misp-circl-feed/feeds/circl/misp/59cbb4ef-1310-4e85-8432-4879950d210f.json

1 line
13 KiB
JSON
Raw Permalink Normal View History

2023-12-14 14:30:15 +00:00
{"Event": {"info": "M2M - Locky 2017-09-27 : Affid=3, offline, \".ykcol\" :\n \"INVOICE\" - \"A1234-5678901234.7z\"", "Tag": [{"colour": "#ffffff", "exportable": true, "name": "tlp:white"}, {"colour": "#006c6c", "exportable": true, "name": "ecsirt:malicious-code=\"ransomware\""}, {"colour": "#0088cc", "exportable": true, "name": "misp-galaxy:ransomware=\"Locky\""}], "publish_timestamp": "1506524919", "timestamp": "1506524912", "analysis": "1", "Attribute": [{"comment": "", "category": "Artifacts dropped", "uuid": "59cbb4f0-9360-42b7-89f0-4e4d950d210f", "timestamp": "1506524906", "to_ids": true, "value": "1c1a6b70b5e2b13c019d5cbdf0f12738", "disable_correlation": false, "object_relation": null, "type": "md5"}, {"comment": "", "category": "Network activity", "uuid": "59cbb4f0-94d4-4d80-97dc-483b950d210f", "timestamp": "1506524906", "to_ids": true, "value": "http://antwerpvillas.com/niugufvt4", "disable_correlation": false, "object_relation": null, "type": "url"}, {"comment": "", "category": "Network activity", "uuid": "59cbb4f0-0470-4ae8-b4fc-48a3950d210f", "timestamp": "1506524906", "to_ids": true, "value": "antwerpvillas.com", "disable_correlation": false, "object_relation": null, "type": "hostname"}, {"comment": "antwerpvillas.com", "category": "Network activity", "uuid": "59cbb4f0-cde8-4b39-8644-4100950d210f", "timestamp": "1506524906", "to_ids": false, "value": "78.40.96.174", "disable_correlation": false, "object_relation": null, "type": "ip-dst"}, {"comment": "", "category": "Network activity", "uuid": "59cbb4f1-8188-45f0-aea0-4e7e950d210f", "timestamp": "1506524906", "to_ids": true, "value": "http://apethorpevillage.co.uk/niugufvt4", "disable_correlation": false, "object_relation": null, "type": "url"}, {"comment": "", "category": "Network activity", "uuid": "59cbb4f1-5658-4600-a2a6-41d3950d210f", "timestamp": "1506524906", "to_ids": true, "value": "apethorpevillage.co.uk", "disable_correlation": false, "object_relation": null, "type": "hostname"}, {"comment": "apethorpevillage.co.uk", "category": "Network activity", "uuid": "59cbb4f1-1814-458c-b287-4c34950d210f", "timestamp": "1506524906", "to_ids": false, "value": "88.150.140.239", "disable_correlation": false, "object_relation": null, "type": "ip-dst"}, {"comment": "", "category": "Network activity", "uuid": "59cbb4f1-20bc-4c0a-80ad-4b1a950d210f", "timestamp": "1506524906", "to_ids": true, "value": "http://asi-automazioni.com/niugufvt4", "disable_correlation": false, "object_relation": null, "type": "url"}, {"comment": "", "category": "Network activity", "uuid": "59cbb4f2-26e4-473e-86f7-4c43950d210f", "timestamp": "1506524906", "to_ids": true, "value": "asi-automazioni.com", "disable_correlation": false, "object_relation": null, "type": "hostname"}, {"comment": "asi-automazioni.com", "category": "Network activity", "uuid": "59cbb4f2-be64-4bc7-9900-47b4950d210f", "timestamp": "1506524906", "to_ids": false, "value": "5.135.180.43", "disable_correlation": false, "object_relation": null, "type": "ip-dst"}, {"comment": "", "category": "Network activity", "uuid": "59cbb4f2-9538-4a7f-9702-43cd950d210f", "timestamp": "1506524906", "to_ids": true, "value": "http://freevillemusic.com/niugufvt4", "disable_correlation": false, "object_relation": null, "type": "url"}, {"comment": "", "category": "Network activity", "uuid": "59cbb4f2-6cdc-4b4d-ab07-4a69950d210f", "timestamp": "1506524906", "to_ids": true, "value": "freevillemusic.com", "disable_correlation": false, "object_relation": null, "type": "hostname"}, {"comment": "freevillemusic.com", "category": "Network activity", "uuid": "59cbb4f3-b870-4ed0-8795-4f83950d210f", "timestamp": "1506524906", "to_ids": false, "value": "66.84.8.235", "disable_correlation": false, "object_relation": null, "type": "ip-dst"}, {"comment": "", "category": "Network activity", "uuid": "59cbb4f3-6d80-4d64-9ed7-477e950d210f", "timestamp": "1506524906", "to_ids": true, "value": "http://galeona.com/niugufvt4", "disable_correlation": false, "object_relation": null, "type": "url"}, {"comment": "", "category": "Network activity", "uuid": "59cbb4f3-72