2023-12-14 14:30:15 +00:00
|
|
|
{"Event": {"info": "OSINT - Anubis Android Malware Returns with Over 17,000 Samples", "Tag": [{"colour": "#004646", "exportable": true, "name": "type:OSINT"}, {"colour": "#0071c3", "exportable": true, "name": "osint:lifetime=\"perpetual\""}, {"colour": "#0087e8", "exportable": true, "name": "osint:certainty=\"50\""}, {"colour": "#ffffff", "exportable": true, "name": "tlp:white"}, {"colour": "#5f0077", "exportable": true, "name": "ms-caro-malware:malware-platform=\"AndroidOS\""}, {"colour": "#0088cc", "exportable": true, "name": "misp-galaxy:malpedia=\"Anubis\""}], "publish_timestamp": "0", "timestamp": "1562688813", "analysis": "0", "Attribute": [{"comment": "", "category": "Payload delivery", "uuid": "5d24b8c5-a738-4894-a073-4337950d210f", "timestamp": "1562687685", "to_ids": true, "value": "9046270d735579bcedb6bb7c0a2ad21f9b5ef9432e46e733b36de964aecd3abc", "disable_correlation": false, "object_relation": null, "type": "sha256"}, {"comment": "", "category": "Payload delivery", "uuid": "5d24b8c5-895c-4958-abc6-4be3950d210f", "timestamp": "1562687685", "to_ids": true, "value": "6079af3bab8bb0ba445cd0dd896d8c8d7845da3757755b4ef3af584d227e0490", "disable_correlation": false, "object_relation": null, "type": "sha256"}, {"comment": "", "category": "Payload delivery", "uuid": "5d24b8c5-a00c-4da3-a5b8-4663950d210f", "timestamp": "1562687685", "to_ids": true, "value": "1acca6953081cfc12d5cbeda1990b93b3298b1adc3c6ffad624e454f5854736f", "disable_correlation": false, "object_relation": null, "type": "sha256"}, {"comment": "", "category": "Payload delivery", "uuid": "5d24b8c5-615c-4c8f-acaa-48fb950d210f", "timestamp": "1562687685", "to_ids": true, "value": "f767baadda60c618d7e14461831e7371a54cdf152b1fd5eb52a8aa4bb7300227", "disable_correlation": false, "object_relation": null, "type": "sha256"}, {"comment": "", "category": "Network activity", "uuid": "5d24b8c5-7594-41c7-8aa9-4788950d210f", "timestamp": "1562687685", "to_ids": true, "value": "http://demo.website.com/", "disable_correlation": false, "object_relation": null, "type": "url"}, {"comment": "", "category": "Network activity", "uuid": "5d24b8c5-0e58-4e71-bc50-4907950d210f", "timestamp": "1562687685", "to_ids": true, "value": "http://ktosdelaetskrintotpidor.com", "disable_correlation": false, "object_relation": null, "type": "url"}, {"comment": "", "category": "Network activity", "uuid": "5d24b8c5-e284-46ec-ae6f-43ec950d210f", "timestamp": "1562687685", "to_ids": true, "value": "http://marksteylor.us/", "disable_correlation": false, "object_relation": null, "type": "url"}, {"comment": "", "category": "Network activity", "uuid": "5d24b8c5-1368-4fcc-b3e0-4eae950d210f", "timestamp": "1562687685", "to_ids": true, "value": "http://sositehuypidarasi.com", "disable_correlation": false, "object_relation": null, "type": "url"}, {"comment": "", "category": "Network activity", "uuid": "5d24b8c5-1a5c-47d2-a06b-4ec2950d210f", "timestamp": "1562687685", "to_ids": true, "value": "https://blackleaf.top", "disable_correlation": false, "object_relation": null, "type": "url"}, {"comment": "", "category": "Network activity", "uuid": "5d24b8c6-4a9c-4605-98aa-40f1950d210f", "timestamp": "1562687685", "to_ids": true, "value": "https://firstdoxed.space", "disable_correlation": false, "object_relation": null, "type": "url"}, {"comment": "", "category": "Network activity", "uuid": "5d24b8c6-9994-49c6-821a-4d73950d210f", "timestamp": "1562687686", "to_ids": true, "value": "https://lskbfidsbvkjsfgakfjsdffsdfupdate.net", "disable_correlation": false, "object_relation": null, "type": "url"}, {"comment": "", "category": "Network activity", "uuid": "5d24b8c6-b68c-4143-b2d1-4a44950d210f", "timestamp": "1562687686", "to_ids": true, "value": "https://lskbfidsbvkjsfgakfjsdffsdfupdate.net/o1o/a16.php", "disable_correlation": false, "object_relation": null, "type": "url"}, {"comment": "", "category": "Network activity", "uuid": "5d24b8c6-93d8-4dcb-a696-452a950d210f", "timestamp": "1562687686", "to_ids": true, "value": "https://ndudetto.top", "disable_correlation": false, "object_relation": null, "type": "url"},
|