f0e42a1818
KHRAT added
2017-03-29 16:37:31 +02:00
chrisdoman
dbf989c742
Added descriptions and reference to threat-actor json
2017-03-22 12:52:05 +00:00
Raphaël Vinot
e1b5701351
JQ all the things
2017-03-16 17:31:43 +01:00
Raphaël Vinot
0d8d265319
Fix typo.
2017-03-16 17:27:17 +01:00
CERT-Bund
4112a041f7
Added groups, joined groups, added synonyms (see extended description)
...
Added: HammerPanda, Barium, Infy, Sima, Groundbait
Joined: StrongPity and Promethium
Synonyms: Lead as Winnti, Moonlight as MoleRats, FalloutTeam as DarkHotel, DustStorm as StonePanda, Skipper and Popeye as Pacifier
2017-03-16 17:02:55 +01:00
71ad9099c4
IMEIJ added
2017-03-13 13:59:46 +01:00
e002e62204
missing \n at the end of the file
2017-03-01 14:55:45 +01:00
Chris Doman
9e5c983a65
Ran jq
2017-03-01 13:24:00 +00:00
Chris Doman
e934f88b3b
Added references
...
Mostly added references to existing groups
Capitalised DarkHotel, put a space in APT30 default name (the others
had that)
2017-03-01 12:53:52 +00:00
a224c7ce5e
add: Gamaredon Group added
2017-02-28 09:17:33 +01:00
Christophe Vandeplas
048b831f53
minor correction
2017-02-27 11:00:48 +01:00
Thanat0s
07cc13feb8
remove duplicate of ratdecode import
2017-02-27 00:38:39 +01:00
Thanat0s
9eb2d097f2
add a bunch of rat from ratdecoder list
2017-02-27 00:23:56 +01:00
Thanat0s
849ca3ebbc
Pimp Epic turla
2017-02-26 23:38:50 +01:00
Thanat0s
f1ea577e95
pimp and agreggate turla
2017-02-26 23:24:51 +01:00
Thanat0s
3774f05237
Somes alias fetch from : https://attack.mitre.org/wiki/Groups
2017-02-26 23:07:42 +01:00
Thanat0s
2d658a6577
pimp comrat
2017-02-26 22:53:51 +01:00
Thanat0s
b865342f2e
pimp xneteagle
2017-02-26 22:47:16 +01:00
Thanat0s
f4584f3900
pimp xscontrol
2017-02-26 22:41:51 +01:00
Thanat0s
b400edbe9b
Update Xagent from aptnote Bitdefender-Whitepaper-APT-Mac-A4-en-EN-web(02-23-2017)
2017-02-26 20:40:44 +01:00
Thanat0s
51eee31c21
Pimp lecna/Backspace
2017-02-26 20:16:59 +01:00
Thanat0s
0d0ba42f15
Pimp lecna/Backspace
2017-02-26 20:16:46 +01:00
Thanat0s
cdc80e5596
Pimp RarStone
2017-02-26 20:02:34 +01:00
Thanat0s
ca68abc0e8
Pimp Pirpi. Hard to say:)
2017-02-26 19:56:17 +01:00
Thanat0s
6e78746a6c
pimp webc2
2017-02-26 19:37:10 +01:00
Thanat0s
0775bfce62
pimp winnti
2017-02-26 19:26:21 +01:00
Thanat0s
8de827977c
Pimp nettraveler
2017-02-26 19:21:41 +01:00
Thanat0s
7d62d8c3e7
cleanup zeus duplicate in alias and name
2017-02-26 17:08:43 +01:00
Thanat0s
93df12be35
update apt28 tools
2017-02-26 17:06:19 +01:00
Thanat0s
afe682cf3f
Remove duplicate AlienSpy
2017-02-26 16:52:59 +01:00
Thanat0s
47903f8394
add info to the famous mimikatz
2017-02-25 02:28:43 +01:00
Thanat0s
d4e3a08995
add moudor info
2017-02-25 02:22:30 +01:00
Thanat0s
3d79a82bf5
Add Tinba banking
2017-02-25 02:08:51 +01:00
Thanat0s
7eb98609a3
udpate trojan.main
2017-02-25 01:42:33 +01:00
Thanat0s
59b5ed6c1b
update evilgrab
2017-02-25 01:30:10 +01:00
Thanat0s
724e836ae9
remove coreshell duplicate
2017-02-25 01:18:03 +01:00
Thanat0s
e98de5cb5e
add derusbi
2017-02-25 01:12:42 +01:00
Thanat0s
bce60b0318
merge IEchecker et sasfi
2017-02-25 01:06:19 +01:00
Thanat0s
50d2b1c871
go for caro, add hi-zor
2017-02-25 00:42:44 +01:00
Thanat0s
d502d5b5bf
fix side victims of schemaupdate
2017-02-24 23:46:44 +01:00
Thanat0s
a29a5afbe8
update 2 array
2017-02-24 23:36:45 +01:00
Thanat0s
7265af6612
go 4 string
2017-02-24 16:24:59 +01:00
Thanat0s
b124d8a08d
Follow the format
2017-02-24 15:52:08 +01:00
Thanat0s
8240e5f661
json typo
2017-02-24 14:05:57 +01:00
Thanat0s
8c2c47810e
Locky removed > ransomware
2017-02-24 14:00:42 +01:00
Thanat0s
c1848b1a3a
json issue
2017-02-24 13:59:14 +01:00
Thanat0s
f496c34fda
generic plugx names
2017-02-24 13:57:33 +01:00
Thanat0s
bb088f97d1
Update
2017-02-24 13:56:33 +01:00
Thanat0s
0513668fcf
Remove JOYRat -> team -> https://www.crowdstrike.com/blog/whois-numbered-panda/
2017-02-24 13:46:12 +01:00
Thanat0s
796382d4ab
Remove Lstudio (group using elise) , add info to PWOBOT
2017-02-24 13:39:53 +01:00