file/02e49ad0d589b463a5dae39e81ff6c4151b2b9baca366ede566a5c0829a75d84/detection

Resumen APTTrail

APTTrail mantiene indicadores publicos asociados a rare werewolf. Aliases observados: rare werewolf. Conteo por tipo: domain: 249, ipv4: 1.

Indicadores de Compromiso (IOCs)

TipoValorContexto
Domain4t-niagara.comAPTTrail
Domain4tniagara.comAPTTrail
Domainaccouts-verification.ruAPTTrail
Domainacountservices.nlAPTTrail
Domainacountservices.onlineAPTTrail
Domainaemiliuszathe.nlAPTTrail
Domainaeternus.beAPTTrail
Domainalcor-as.comAPTTrail
Domainallroundvideomedia.nlAPTTrail
Domainalmaz-aero.siteAPTTrail
Domainamorapersoneel.nlAPTTrail
Domainanyhostings.ruAPTTrail
Domainanyinfos.ruAPTTrail
Domainaoffices.ruAPTTrail
Domainautodegroenehoek.nlAPTTrail
Domainautoopkoperbenny.beAPTTrail
Domainautotificate.comAPTTrail
Domainbarbershopwbd.nlAPTTrail
Domainbatwoman-fashion.nlAPTTrail
Domainbeeldspraakfotografie.nlAPTTrail
Domainberkelgame.comAPTTrail
Domainbharatsingh-logistics.nlAPTTrail
Domainbiesbeauty.nlAPTTrail
Domainblijlekkernij.nlAPTTrail
Domainbloomakay.beAPTTrail
Domainbmapps.orgAPTTrail
Domainboefjes.nlAPTTrail
Domainboelit-pvlog.beAPTTrail
Domainbouwwerkennoten.beAPTTrail
Domainbroodjesboutique.nlAPTTrail

Referencias

Diamond Model

Adversary
rare-werewolf
Ver perfil →
Victim
APTTrail: rare werewolf indicators and references
Capability
Ioc
Infrastructure
4t-niagara.com
4tniagara.com
accouts-verification.ru
acountservices.nl

Indicadores de Compromiso (IOCs)

TipoValorContextoOSINT
Domain 4t-niagara.com APTTrail VT OffSec SOCRadar
Domain 4tniagara.com APTTrail VT OffSec SOCRadar
Domain accouts-verification.ru APTTrail VT OffSec SOCRadar
Domain acountservices.nl APTTrail VT OffSec SOCRadar
Domain acountservices.online APTTrail VT OffSec SOCRadar
Domain aemiliuszathe.nl APTTrail VT OffSec SOCRadar
Domain aeternus.be APTTrail VT OffSec SOCRadar
Domain alcor-as.com APTTrail VT OffSec SOCRadar
Domain allroundvideomedia.nl APTTrail VT OffSec SOCRadar
Domain almaz-aero.site APTTrail VT OffSec SOCRadar
Domain amorapersoneel.nl APTTrail VT OffSec SOCRadar
Domain anyhostings.ru APTTrail VT OffSec SOCRadar
Domain anyinfos.ru APTTrail VT OffSec SOCRadar
Domain aoffices.ru APTTrail VT OffSec SOCRadar
Domain autodegroenehoek.nl APTTrail VT OffSec SOCRadar
Domain autoopkoperbenny.be APTTrail VT OffSec SOCRadar
Domain autotificate.com APTTrail VT OffSec SOCRadar
Domain barbershopwbd.nl APTTrail VT OffSec SOCRadar
Domain batwoman-fashion.nl APTTrail VT OffSec SOCRadar
Domain beeldspraakfotografie.nl APTTrail VT OffSec SOCRadar
Domain berkelgame.com APTTrail VT OffSec SOCRadar
Domain bharatsingh-logistics.nl APTTrail VT OffSec SOCRadar
Domain biesbeauty.nl APTTrail VT OffSec SOCRadar
Domain blijlekkernij.nl APTTrail VT OffSec SOCRadar
Domain bloomakay.be APTTrail VT OffSec SOCRadar
Domain bmapps.org APTTrail VT OffSec SOCRadar
Domain boefjes.nl APTTrail VT OffSec SOCRadar
Domain boelit-pvlog.be APTTrail VT OffSec SOCRadar
Domain bouwwerkennoten.be APTTrail VT OffSec SOCRadar
Domain broodjesboutique.nl APTTrail VT OffSec SOCRadar

Referencias y enlaces

→ Perfil del actor rare-werewolf en el blog → Ver rare-werewolf en IntelTracker → URL IntelTracker: app.validin.com→ URL IntelTracker: securelist.com→ URL IntelTracker: www.kaspersky.ru→ URL IntelTracker: www.kaspersky.ru→ URL IntelTracker: www.virustotal.com→ URL IntelTracker: www.virustotal.com → Fuente OSINT: github.com→ Fuente OSINT: raw.githubusercontent.com→ Fuente OSINT: app.validin.com→ Fuente OSINT: securelist.com→ Fuente OSINT: www.kaspersky.ru→ Fuente OSINT: www.kaspersky.ru → Buscar rare-werewolf en APTTrail → Repositorio APTTrail → Buscar en Google News → Analizar en VirusTotal → Feed RSS del blog
← Volver al panel de inteligencia

Incidentes recientes