Skip to content

Indicators of compromise (IOCs) collected from public resources and categorized by Qi-AnXin.

License

Notifications You must be signed in to change notification settings

RedDrip7/APT_Digital_Weapon

Folders and files

NameName
Last commit message
Last commit date

Latest commit

 

History

16 Commits
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 

Repository files navigation

Copyright © @RedDrip (https://ti.qianxin.com/)

Here are indicators of compromise (IOCs) collected from public resources and our own investigations. Details include sample hash, file type, malware family, as well as first seen and file name from VirusTotal in format below:

Hash Type Family First_Seen Name
8e2b5b95980cf52e99acfa95f5e1570b Win32 DLL 2019-11-11 15:22:00 C:\Users<USER>\AppData\Local\Temp~$doc-ad9b812a-88b2-454c-989f-7bb5fe98717e.ole
3c3b2cc9ff5d7030fb01496510ac75f2 DOC 2019-11-11 11:13:02 ?-????2019?????????????????.doc
3a8c80d73f9beebd828c3aa172c747fa RAR 2019-11-07 01:23:39 Noi dung don cau cuu.rar
82990e2c0432e579a00ab1f75da0dd65 TXT 2019-10-26 11:05:08 lang.ps1
a87ada040f7250b59910345ee0b339b4 RAR 2019-10-23 09:20:16 Thu moi.rar
dbdbcd220475678c4becdc57a9233e20 Win32 EXE 2019-10-18 07:28:19 AcroRd32.exe
e7de9a64266f07168def534852349957 RAR Kryptik 2019-09-16 00:18:57 Don khieu nai.rar
90c66c76095ef1ad5a79e63a544c1bba Win32 DLL Kryptik 2019-09-13 06:02:21 123456

We will keep updating this project and hope this could help the security community to fight against malware and targeted attack.

If you find an error, please contact us at [email protected] and we’ll try to improve the IOCs.

Groupname Total Update data
Aggah 76 4 2020-11-30
APT-C-01 66 1 2020-11-30
APT-C-23 400 30 2020-11-30
APT-C-36 119 2 2020-11-30
APT-C-37 66 3 2020-11-30
APT-C-42 4 4 2020-11-30
APT-C-44 37 37 2020-11-30
APT15 1318 1276 2020-11-30
APT17 3073 79 2020-11-30
APT23 60 33 2020-11-30
APT27 104 12 2020-11-30
APT28 712 22 2020-11-30
APT29 443 33 2020-11-30
APT31 7 7 2020-11-30
APT33 119 45 2020-11-30
APT34 135 14 2020-11-30
APT40 46 23 2020-11-30
APT41 49 17 2020-11-30
Bisonal 53 47 2020-11-30
BITTER 246 46 2020-11-30
BlackTech 372 3 2020-11-30
BlueMushroom 34 7 2020-11-30
C-Major 527 119 2020-11-30
Chafer 24 6 2020-11-30
Charming Kitten 42 2 2020-11-30
Cloud snooper 4 4 2020-11-30
Cobalt Group 139 26 2020-11-30
Confucius 122 1 2020-11-30
Darkhotel 449 67 2020-11-30
Donot 424 95 2020-11-30
DRBControl 36 36 2020-11-30
El Machete 212 3 2020-11-30
Evilnum 54 54 2020-11-30
FIN6 66 2 2020-11-30
FIN7 541 5 2020-11-30
Fox Kitten 21 21 2020-11-30
Gamaredon Group 356 93 2020-11-30
Gorgon 1086 39 2020-11-30
GroupA21 19 19 2020-11-30
HackingTeam 43 6 2020-11-30
Hades 81 8 2020-11-30
Hellsing 109 25 2020-11-30
HEXANE 80 79 2020-11-30
Higaisa 73 19 2020-11-30
IceFog 119 3 2020-11-30
InvisiMole 5 5 2020-11-30
Kimsuky 206 37 2020-11-30
KONNI 133 20 2020-11-30
Lazarus Group 1705 220 2020-11-30
MageCart 52 1 2020-11-30
Metamorfo 37 7 2020-11-30
MM CORE 71 49 2020-11-30
Molerats 633 113 2020-11-30
MosaicRegressor 33 33 2020-11-30
MuddyWater 284 16 2020-11-30
Mustang Panda 98 78 2020-11-30
Nazar 19 19 2020-11-30
OceanLotus 1030 56 2020-11-30
OilRig 111 39 2020-11-30
Outlaw 29 22 2020-11-30
PatchWork 1199 50 2020-11-30
Poisoned News 19 19 2020-11-30
PROMETHIUM 205 113 2020-11-30
Rampant Kitten 67 67 2020-11-30
Shamoon 3 31 12 2020-11-30
Sidewinder 103 20 2020-11-30
Silence 104 3 2020-11-30
Storm Cloud 22 22 2020-11-30
TA410 11 11 2020-11-30
TA505 1019 107 2020-11-30
TH-163 6 3 2020-11-30
Tonto Team 45 45 2020-11-30
TrickBot-Anchor 9 9 2020-11-30
Turla 419 130 2020-11-30
Vicious Panda 18 18 2020-11-30
WildPressure 2 2 2020-11-30
XDSpy 11 11 2020-11-30

About

Indicators of compromise (IOCs) collected from public resources and categorized by Qi-AnXin.

Resources

License

Stars

Watchers

Forks

Releases

No releases published

Packages

No packages published