2023-04-21 13:25:09 +00:00
|
|
|
{
|
2023-06-14 17:31:25 +00:00
|
|
|
"type": "bundle",
|
|
|
|
"id": "bundle--57726912-97ac-432c-8651-acb0950d210f",
|
|
|
|
"objects": [
|
|
|
|
{
|
|
|
|
"type": "identity",
|
|
|
|
"spec_version": "2.1",
|
|
|
|
"id": "identity--55f6ea5f-fd34-43b8-ac1d-40cb950d210f",
|
|
|
|
"created": "2016-06-28T12:17:01.000Z",
|
|
|
|
"modified": "2016-06-28T12:17:01.000Z",
|
|
|
|
"name": "CthulhuSPRL.be",
|
|
|
|
"identity_class": "organization"
|
|
|
|
},
|
|
|
|
{
|
|
|
|
"type": "report",
|
|
|
|
"spec_version": "2.1",
|
|
|
|
"id": "report--57726912-97ac-432c-8651-acb0950d210f",
|
|
|
|
"created_by_ref": "identity--55f6ea5f-fd34-43b8-ac1d-40cb950d210f",
|
|
|
|
"created": "2016-06-28T12:17:01.000Z",
|
|
|
|
"modified": "2016-06-28T12:17:01.000Z",
|
|
|
|
"name": "Pivot on other email addresses found by using the same physical address as support-apple-id.com - potential sofacy",
|
|
|
|
"published": "2016-06-28T12:17:53Z",
|
|
|
|
"object_refs": [
|
|
|
|
"indicator--57726938-28c8-45c4-979c-499f950d210f",
|
|
|
|
"x-misp-attribute--57726959-1dbc-441f-a90e-041d950d210f",
|
|
|
|
"x-misp-attribute--5772696a-99f8-4a5b-bbf2-4989950d210f",
|
|
|
|
"x-misp-attribute--577269b0-15c0-4b95-9964-041f950d210f",
|
|
|
|
"indicator--57726a53-bcfc-4b80-9349-acb2950d210f",
|
|
|
|
"indicator--57726a54-74ac-4989-b366-acb2950d210f",
|
|
|
|
"indicator--57726a54-e91c-424f-a5c7-acb2950d210f",
|
|
|
|
"indicator--57726a55-62f4-4aa1-b562-acb2950d210f",
|
|
|
|
"indicator--57726a55-7cb0-4908-8fb9-acb2950d210f",
|
|
|
|
"indicator--57726a56-c4a8-49d7-afbf-acb2950d210f",
|
|
|
|
"indicator--57726a56-99e0-489b-9963-acb2950d210f",
|
|
|
|
"indicator--57726a57-e03c-4cca-8d06-acb2950d210f",
|
|
|
|
"indicator--57726a58-db8c-4b9d-8184-acb2950d210f",
|
|
|
|
"indicator--57726a58-0a2c-4a4c-95ca-acb2950d210f",
|
|
|
|
"indicator--57726a59-2e58-4eb1-a8ea-acb2950d210f",
|
|
|
|
"indicator--57726a59-f9a4-4310-9eed-acb2950d210f",
|
|
|
|
"indicator--57726a5a-e710-4a1c-8806-acb2950d210f",
|
|
|
|
"indicator--57726a5a-f59c-40ae-a7f8-acb2950d210f",
|
|
|
|
"indicator--57726a5b-f650-46e4-9c09-acb2950d210f",
|
|
|
|
"indicator--57726a5b-6ea4-4d7e-a60c-acb2950d210f",
|
|
|
|
"indicator--57726a5c-b7ac-4939-bb02-acb2950d210f",
|
|
|
|
"indicator--57726a5c-9eb4-43b8-ae29-acb2950d210f",
|
|
|
|
"indicator--57726a5d-f4ac-41c3-ba08-acb2950d210f",
|
|
|
|
"indicator--57726a5d-70bc-4add-939e-acb2950d210f",
|
|
|
|
"indicator--57726a5e-4c80-4569-a114-acb2950d210f",
|
|
|
|
"indicator--57726a5f-c630-43f6-bfc7-acb2950d210f",
|
|
|
|
"indicator--57726a5f-40dc-491b-b9b0-acb2950d210f",
|
|
|
|
"indicator--57726a60-a91c-46f6-9621-acb2950d210f",
|
|
|
|
"indicator--57726a60-a918-4c76-969e-acb2950d210f",
|
|
|
|
"indicator--57726a61-6f3c-4ea1-bf42-acb2950d210f",
|
|
|
|
"indicator--57726a61-f41c-4be9-bb54-acb2950d210f",
|
|
|
|
"indicator--57726a62-9b88-4192-98bf-acb2950d210f",
|
|
|
|
"indicator--57726a62-6c28-400b-9959-acb2950d210f",
|
|
|
|
"indicator--57726abd-45e8-494f-aeb1-484a950d210f",
|
|
|
|
"indicator--57726abd-e794-424e-a2fa-445d950d210f",
|
|
|
|
"indicator--57726abe-9690-41f4-9c8d-45fe950d210f",
|
|
|
|
"indicator--57726abe-82e4-4c72-9a93-4ab5950d210f",
|
|
|
|
"indicator--57726abf-d868-432b-8025-4650950d210f",
|
|
|
|
"indicator--57726abf-d600-4ce5-81fb-492f950d210f",
|
|
|
|
"indicator--57726ac0-7498-4a95-818f-487b950d210f",
|
|
|
|
"indicator--57726ac0-7d70-4b7e-a77f-45ef950d210f",
|
|
|
|
"indicator--57726ac1-c88c-437e-b7cf-4c19950d210f",
|
|
|
|
"indicator--57726ac1-c184-4cfd-8206-4d7d950d210f",
|
|
|
|
"indicator--57726ac2-6d50-4871-a964-4390950d210f",
|
|
|
|
"indicator--57726ac2-f9c4-4da5-8c01-4e7b950d210f",
|
|
|
|
"indicator--57726ac3-8d48-44f3-8c43-433e950d210f",
|
|
|
|
"indicator--57726ac3-47dc-4d13-90db-4840950d210f",
|
|
|
|
"indicator--57726ac4-89fc-4b68-8c56-4f19950d210f",
|
|
|
|
"indicator--57726ac4-e8a0-4206-902e-4316950d210f",
|
|
|
|
"indicator--57726ac5-b6bc-4cea-a222-4677950d210f",
|
|
|
|
"indicator--57726ac5-2020-425b-8e41-46ff950d210f",
|
|
|
|
"indicator--57726ac6-b128-4952-b403-4a3a950d210f",
|
|
|
|
"indicator--57726ac6-54b0-4ce1-b6b1-4816950d210f",
|
|
|
|
"indicator--57726ac7-d568-4571-aebf-462f950d210f",
|
|
|
|
"indicator--57726ac7-a980-433e-83cb-4633950d210f",
|
|
|
|
"indicator--57726ac7-2be0-4ed6-bd44-4e82950d210f",
|
|
|
|
"indicator--57726ac8-dad0-421f-b61e-4378950d210f",
|
|
|
|
"indicator--57726ac8-2e1c-43b1-bf03-4442950d210f",
|
|
|
|
"indicator--57726ac8-54e0-436e-b276-4552950d210f",
|
|
|
|
"indicator--57726ac8-e2cc-4e1b-adb3-46ae950d210f",
|
|
|
|
"indicator--57726ac8-41ac-432d-9494-4a7a950d210f",
|
|
|
|
"indicator--57726ac9-af5c-45c8-8943-441a950d210f",
|
|
|
|
"indicator--57726ac9-742c-4126-b0d9-4017950d210f",
|
|
|
|
"indicator--57726ac9-7890-459e-bfb1-404a950d210f",
|
|
|
|
"indicator--57726ac9-bc8c-4479-ba88-43ea950d210f",
|
|
|
|
"indicator--57726ac9-1c6c-4603-97a8-4982950d210f",
|
|
|
|
"indicator--57726aca-43ec-4e3d-955b-43e6950d210f",
|
|
|
|
"indicator--57726aca-3078-4de7-afac-4143950d210f",
|
|
|
|
"indicator--57726aca-b204-4429-86c7-42bc950d210f",
|
|
|
|
"indicator--57726aca-a024-4b02-a31d-4853950d210f",
|
|
|
|
"indicator--57726aca-f0d8-40e8-a656-48cc950d210f",
|
|
|
|
"indicator--57726aca-67d4-4396-b5ba-46ba950d210f",
|
|
|
|
"indicator--57726acb-d170-4eda-be8f-4ec9950d210f",
|
|
|
|
"indicator--57726acb-3440-42e1-b6d8-4fde950d210f",
|
|
|
|
"indicator--57726acb-2fcc-4cb2-9703-456e950d210f",
|
|
|
|
"indicator--57726acb-73dc-4fed-97bf-47cf950d210f",
|
|
|
|
"indicator--57726acb-adb8-456a-bd8a-4dde950d210f",
|
|
|
|
"indicator--57726acc-307c-493e-ae45-4d6e950d210f",
|
|
|
|
"indicator--57726acc-b1f8-4ced-a71d-4a37950d210f",
|
|
|
|
"indicator--57726acc-1c30-448e-805c-4e50950d210f",
|
|
|
|
"indicator--57726acc-0b4c-499c-8a34-4f07950d210f",
|
|
|
|
"indicator--57726acd-3870-4882-8c1e-4921950d210f",
|
|
|
|
"indicator--57726acd-5860-4f0f-8d18-44fa950d210f",
|
|
|
|
"indicator--57726acd-98f8-4434-986a-40a1950d210f",
|
|
|
|
"indicator--57726acd-83b0-4cf5-87f8-4ada950d210f",
|
|
|
|
"indicator--57726acd-bc18-4e41-aaed-4c34950d210f",
|
|
|
|
"indicator--57726ace-b020-4529-95ff-4161950d210f",
|
|
|
|
"indicator--57726ace-b4b8-4fa2-9481-4ece950d210f",
|
|
|
|
"indicator--57726ace-d3c8-42b9-bf61-4820950d210f",
|
|
|
|
"indicator--57726ace-549c-4f16-bf52-49e7950d210f",
|
|
|
|
"indicator--57726ace-aed4-49e8-964f-49c0950d210f"
|
|
|
|
],
|
|
|
|
"labels": [
|
|
|
|
"Threat-Report",
|
|
|
|
"misp:tool=\"MISP-STIX-Converter\"",
|
|
|
|
"admiralty-scale:information-credibility=\"3\""
|
|
|
|
],
|
|
|
|
"object_marking_refs": [
|
|
|
|
"marking-definition--34098fce-860f-48ae-8e50-ebd3cc5e41da"
|
|
|
|
]
|
|
|
|
},
|
|
|
|
{
|
|
|
|
"type": "indicator",
|
|
|
|
"spec_version": "2.1",
|
|
|
|
"id": "indicator--57726938-28c8-45c4-979c-499f950d210f",
|
|
|
|
"created_by_ref": "identity--55f6ea5f-fd34-43b8-ac1d-40cb950d210f",
|
|
|
|
"created": "2016-06-28T12:10:32.000Z",
|
|
|
|
"modified": "2016-06-28T12:10:32.000Z",
|
|
|
|
"pattern": "[domain-name:value = 'support-apple-id.com']",
|
|
|
|
"pattern_type": "stix",
|
|
|
|
"pattern_version": "2.1",
|
|
|
|
"valid_from": "2016-06-28T12:10:32Z",
|
|
|
|
"kill_chain_phases": [
|
|
|
|
{
|
|
|
|
"kill_chain_name": "misp-category",
|
|
|
|
"phase_name": "Network activity"
|
|
|
|
}
|
|
|
|
],
|
|
|
|
"labels": [
|
|
|
|
"misp:type=\"domain\"",
|
|
|
|
"misp:category=\"Network activity\"",
|
|
|
|
"misp:to_ids=\"True\""
|
|
|
|
]
|
|
|
|
},
|
|
|
|
{
|
|
|
|
"type": "x-misp-attribute",
|
|
|
|
"spec_version": "2.1",
|
|
|
|
"id": "x-misp-attribute--57726959-1dbc-441f-a90e-041d950d210f",
|
|
|
|
"created_by_ref": "identity--55f6ea5f-fd34-43b8-ac1d-40cb950d210f",
|
|
|
|
"created": "2016-06-28T12:11:05.000Z",
|
|
|
|
"modified": "2016-06-28T12:11:05.000Z",
|
|
|
|
"labels": [
|
|
|
|
"misp:type=\"comment\"",
|
|
|
|
"misp:category=\"Internal reference\""
|
|
|
|
],
|
|
|
|
"x_misp_category": "Internal reference",
|
|
|
|
"x_misp_type": "comment",
|
|
|
|
"x_misp_value": "Registrant physical address was: \t15 RUE DE LA MARCHE"
|
|
|
|
},
|
|
|
|
{
|
|
|
|
"type": "x-misp-attribute",
|
|
|
|
"spec_version": "2.1",
|
|
|
|
"id": "x-misp-attribute--5772696a-99f8-4a5b-bbf2-4989950d210f",
|
|
|
|
"created_by_ref": "identity--55f6ea5f-fd34-43b8-ac1d-40cb950d210f",
|
|
|
|
"created": "2016-06-28T12:11:22.000Z",
|
|
|
|
"modified": "2016-06-28T12:11:22.000Z",
|
|
|
|
"labels": [
|
|
|
|
"misp:type=\"whois-registrant-email\"",
|
|
|
|
"misp:category=\"Attribution\""
|
|
|
|
],
|
|
|
|
"x_misp_category": "Attribution",
|
|
|
|
"x_misp_type": "whois-registrant-email",
|
|
|
|
"x_misp_value": "hizlivz@gmail.com"
|
|
|
|
},
|
|
|
|
{
|
|
|
|
"type": "x-misp-attribute",
|
|
|
|
"spec_version": "2.1",
|
|
|
|
"id": "x-misp-attribute--577269b0-15c0-4b95-9964-041f950d210f",
|
|
|
|
"created_by_ref": "identity--55f6ea5f-fd34-43b8-ac1d-40cb950d210f",
|
|
|
|
"created": "2016-06-28T12:12:32.000Z",
|
|
|
|
"modified": "2016-06-28T12:12:32.000Z",
|
|
|
|
"labels": [
|
|
|
|
"misp:type=\"whois-registrant-email\"",
|
|
|
|
"misp:category=\"Attribution\""
|
|
|
|
],
|
|
|
|
"x_misp_category": "Attribution",
|
|
|
|
"x_misp_type": "whois-registrant-email",
|
|
|
|
"x_misp_value": "rosedupont85@yahoo.fr"
|
|
|
|
},
|
|
|
|
{
|
|
|
|
"type": "indicator",
|
|
|
|
"spec_version": "2.1",
|
|
|
|
"id": "indicator--57726a53-bcfc-4b80-9349-acb2950d210f",
|
|
|
|
"created_by_ref": "identity--55f6ea5f-fd34-43b8-ac1d-40cb950d210f",
|
|
|
|
"created": "2016-06-28T12:15:15.000Z",
|
|
|
|
"modified": "2016-06-28T12:15:15.000Z",
|
|
|
|
"description": "Registrant: ROSEDUPONT85@YAHOO.FR",
|
|
|
|
"pattern": "[domain-name:value = 'apple-support-team.com']",
|
|
|
|
"pattern_type": "stix",
|
|
|
|
"pattern_version": "2.1",
|
|
|
|
"valid_from": "2016-06-28T12:15:15Z",
|
|
|
|
"kill_chain_phases": [
|
|
|
|
{
|
|
|
|
"kill_chain_name": "misp-category",
|
|
|
|
"phase_name": "Network activity"
|
|
|
|
}
|
|
|
|
],
|
|
|
|
"labels": [
|
|
|
|
"misp:type=\"domain\"",
|
|
|
|
"misp:category=\"Network activity\"",
|
|
|
|
"misp:to_ids=\"True\""
|
|
|
|
]
|
|
|
|
},
|
|
|
|
{
|
|
|
|
"type": "indicator",
|
|
|
|
"spec_version": "2.1",
|
|
|
|
"id": "indicator--57726a54-74ac-4989-b366-acb2950d210f",
|
|
|
|
"created_by_ref": "identity--55f6ea5f-fd34-43b8-ac1d-40cb950d210f",
|
|
|
|
"created": "2016-06-28T12:15:16.000Z",
|
|
|
|
"modified": "2016-06-28T12:15:16.000Z",
|
|
|
|
"description": "Registrant: ROSEDUPONT85@YAHOO.FR",
|
|
|
|
"pattern": "[domain-name:value = 'found-devices.com']",
|
|
|
|
"pattern_type": "stix",
|
|
|
|
"pattern_version": "2.1",
|
|
|
|
"valid_from": "2016-06-28T12:15:16Z",
|
|
|
|
"kill_chain_phases": [
|
|
|
|
{
|
|
|
|
"kill_chain_name": "misp-category",
|
|
|
|
"phase_name": "Network activity"
|
|
|
|
}
|
|
|
|
],
|
|
|
|
"labels": [
|
|
|
|
"misp:type=\"domain\"",
|
|
|
|
"misp:category=\"Network activity\"",
|
|
|
|
"misp:to_ids=\"True\""
|
|
|
|
]
|
|
|
|
},
|
|
|
|
{
|
|
|
|
"type": "indicator",
|
|
|
|
"spec_version": "2.1",
|
|
|
|
"id": "indicator--57726a54-e91c-424f-a5c7-acb2950d210f",
|
|
|
|
"created_by_ref": "identity--55f6ea5f-fd34-43b8-ac1d-40cb950d210f",
|
|
|
|
"created": "2016-06-28T12:15:16.000Z",
|
|
|
|
"modified": "2016-06-28T12:15:16.000Z",
|
|
|
|
"description": "Registrant: ROSEDUPONT85@YAHOO.FR",
|
|
|
|
"pattern": "[domain-name:value = 'icloud-notification.com']",
|
|
|
|
"pattern_type": "stix",
|
|
|
|
"pattern_version": "2.1",
|
|
|
|
"valid_from": "2016-06-28T12:15:16Z",
|
|
|
|
"kill_chain_phases": [
|
|
|
|
{
|
|
|
|
"kill_chain_name": "misp-category",
|
|
|
|
"phase_name": "Network activity"
|
|
|
|
}
|
|
|
|
],
|
|
|
|
"labels": [
|
|
|
|
"misp:type=\"domain\"",
|
|
|
|
"misp:category=\"Network activity\"",
|
|
|
|
"misp:to_ids=\"True\""
|
|
|
|
]
|
|
|
|
},
|
|
|
|
{
|
|
|
|
"type": "indicator",
|
|
|
|
"spec_version": "2.1",
|
|
|
|
"id": "indicator--57726a55-62f4-4aa1-b562-acb2950d210f",
|
|
|
|
"created_by_ref": "identity--55f6ea5f-fd34-43b8-ac1d-40cb950d210f",
|
|
|
|
"created": "2016-06-28T12:15:17.000Z",
|
|
|
|
"modified": "2016-06-28T12:15:17.000Z",
|
|
|
|
"description": "Registrant: ROSEDUPONT85@YAHOO.FR",
|
|
|
|
"pattern": "[domain-name:value = 'id-apple-service.com']",
|
|
|
|
"pattern_type": "stix",
|
|
|
|
"pattern_version": "2.1",
|
|
|
|
"valid_from": "2016-06-28T12:15:17Z",
|
|
|
|
"kill_chain_phases": [
|
|
|
|
{
|
|
|
|
"kill_chain_name": "misp-category",
|
|
|
|
"phase_name": "Network activity"
|
|
|
|
}
|
|
|
|
],
|
|
|
|
"labels": [
|
|
|
|
"misp:type=\"domain\"",
|
|
|
|
"misp:category=\"Network activity\"",
|
|
|
|
"misp:to_ids=\"True\""
|
|
|
|
]
|
|
|
|
},
|
|
|
|
{
|
|
|
|
"type": "indicator",
|
|
|
|
"spec_version": "2.1",
|
|
|
|
"id": "indicator--57726a55-7cb0-4908-8fb9-acb2950d210f",
|
|
|
|
"created_by_ref": "identity--55f6ea5f-fd34-43b8-ac1d-40cb950d210f",
|
|
|
|
"created": "2016-06-28T12:15:17.000Z",
|
|
|
|
"modified": "2016-06-28T12:15:17.000Z",
|
|
|
|
"description": "Registrant: ROSEDUPONT85@YAHOO.FR",
|
|
|
|
"pattern": "[domain-name:value = 'id-icloud-service.com']",
|
|
|
|
"pattern_type": "stix",
|
|
|
|
"pattern_version": "2.1",
|
|
|
|
"valid_from": "2016-06-28T12:15:17Z",
|
|
|
|
"kill_chain_phases": [
|
|
|
|
{
|
|
|
|
"kill_chain_name": "misp-category",
|
|
|
|
"phase_name": "Network activity"
|
|
|
|
}
|
|
|
|
],
|
|
|
|
"labels": [
|
|
|
|
"misp:type=\"domain\"",
|
|
|
|
"misp:category=\"Network activity\"",
|
|
|
|
"misp:to_ids=\"True\""
|
|
|
|
]
|
|
|
|
},
|
|
|
|
{
|
|
|
|
"type": "indicator",
|
|
|
|
"spec_version": "2.1",
|
|
|
|
"id": "indicator--57726a56-c4a8-49d7-afbf-acb2950d210f",
|
|
|
|
"created_by_ref": "identity--55f6ea5f-fd34-43b8-ac1d-40cb950d210f",
|
|
|
|
"created": "2016-06-28T12:15:18.000Z",
|
|
|
|
"modified": "2016-06-28T12:15:18.000Z",
|
|
|
|
"description": "Registrant: ROSEDUPONT85@YAHOO.FR",
|
|
|
|
"pattern": "[domain-name:value = 'localisation-apple-team.com']",
|
|
|
|
"pattern_type": "stix",
|
|
|
|
"pattern_version": "2.1",
|
|
|
|
"valid_from": "2016-06-28T12:15:18Z",
|
|
|
|
"kill_chain_phases": [
|
|
|
|
{
|
|
|
|
"kill_chain_name": "misp-category",
|
|
|
|
"phase_name": "Network activity"
|
|
|
|
}
|
|
|
|
],
|
|
|
|
"labels": [
|
|
|
|
"misp:type=\"domain\"",
|
|
|
|
"misp:category=\"Network activity\"",
|
|
|
|
"misp:to_ids=\"True\""
|
|
|
|
]
|
|
|
|
},
|
|
|
|
{
|
|
|
|
"type": "indicator",
|
|
|
|
"spec_version": "2.1",
|
|
|
|
"id": "indicator--57726a56-99e0-489b-9963-acb2950d210f",
|
|
|
|
"created_by_ref": "identity--55f6ea5f-fd34-43b8-ac1d-40cb950d210f",
|
|
|
|
"created": "2016-06-28T12:15:18.000Z",
|
|
|
|
"modified": "2016-06-28T12:15:18.000Z",
|
|
|
|
"description": "Registrant: ROSEDUPONT85@YAHOO.FR",
|
|
|
|
"pattern": "[domain-name:value = 'localisation-services-support.com']",
|
|
|
|
"pattern_type": "stix",
|
|
|
|
"pattern_version": "2.1",
|
|
|
|
"valid_from": "2016-06-28T12:15:18Z",
|
|
|
|
"kill_chain_phases": [
|
|
|
|
{
|
|
|
|
"kill_chain_name": "misp-category",
|
|
|
|
"phase_name": "Network activity"
|
|
|
|
}
|
|
|
|
],
|
|
|
|
"labels": [
|
|
|
|
"misp:type=\"domain\"",
|
|
|
|
"misp:category=\"Network activity\"",
|
|
|
|
"misp:to_ids=\"True\""
|
|
|
|
]
|
|
|
|
},
|
|
|
|
{
|
|
|
|
"type": "indicator",
|
|
|
|
"spec_version": "2.1",
|
|
|
|
"id": "indicator--57726a57-e03c-4cca-8d06-acb2950d210f",
|
|
|
|
"created_by_ref": "identity--55f6ea5f-fd34-43b8-ac1d-40cb950d210f",
|
|
|
|
"created": "2016-06-28T12:15:19.000Z",
|
|
|
|
"modified": "2016-06-28T12:15:19.000Z",
|
|
|
|
"description": "Registrant: ROSEDUPONT85@YAHOO.FR",
|
|
|
|
"pattern": "[domain-name:value = 'localisation-support.com']",
|
|
|
|
"pattern_type": "stix",
|
|
|
|
"pattern_version": "2.1",
|
|
|
|
"valid_from": "2016-06-28T12:15:19Z",
|
|
|
|
"kill_chain_phases": [
|
|
|
|
{
|
|
|
|
"kill_chain_name": "misp-category",
|
|
|
|
"phase_name": "Network activity"
|
|
|
|
}
|
|
|
|
],
|
|
|
|
"labels": [
|
|
|
|
"misp:type=\"domain\"",
|
|
|
|
"misp:category=\"Network activity\"",
|
|
|
|
"misp:to_ids=\"True\""
|
|
|
|
]
|
|
|
|
},
|
|
|
|
{
|
|
|
|
"type": "indicator",
|
|
|
|
"spec_version": "2.1",
|
|
|
|
"id": "indicator--57726a58-db8c-4b9d-8184-acb2950d210f",
|
|
|
|
"created_by_ref": "identity--55f6ea5f-fd34-43b8-ac1d-40cb950d210f",
|
|
|
|
"created": "2016-06-28T12:15:20.000Z",
|
|
|
|
"modified": "2016-06-28T12:15:20.000Z",
|
|
|
|
"description": "Registrant: ROSEDUPONT85@YAHOO.FR",
|
|
|
|
"pattern": "[domain-name:value = 'location-service-support.com']",
|
|
|
|
"pattern_type": "stix",
|
|
|
|
"pattern_version": "2.1",
|
|
|
|
"valid_from": "2016-06-28T12:15:20Z",
|
|
|
|
"kill_chain_phases": [
|
|
|
|
{
|
|
|
|
"kill_chain_name": "misp-category",
|
|
|
|
"phase_name": "Network activity"
|
|
|
|
}
|
|
|
|
],
|
|
|
|
"labels": [
|
|
|
|
"misp:type=\"domain\"",
|
|
|
|
"misp:category=\"Network activity\"",
|
|
|
|
"misp:to_ids=\"True\""
|
|
|
|
]
|
|
|
|
},
|
|
|
|
{
|
|
|
|
"type": "indicator",
|
|
|
|
"spec_version": "2.1",
|
|
|
|
"id": "indicator--57726a58-0a2c-4a4c-95ca-acb2950d210f",
|
|
|
|
"created_by_ref": "identity--55f6ea5f-fd34-43b8-ac1d-40cb950d210f",
|
|
|
|
"created": "2016-06-28T12:15:20.000Z",
|
|
|
|
"modified": "2016-06-28T12:15:20.000Z",
|
|
|
|
"description": "Registrant: ROSEDUPONT85@YAHOO.FR",
|
|
|
|
"pattern": "[domain-name:value = 'security-localisation.com']",
|
|
|
|
"pattern_type": "stix",
|
|
|
|
"pattern_version": "2.1",
|
|
|
|
"valid_from": "2016-06-28T12:15:20Z",
|
|
|
|
"kill_chain_phases": [
|
|
|
|
{
|
|
|
|
"kill_chain_name": "misp-category",
|
|
|
|
"phase_name": "Network activity"
|
|
|
|
}
|
|
|
|
],
|
|
|
|
"labels": [
|
|
|
|
"misp:type=\"domain\"",
|
|
|
|
"misp:category=\"Network activity\"",
|
|
|
|
"misp:to_ids=\"True\""
|
|
|
|
]
|
|
|
|
},
|
|
|
|
{
|
|
|
|
"type": "indicator",
|
|
|
|
"spec_version": "2.1",
|
|
|
|
"id": "indicator--57726a59-2e58-4eb1-a8ea-acb2950d210f",
|
|
|
|
"created_by_ref": "identity--55f6ea5f-fd34-43b8-ac1d-40cb950d210f",
|
|
|
|
"created": "2016-06-28T12:15:21.000Z",
|
|
|
|
"modified": "2016-06-28T12:15:21.000Z",
|
|
|
|
"description": "Registrant: ROSEDUPONT85@YAHOO.FR",
|
|
|
|
"pattern": "[domain-name:value = 'security-support-icloud.com']",
|
|
|
|
"pattern_type": "stix",
|
|
|
|
"pattern_version": "2.1",
|
|
|
|
"valid_from": "2016-06-28T12:15:21Z",
|
|
|
|
"kill_chain_phases": [
|
|
|
|
{
|
|
|
|
"kill_chain_name": "misp-category",
|
|
|
|
"phase_name": "Network activity"
|
|
|
|
}
|
|
|
|
],
|
|
|
|
"labels": [
|
|
|
|
"misp:type=\"domain\"",
|
|
|
|
"misp:category=\"Network activity\"",
|
|
|
|
"misp:to_ids=\"True\""
|
|
|
|
]
|
|
|
|
},
|
|
|
|
{
|
|
|
|
"type": "indicator",
|
|
|
|
"spec_version": "2.1",
|
|
|
|
"id": "indicator--57726a59-f9a4-4310-9eed-acb2950d210f",
|
|
|
|
"created_by_ref": "identity--55f6ea5f-fd34-43b8-ac1d-40cb950d210f",
|
|
|
|
"created": "2016-06-28T12:15:21.000Z",
|
|
|
|
"modified": "2016-06-28T12:15:21.000Z",
|
|
|
|
"description": "Registrant: ROSEDUPONT85@YAHOO.FR",
|
|
|
|
"pattern": "[domain-name:value = 'server-apple-localisation.com']",
|
|
|
|
"pattern_type": "stix",
|
|
|
|
"pattern_version": "2.1",
|
|
|
|
"valid_from": "2016-06-28T12:15:21Z",
|
|
|
|
"kill_chain_phases": [
|
|
|
|
{
|
|
|
|
"kill_chain_name": "misp-category",
|
|
|
|
"phase_name": "Network activity"
|
|
|
|
}
|
|
|
|
],
|
|
|
|
"labels": [
|
|
|
|
"misp:type=\"domain\"",
|
|
|
|
"misp:category=\"Network activity\"",
|
|
|
|
"misp:to_ids=\"True\""
|
|
|
|
]
|
|
|
|
},
|
|
|
|
{
|
|
|
|
"type": "indicator",
|
|
|
|
"spec_version": "2.1",
|
|
|
|
"id": "indicator--57726a5a-e710-4a1c-8806-acb2950d210f",
|
|
|
|
"created_by_ref": "identity--55f6ea5f-fd34-43b8-ac1d-40cb950d210f",
|
|
|
|
"created": "2016-06-28T12:15:22.000Z",
|
|
|
|
"modified": "2016-06-28T12:15:22.000Z",
|
|
|
|
"description": "Registrant: ROSEDUPONT85@YAHOO.FR",
|
|
|
|
"pattern": "[domain-name:value = 'server-apple.com']",
|
|
|
|
"pattern_type": "stix",
|
|
|
|
"pattern_version": "2.1",
|
|
|
|
"valid_from": "2016-06-28T12:15:22Z",
|
|
|
|
"kill_chain_phases": [
|
|
|
|
{
|
|
|
|
"kill_chain_name": "misp-category",
|
|
|
|
"phase_name": "Network activity"
|
|
|
|
}
|
|
|
|
],
|
|
|
|
"labels": [
|
|
|
|
"misp:type=\"domain\"",
|
|
|
|
"misp:category=\"Network activity\"",
|
|
|
|
"misp:to_ids=\"True\""
|
|
|
|
]
|
|
|
|
},
|
|
|
|
{
|
|
|
|
"type": "indicator",
|
|
|
|
"spec_version": "2.1",
|
|
|
|
"id": "indicator--57726a5a-f59c-40ae-a7f8-acb2950d210f",
|
|
|
|
"created_by_ref": "identity--55f6ea5f-fd34-43b8-ac1d-40cb950d210f",
|
|
|
|
"created": "2016-06-28T12:15:22.000Z",
|
|
|
|
"modified": "2016-06-28T12:15:22.000Z",
|
|
|
|
"description": "Registrant: ROSEDUPONT85@YAHOO.FR",
|
|
|
|
"pattern": "[domain-name:value = 'server-connexion.com']",
|
|
|
|
"pattern_type": "stix",
|
|
|
|
"pattern_version": "2.1",
|
|
|
|
"valid_from": "2016-06-28T12:15:22Z",
|
|
|
|
"kill_chain_phases": [
|
|
|
|
{
|
|
|
|
"kill_chain_name": "misp-category",
|
|
|
|
"phase_name": "Network activity"
|
|
|
|
}
|
|
|
|
],
|
|
|
|
"labels": [
|
|
|
|
"misp:type=\"domain\"",
|
|
|
|
"misp:category=\"Network activity\"",
|
|
|
|
"misp:to_ids=\"True\""
|
|
|
|
]
|
|
|
|
},
|
|
|
|
{
|
|
|
|
"type": "indicator",
|
|
|
|
"spec_version": "2.1",
|
|
|
|
"id": "indicator--57726a5b-f650-46e4-9c09-acb2950d210f",
|
|
|
|
"created_by_ref": "identity--55f6ea5f-fd34-43b8-ac1d-40cb950d210f",
|
|
|
|
"created": "2016-06-28T12:15:23.000Z",
|
|
|
|
"modified": "2016-06-28T12:15:23.000Z",
|
|
|
|
"description": "Registrant: ROSEDUPONT85@YAHOO.FR",
|
|
|
|
"pattern": "[domain-name:value = 'service-icloud-localisation.com']",
|
|
|
|
"pattern_type": "stix",
|
|
|
|
"pattern_version": "2.1",
|
|
|
|
"valid_from": "2016-06-28T12:15:23Z",
|
|
|
|
"kill_chain_phases": [
|
|
|
|
{
|
|
|
|
"kill_chain_name": "misp-category",
|
|
|
|
"phase_name": "Network activity"
|
|
|
|
}
|
|
|
|
],
|
|
|
|
"labels": [
|
|
|
|
"misp:type=\"domain\"",
|
|
|
|
"misp:category=\"Network activity\"",
|
|
|
|
"misp:to_ids=\"True\""
|
|
|
|
]
|
|
|
|
},
|
|
|
|
{
|
|
|
|
"type": "indicator",
|
|
|
|
"spec_version": "2.1",
|
|
|
|
"id": "indicator--57726a5b-6ea4-4d7e-a60c-acb2950d210f",
|
|
|
|
"created_by_ref": "identity--55f6ea5f-fd34-43b8-ac1d-40cb950d210f",
|
|
|
|
"created": "2016-06-28T12:15:23.000Z",
|
|
|
|
"modified": "2016-06-28T12:15:23.000Z",
|
|
|
|
"description": "Registrant: ROSEDUPONT85@YAHOO.FR",
|
|
|
|
"pattern": "[domain-name:value = 'service-id-icloud.com']",
|
|
|
|
"pattern_type": "stix",
|
|
|
|
"pattern_version": "2.1",
|
|
|
|
"valid_from": "2016-06-28T12:15:23Z",
|
|
|
|
"kill_chain_phases": [
|
|
|
|
{
|
|
|
|
"kill_chain_name": "misp-category",
|
|
|
|
"phase_name": "Network activity"
|
|
|
|
}
|
|
|
|
],
|
|
|
|
"labels": [
|
|
|
|
"misp:type=\"domain\"",
|
|
|
|
"misp:category=\"Network activity\"",
|
|
|
|
"misp:to_ids=\"True\""
|
|
|
|
]
|
|
|
|
},
|
|
|
|
{
|
|
|
|
"type": "indicator",
|
|
|
|
"spec_version": "2.1",
|
|
|
|
"id": "indicator--57726a5c-b7ac-4939-bb02-acb2950d210f",
|
|
|
|
"created_by_ref": "identity--55f6ea5f-fd34-43b8-ac1d-40cb950d210f",
|
|
|
|
"created": "2016-06-28T12:15:24.000Z",
|
|
|
|
"modified": "2016-06-28T12:15:24.000Z",
|
|
|
|
"description": "Registrant: ROSEDUPONT85@YAHOO.FR",
|
|
|
|
"pattern": "[domain-name:value = 'service-localisation-icloud.com']",
|
|
|
|
"pattern_type": "stix",
|
|
|
|
"pattern_version": "2.1",
|
|
|
|
"valid_from": "2016-06-28T12:15:24Z",
|
|
|
|
"kill_chain_phases": [
|
|
|
|
{
|
|
|
|
"kill_chain_name": "misp-category",
|
|
|
|
"phase_name": "Network activity"
|
|
|
|
}
|
|
|
|
],
|
|
|
|
"labels": [
|
|
|
|
"misp:type=\"domain\"",
|
|
|
|
"misp:category=\"Network activity\"",
|
|
|
|
"misp:to_ids=\"True\""
|
|
|
|
]
|
|
|
|
},
|
|
|
|
{
|
|
|
|
"type": "indicator",
|
|
|
|
"spec_version": "2.1",
|
|
|
|
"id": "indicator--57726a5c-9eb4-43b8-ae29-acb2950d210f",
|
|
|
|
"created_by_ref": "identity--55f6ea5f-fd34-43b8-ac1d-40cb950d210f",
|
|
|
|
"created": "2016-06-28T12:15:24.000Z",
|
|
|
|
"modified": "2016-06-28T12:15:24.000Z",
|
|
|
|
"description": "Registrant: ROSEDUPONT85@YAHOO.FR",
|
|
|
|
"pattern": "[domain-name:value = 'service-localisation.com']",
|
|
|
|
"pattern_type": "stix",
|
|
|
|
"pattern_version": "2.1",
|
|
|
|
"valid_from": "2016-06-28T12:15:24Z",
|
|
|
|
"kill_chain_phases": [
|
|
|
|
{
|
|
|
|
"kill_chain_name": "misp-category",
|
|
|
|
"phase_name": "Network activity"
|
|
|
|
}
|
|
|
|
],
|
|
|
|
"labels": [
|
|
|
|
"misp:type=\"domain\"",
|
|
|
|
"misp:category=\"Network activity\"",
|
|
|
|
"misp:to_ids=\"True\""
|
|
|
|
]
|
|
|
|
},
|
|
|
|
{
|
|
|
|
"type": "indicator",
|
|
|
|
"spec_version": "2.1",
|
|
|
|
"id": "indicator--57726a5d-f4ac-41c3-ba08-acb2950d210f",
|
|
|
|
"created_by_ref": "identity--55f6ea5f-fd34-43b8-ac1d-40cb950d210f",
|
|
|
|
"created": "2016-06-28T12:15:25.000Z",
|
|
|
|
"modified": "2016-06-28T12:15:25.000Z",
|
|
|
|
"description": "Registrant: ROSEDUPONT85@YAHOO.FR",
|
|
|
|
"pattern": "[domain-name:value = 'service-location-support.com']",
|
|
|
|
"pattern_type": "stix",
|
|
|
|
"pattern_version": "2.1",
|
|
|
|
"valid_from": "2016-06-28T12:15:25Z",
|
|
|
|
"kill_chain_phases": [
|
|
|
|
{
|
|
|
|
"kill_chain_name": "misp-category",
|
|
|
|
"phase_name": "Network activity"
|
|
|
|
}
|
|
|
|
],
|
|
|
|
"labels": [
|
|
|
|
"misp:type=\"domain\"",
|
|
|
|
"misp:category=\"Network activity\"",
|
|
|
|
"misp:to_ids=\"True\""
|
|
|
|
]
|
|
|
|
},
|
|
|
|
{
|
|
|
|
"type": "indicator",
|
|
|
|
"spec_version": "2.1",
|
|
|
|
"id": "indicator--57726a5d-70bc-4add-939e-acb2950d210f",
|
|
|
|
"created_by_ref": "identity--55f6ea5f-fd34-43b8-ac1d-40cb950d210f",
|
|
|
|
"created": "2016-06-28T12:15:25.000Z",
|
|
|
|
"modified": "2016-06-28T12:15:25.000Z",
|
|
|
|
"description": "Registrant: ROSEDUPONT85@YAHOO.FR",
|
|
|
|
"pattern": "[domain-name:value = 'service-support-location.com']",
|
|
|
|
"pattern_type": "stix",
|
|
|
|
"pattern_version": "2.1",
|
|
|
|
"valid_from": "2016-06-28T12:15:25Z",
|
|
|
|
"kill_chain_phases": [
|
|
|
|
{
|
|
|
|
"kill_chain_name": "misp-category",
|
|
|
|
"phase_name": "Network activity"
|
|
|
|
}
|
|
|
|
],
|
|
|
|
"labels": [
|
|
|
|
"misp:type=\"domain\"",
|
|
|
|
"misp:category=\"Network activity\"",
|
|
|
|
"misp:to_ids=\"True\""
|
|
|
|
]
|
|
|
|
},
|
|
|
|
{
|
|
|
|
"type": "indicator",
|
|
|
|
"spec_version": "2.1",
|
|
|
|
"id": "indicator--57726a5e-4c80-4569-a114-acb2950d210f",
|
|
|
|
"created_by_ref": "identity--55f6ea5f-fd34-43b8-ac1d-40cb950d210f",
|
|
|
|
"created": "2016-06-28T12:15:26.000Z",
|
|
|
|
"modified": "2016-06-28T12:15:26.000Z",
|
|
|
|
"description": "Registrant: ROSEDUPONT85@YAHOO.FR",
|
|
|
|
"pattern": "[domain-name:value = 'support-apple-id-service.com']",
|
|
|
|
"pattern_type": "stix",
|
|
|
|
"pattern_version": "2.1",
|
|
|
|
"valid_from": "2016-06-28T12:15:26Z",
|
|
|
|
"kill_chain_phases": [
|
|
|
|
{
|
|
|
|
"kill_chain_name": "misp-category",
|
|
|
|
"phase_name": "Network activity"
|
|
|
|
}
|
|
|
|
],
|
|
|
|
"labels": [
|
|
|
|
"misp:type=\"domain\"",
|
|
|
|
"misp:category=\"Network activity\"",
|
|
|
|
"misp:to_ids=\"True\""
|
|
|
|
]
|
|
|
|
},
|
|
|
|
{
|
|
|
|
"type": "indicator",
|
|
|
|
"spec_version": "2.1",
|
|
|
|
"id": "indicator--57726a5f-c630-43f6-bfc7-acb2950d210f",
|
|
|
|
"created_by_ref": "identity--55f6ea5f-fd34-43b8-ac1d-40cb950d210f",
|
|
|
|
"created": "2016-06-28T12:15:27.000Z",
|
|
|
|
"modified": "2016-06-28T12:15:27.000Z",
|
|
|
|
"description": "Registrant: ROSEDUPONT85@YAHOO.FR",
|
|
|
|
"pattern": "[domain-name:value = 'support-apple-service.com']",
|
|
|
|
"pattern_type": "stix",
|
|
|
|
"pattern_version": "2.1",
|
|
|
|
"valid_from": "2016-06-28T12:15:27Z",
|
|
|
|
"kill_chain_phases": [
|
|
|
|
{
|
|
|
|
"kill_chain_name": "misp-category",
|
|
|
|
"phase_name": "Network activity"
|
|
|
|
}
|
|
|
|
],
|
|
|
|
"labels": [
|
|
|
|
"misp:type=\"domain\"",
|
|
|
|
"misp:category=\"Network activity\"",
|
|
|
|
"misp:to_ids=\"True\""
|
|
|
|
]
|
|
|
|
},
|
|
|
|
{
|
|
|
|
"type": "indicator",
|
|
|
|
"spec_version": "2.1",
|
|
|
|
"id": "indicator--57726a5f-40dc-491b-b9b0-acb2950d210f",
|
|
|
|
"created_by_ref": "identity--55f6ea5f-fd34-43b8-ac1d-40cb950d210f",
|
|
|
|
"created": "2016-06-28T12:15:27.000Z",
|
|
|
|
"modified": "2016-06-28T12:15:27.000Z",
|
|
|
|
"description": "Registrant: ROSEDUPONT85@YAHOO.FR",
|
|
|
|
"pattern": "[domain-name:value = 'support-icloud-service.com']",
|
|
|
|
"pattern_type": "stix",
|
|
|
|
"pattern_version": "2.1",
|
|
|
|
"valid_from": "2016-06-28T12:15:27Z",
|
|
|
|
"kill_chain_phases": [
|
|
|
|
{
|
|
|
|
"kill_chain_name": "misp-category",
|
|
|
|
"phase_name": "Network activity"
|
|
|
|
}
|
|
|
|
],
|
|
|
|
"labels": [
|
|
|
|
"misp:type=\"domain\"",
|
|
|
|
"misp:category=\"Network activity\"",
|
|
|
|
"misp:to_ids=\"True\""
|
|
|
|
]
|
|
|
|
},
|
|
|
|
{
|
|
|
|
"type": "indicator",
|
|
|
|
"spec_version": "2.1",
|
|
|
|
"id": "indicator--57726a60-a91c-46f6-9621-acb2950d210f",
|
|
|
|
"created_by_ref": "identity--55f6ea5f-fd34-43b8-ac1d-40cb950d210f",
|
|
|
|
"created": "2016-06-28T12:15:28.000Z",
|
|
|
|
"modified": "2016-06-28T12:15:28.000Z",
|
|
|
|
"description": "Registrant: ROSEDUPONT85@YAHOO.FR",
|
|
|
|
"pattern": "[domain-name:value = 'support-localisation-security.com']",
|
|
|
|
"pattern_type": "stix",
|
|
|
|
"pattern_version": "2.1",
|
|
|
|
"valid_from": "2016-06-28T12:15:28Z",
|
|
|
|
"kill_chain_phases": [
|
|
|
|
{
|
|
|
|
"kill_chain_name": "misp-category",
|
|
|
|
"phase_name": "Network activity"
|
|
|
|
}
|
|
|
|
],
|
|
|
|
"labels": [
|
|
|
|
"misp:type=\"domain\"",
|
|
|
|
"misp:category=\"Network activity\"",
|
|
|
|
"misp:to_ids=\"True\""
|
|
|
|
]
|
|
|
|
},
|
|
|
|
{
|
|
|
|
"type": "indicator",
|
|
|
|
"spec_version": "2.1",
|
|
|
|
"id": "indicator--57726a60-a918-4c76-969e-acb2950d210f",
|
|
|
|
"created_by_ref": "identity--55f6ea5f-fd34-43b8-ac1d-40cb950d210f",
|
|
|
|
"created": "2016-06-28T12:15:28.000Z",
|
|
|
|
"modified": "2016-06-28T12:15:28.000Z",
|
|
|
|
"description": "Registrant: ROSEDUPONT85@YAHOO.FR",
|
|
|
|
"pattern": "[domain-name:value = 'support-localisation-service.com']",
|
|
|
|
"pattern_type": "stix",
|
|
|
|
"pattern_version": "2.1",
|
|
|
|
"valid_from": "2016-06-28T12:15:28Z",
|
|
|
|
"kill_chain_phases": [
|
|
|
|
{
|
|
|
|
"kill_chain_name": "misp-category",
|
|
|
|
"phase_name": "Network activity"
|
|
|
|
}
|
|
|
|
],
|
|
|
|
"labels": [
|
|
|
|
"misp:type=\"domain\"",
|
|
|
|
"misp:category=\"Network activity\"",
|
|
|
|
"misp:to_ids=\"True\""
|
|
|
|
]
|
|
|
|
},
|
|
|
|
{
|
|
|
|
"type": "indicator",
|
|
|
|
"spec_version": "2.1",
|
|
|
|
"id": "indicator--57726a61-6f3c-4ea1-bf42-acb2950d210f",
|
|
|
|
"created_by_ref": "identity--55f6ea5f-fd34-43b8-ac1d-40cb950d210f",
|
|
|
|
"created": "2016-06-28T12:15:29.000Z",
|
|
|
|
"modified": "2016-06-28T12:15:29.000Z",
|
|
|
|
"description": "Registrant: ROSEDUPONT85@YAHOO.FR",
|
|
|
|
"pattern": "[domain-name:value = 'support-location-service.com']",
|
|
|
|
"pattern_type": "stix",
|
|
|
|
"pattern_version": "2.1",
|
|
|
|
"valid_from": "2016-06-28T12:15:29Z",
|
|
|
|
"kill_chain_phases": [
|
|
|
|
{
|
|
|
|
"kill_chain_name": "misp-category",
|
|
|
|
"phase_name": "Network activity"
|
|
|
|
}
|
|
|
|
],
|
|
|
|
"labels": [
|
|
|
|
"misp:type=\"domain\"",
|
|
|
|
"misp:category=\"Network activity\"",
|
|
|
|
"misp:to_ids=\"True\""
|
|
|
|
]
|
|
|
|
},
|
|
|
|
{
|
|
|
|
"type": "indicator",
|
|
|
|
"spec_version": "2.1",
|
|
|
|
"id": "indicator--57726a61-f41c-4be9-bb54-acb2950d210f",
|
|
|
|
"created_by_ref": "identity--55f6ea5f-fd34-43b8-ac1d-40cb950d210f",
|
|
|
|
"created": "2016-06-28T12:15:29.000Z",
|
|
|
|
"modified": "2016-06-28T12:15:29.000Z",
|
|
|
|
"description": "Registrant: ROSEDUPONT85@YAHOO.FR",
|
|
|
|
"pattern": "[domain-name:value = 'support-security-apple.com']",
|
|
|
|
"pattern_type": "stix",
|
|
|
|
"pattern_version": "2.1",
|
|
|
|
"valid_from": "2016-06-28T12:15:29Z",
|
|
|
|
"kill_chain_phases": [
|
|
|
|
{
|
|
|
|
"kill_chain_name": "misp-category",
|
|
|
|
"phase_name": "Network activity"
|
|
|
|
}
|
|
|
|
],
|
|
|
|
"labels": [
|
|
|
|
"misp:type=\"domain\"",
|
|
|
|
"misp:category=\"Network activity\"",
|
|
|
|
"misp:to_ids=\"True\""
|
|
|
|
]
|
|
|
|
},
|
|
|
|
{
|
|
|
|
"type": "indicator",
|
|
|
|
"spec_version": "2.1",
|
|
|
|
"id": "indicator--57726a62-9b88-4192-98bf-acb2950d210f",
|
|
|
|
"created_by_ref": "identity--55f6ea5f-fd34-43b8-ac1d-40cb950d210f",
|
|
|
|
"created": "2016-06-28T12:15:30.000Z",
|
|
|
|
"modified": "2016-06-28T12:15:30.000Z",
|
|
|
|
"description": "Registrant: ROSEDUPONT85@YAHOO.FR",
|
|
|
|
"pattern": "[domain-name:value = 'support-service-apple.com']",
|
|
|
|
"pattern_type": "stix",
|
|
|
|
"pattern_version": "2.1",
|
|
|
|
"valid_from": "2016-06-28T12:15:30Z",
|
|
|
|
"kill_chain_phases": [
|
|
|
|
{
|
|
|
|
"kill_chain_name": "misp-category",
|
|
|
|
"phase_name": "Network activity"
|
|
|
|
}
|
|
|
|
],
|
|
|
|
"labels": [
|
|
|
|
"misp:type=\"domain\"",
|
|
|
|
"misp:category=\"Network activity\"",
|
|
|
|
"misp:to_ids=\"True\""
|
|
|
|
]
|
|
|
|
},
|
|
|
|
{
|
|
|
|
"type": "indicator",
|
|
|
|
"spec_version": "2.1",
|
|
|
|
"id": "indicator--57726a62-6c28-400b-9959-acb2950d210f",
|
|
|
|
"created_by_ref": "identity--55f6ea5f-fd34-43b8-ac1d-40cb950d210f",
|
|
|
|
"created": "2016-06-28T12:15:30.000Z",
|
|
|
|
"modified": "2016-06-28T12:15:30.000Z",
|
|
|
|
"description": "Registrant: ROSEDUPONT85@YAHOO.FR",
|
|
|
|
"pattern": "[domain-name:value = 'support-service-localisation.com']",
|
|
|
|
"pattern_type": "stix",
|
|
|
|
"pattern_version": "2.1",
|
|
|
|
"valid_from": "2016-06-28T12:15:30Z",
|
|
|
|
"kill_chain_phases": [
|
|
|
|
{
|
|
|
|
"kill_chain_name": "misp-category",
|
|
|
|
"phase_name": "Network activity"
|
|
|
|
}
|
|
|
|
],
|
|
|
|
"labels": [
|
|
|
|
"misp:type=\"domain\"",
|
|
|
|
"misp:category=\"Network activity\"",
|
|
|
|
"misp:to_ids=\"True\""
|
|
|
|
]
|
|
|
|
},
|
|
|
|
{
|
|
|
|
"type": "indicator",
|
|
|
|
"spec_version": "2.1",
|
|
|
|
"id": "indicator--57726abd-45e8-494f-aeb1-484a950d210f",
|
|
|
|
"created_by_ref": "identity--55f6ea5f-fd34-43b8-ac1d-40cb950d210f",
|
|
|
|
"created": "2016-06-28T12:17:01.000Z",
|
|
|
|
"modified": "2016-06-28T12:17:01.000Z",
|
|
|
|
"description": "Registrant: HIZLIVZ@GMAIL.COM",
|
|
|
|
"pattern": "[domain-name:value = 'apple-icloud-identification.com']",
|
|
|
|
"pattern_type": "stix",
|
|
|
|
"pattern_version": "2.1",
|
|
|
|
"valid_from": "2016-06-28T12:17:01Z",
|
|
|
|
"kill_chain_phases": [
|
|
|
|
{
|
|
|
|
"kill_chain_name": "misp-category",
|
|
|
|
"phase_name": "Network activity"
|
|
|
|
}
|
|
|
|
],
|
|
|
|
"labels": [
|
|
|
|
"misp:type=\"domain\"",
|
|
|
|
"misp:category=\"Network activity\"",
|
|
|
|
"misp:to_ids=\"True\""
|
|
|
|
]
|
|
|
|
},
|
|
|
|
{
|
|
|
|
"type": "indicator",
|
|
|
|
"spec_version": "2.1",
|
|
|
|
"id": "indicator--57726abd-e794-424e-a2fa-445d950d210f",
|
|
|
|
"created_by_ref": "identity--55f6ea5f-fd34-43b8-ac1d-40cb950d210f",
|
|
|
|
"created": "2016-06-28T12:17:01.000Z",
|
|
|
|
"modified": "2016-06-28T12:17:01.000Z",
|
|
|
|
"description": "Registrant: HIZLIVZ@GMAIL.COM",
|
|
|
|
"pattern": "[domain-name:value = 'apple-icloudidentification.com']",
|
|
|
|
"pattern_type": "stix",
|
|
|
|
"pattern_version": "2.1",
|
|
|
|
"valid_from": "2016-06-28T12:17:01Z",
|
|
|
|
"kill_chain_phases": [
|
|
|
|
{
|
|
|
|
"kill_chain_name": "misp-category",
|
|
|
|
"phase_name": "Network activity"
|
|
|
|
}
|
|
|
|
],
|
|
|
|
"labels": [
|
|
|
|
"misp:type=\"domain\"",
|
|
|
|
"misp:category=\"Network activity\"",
|
|
|
|
"misp:to_ids=\"True\""
|
|
|
|
]
|
|
|
|
},
|
|
|
|
{
|
|
|
|
"type": "indicator",
|
|
|
|
"spec_version": "2.1",
|
|
|
|
"id": "indicator--57726abe-9690-41f4-9c8d-45fe950d210f",
|
|
|
|
"created_by_ref": "identity--55f6ea5f-fd34-43b8-ac1d-40cb950d210f",
|
|
|
|
"created": "2016-06-28T12:17:02.000Z",
|
|
|
|
"modified": "2016-06-28T12:17:02.000Z",
|
|
|
|
"description": "Registrant: HIZLIVZ@GMAIL.COM",
|
|
|
|
"pattern": "[domain-name:value = 'apple-icloudsecurity.com']",
|
|
|
|
"pattern_type": "stix",
|
|
|
|
"pattern_version": "2.1",
|
|
|
|
"valid_from": "2016-06-28T12:17:02Z",
|
|
|
|
"kill_chain_phases": [
|
|
|
|
{
|
|
|
|
"kill_chain_name": "misp-category",
|
|
|
|
"phase_name": "Network activity"
|
|
|
|
}
|
|
|
|
],
|
|
|
|
"labels": [
|
|
|
|
"misp:type=\"domain\"",
|
|
|
|
"misp:category=\"Network activity\"",
|
|
|
|
"misp:to_ids=\"True\""
|
|
|
|
]
|
|
|
|
},
|
|
|
|
{
|
|
|
|
"type": "indicator",
|
|
|
|
"spec_version": "2.1",
|
|
|
|
"id": "indicator--57726abe-82e4-4c72-9a93-4ab5950d210f",
|
|
|
|
"created_by_ref": "identity--55f6ea5f-fd34-43b8-ac1d-40cb950d210f",
|
|
|
|
"created": "2016-06-28T12:17:02.000Z",
|
|
|
|
"modified": "2016-06-28T12:17:02.000Z",
|
|
|
|
"description": "Registrant: HIZLIVZ@GMAIL.COM",
|
|
|
|
"pattern": "[domain-name:value = 'apple-idsecurity.com']",
|
|
|
|
"pattern_type": "stix",
|
|
|
|
"pattern_version": "2.1",
|
|
|
|
"valid_from": "2016-06-28T12:17:02Z",
|
|
|
|
"kill_chain_phases": [
|
|
|
|
{
|
|
|
|
"kill_chain_name": "misp-category",
|
|
|
|
"phase_name": "Network activity"
|
|
|
|
}
|
|
|
|
],
|
|
|
|
"labels": [
|
|
|
|
"misp:type=\"domain\"",
|
|
|
|
"misp:category=\"Network activity\"",
|
|
|
|
"misp:to_ids=\"True\""
|
|
|
|
]
|
|
|
|
},
|
|
|
|
{
|
|
|
|
"type": "indicator",
|
|
|
|
"spec_version": "2.1",
|
|
|
|
"id": "indicator--57726abf-d868-432b-8025-4650950d210f",
|
|
|
|
"created_by_ref": "identity--55f6ea5f-fd34-43b8-ac1d-40cb950d210f",
|
|
|
|
"created": "2016-06-28T12:17:03.000Z",
|
|
|
|
"modified": "2016-06-28T12:17:03.000Z",
|
|
|
|
"description": "Registrant: HIZLIVZ@GMAIL.COM",
|
|
|
|
"pattern": "[domain-name:value = 'apple-iphone-security.com']",
|
|
|
|
"pattern_type": "stix",
|
|
|
|
"pattern_version": "2.1",
|
|
|
|
"valid_from": "2016-06-28T12:17:03Z",
|
|
|
|
"kill_chain_phases": [
|
|
|
|
{
|
|
|
|
"kill_chain_name": "misp-category",
|
|
|
|
"phase_name": "Network activity"
|
|
|
|
}
|
|
|
|
],
|
|
|
|
"labels": [
|
|
|
|
"misp:type=\"domain\"",
|
|
|
|
"misp:category=\"Network activity\"",
|
|
|
|
"misp:to_ids=\"True\""
|
|
|
|
]
|
|
|
|
},
|
|
|
|
{
|
|
|
|
"type": "indicator",
|
|
|
|
"spec_version": "2.1",
|
|
|
|
"id": "indicator--57726abf-d600-4ce5-81fb-492f950d210f",
|
|
|
|
"created_by_ref": "identity--55f6ea5f-fd34-43b8-ac1d-40cb950d210f",
|
|
|
|
"created": "2016-06-28T12:17:03.000Z",
|
|
|
|
"modified": "2016-06-28T12:17:03.000Z",
|
|
|
|
"description": "Registrant: HIZLIVZ@GMAIL.COM",
|
|
|
|
"pattern": "[domain-name:value = 'apple-localisation-team.com']",
|
|
|
|
"pattern_type": "stix",
|
|
|
|
"pattern_version": "2.1",
|
|
|
|
"valid_from": "2016-06-28T12:17:03Z",
|
|
|
|
"kill_chain_phases": [
|
|
|
|
{
|
|
|
|
"kill_chain_name": "misp-category",
|
|
|
|
"phase_name": "Network activity"
|
|
|
|
}
|
|
|
|
],
|
|
|
|
"labels": [
|
|
|
|
"misp:type=\"domain\"",
|
|
|
|
"misp:category=\"Network activity\"",
|
|
|
|
"misp:to_ids=\"True\""
|
|
|
|
]
|
|
|
|
},
|
|
|
|
{
|
|
|
|
"type": "indicator",
|
|
|
|
"spec_version": "2.1",
|
|
|
|
"id": "indicator--57726ac0-7498-4a95-818f-487b950d210f",
|
|
|
|
"created_by_ref": "identity--55f6ea5f-fd34-43b8-ac1d-40cb950d210f",
|
|
|
|
"created": "2016-06-28T12:17:04.000Z",
|
|
|
|
"modified": "2016-06-28T12:17:04.000Z",
|
|
|
|
"description": "Registrant: HIZLIVZ@GMAIL.COM",
|
|
|
|
"pattern": "[domain-name:value = 'apple-security-localisation.com']",
|
|
|
|
"pattern_type": "stix",
|
|
|
|
"pattern_version": "2.1",
|
|
|
|
"valid_from": "2016-06-28T12:17:04Z",
|
|
|
|
"kill_chain_phases": [
|
|
|
|
{
|
|
|
|
"kill_chain_name": "misp-category",
|
|
|
|
"phase_name": "Network activity"
|
|
|
|
}
|
|
|
|
],
|
|
|
|
"labels": [
|
|
|
|
"misp:type=\"domain\"",
|
|
|
|
"misp:category=\"Network activity\"",
|
|
|
|
"misp:to_ids=\"True\""
|
|
|
|
]
|
|
|
|
},
|
|
|
|
{
|
|
|
|
"type": "indicator",
|
|
|
|
"spec_version": "2.1",
|
|
|
|
"id": "indicator--57726ac0-7d70-4b7e-a77f-45ef950d210f",
|
|
|
|
"created_by_ref": "identity--55f6ea5f-fd34-43b8-ac1d-40cb950d210f",
|
|
|
|
"created": "2016-06-28T12:17:04.000Z",
|
|
|
|
"modified": "2016-06-28T12:17:04.000Z",
|
|
|
|
"description": "Registrant: HIZLIVZ@GMAIL.COM",
|
|
|
|
"pattern": "[domain-name:value = 'apple-service-id.com']",
|
|
|
|
"pattern_type": "stix",
|
|
|
|
"pattern_version": "2.1",
|
|
|
|
"valid_from": "2016-06-28T12:17:04Z",
|
|
|
|
"kill_chain_phases": [
|
|
|
|
{
|
|
|
|
"kill_chain_name": "misp-category",
|
|
|
|
"phase_name": "Network activity"
|
|
|
|
}
|
|
|
|
],
|
|
|
|
"labels": [
|
|
|
|
"misp:type=\"domain\"",
|
|
|
|
"misp:category=\"Network activity\"",
|
|
|
|
"misp:to_ids=\"True\""
|
|
|
|
]
|
|
|
|
},
|
|
|
|
{
|
|
|
|
"type": "indicator",
|
|
|
|
"spec_version": "2.1",
|
|
|
|
"id": "indicator--57726ac1-c88c-437e-b7cf-4c19950d210f",
|
|
|
|
"created_by_ref": "identity--55f6ea5f-fd34-43b8-ac1d-40cb950d210f",
|
|
|
|
"created": "2016-06-28T12:17:05.000Z",
|
|
|
|
"modified": "2016-06-28T12:17:05.000Z",
|
|
|
|
"description": "Registrant: HIZLIVZ@GMAIL.COM",
|
|
|
|
"pattern": "[domain-name:value = 'apple-support-icloud-id.com']",
|
|
|
|
"pattern_type": "stix",
|
|
|
|
"pattern_version": "2.1",
|
|
|
|
"valid_from": "2016-06-28T12:17:05Z",
|
|
|
|
"kill_chain_phases": [
|
|
|
|
{
|
|
|
|
"kill_chain_name": "misp-category",
|
|
|
|
"phase_name": "Network activity"
|
|
|
|
}
|
|
|
|
],
|
|
|
|
"labels": [
|
|
|
|
"misp:type=\"domain\"",
|
|
|
|
"misp:category=\"Network activity\"",
|
|
|
|
"misp:to_ids=\"True\""
|
|
|
|
]
|
|
|
|
},
|
|
|
|
{
|
|
|
|
"type": "indicator",
|
|
|
|
"spec_version": "2.1",
|
|
|
|
"id": "indicator--57726ac1-c184-4cfd-8206-4d7d950d210f",
|
|
|
|
"created_by_ref": "identity--55f6ea5f-fd34-43b8-ac1d-40cb950d210f",
|
|
|
|
"created": "2016-06-28T12:17:05.000Z",
|
|
|
|
"modified": "2016-06-28T12:17:05.000Z",
|
|
|
|
"description": "Registrant: HIZLIVZ@GMAIL.COM",
|
|
|
|
"pattern": "[domain-name:value = 'apple-supportsecurity.com']",
|
|
|
|
"pattern_type": "stix",
|
|
|
|
"pattern_version": "2.1",
|
|
|
|
"valid_from": "2016-06-28T12:17:05Z",
|
|
|
|
"kill_chain_phases": [
|
|
|
|
{
|
|
|
|
"kill_chain_name": "misp-category",
|
|
|
|
"phase_name": "Network activity"
|
|
|
|
}
|
|
|
|
],
|
|
|
|
"labels": [
|
|
|
|
"misp:type=\"domain\"",
|
|
|
|
"misp:category=\"Network activity\"",
|
|
|
|
"misp:to_ids=\"True\""
|
|
|
|
]
|
|
|
|
},
|
|
|
|
{
|
|
|
|
"type": "indicator",
|
|
|
|
"spec_version": "2.1",
|
|
|
|
"id": "indicator--57726ac2-6d50-4871-a964-4390950d210f",
|
|
|
|
"created_by_ref": "identity--55f6ea5f-fd34-43b8-ac1d-40cb950d210f",
|
|
|
|
"created": "2016-06-28T12:17:06.000Z",
|
|
|
|
"modified": "2016-06-28T12:17:06.000Z",
|
|
|
|
"description": "Registrant: HIZLIVZ@GMAIL.COM",
|
|
|
|
"pattern": "[domain-name:value = 'appleicloud-security.com']",
|
|
|
|
"pattern_type": "stix",
|
|
|
|
"pattern_version": "2.1",
|
|
|
|
"valid_from": "2016-06-28T12:17:06Z",
|
|
|
|
"kill_chain_phases": [
|
|
|
|
{
|
|
|
|
"kill_chain_name": "misp-category",
|
|
|
|
"phase_name": "Network activity"
|
|
|
|
}
|
|
|
|
],
|
|
|
|
"labels": [
|
|
|
|
"misp:type=\"domain\"",
|
|
|
|
"misp:category=\"Network activity\"",
|
|
|
|
"misp:to_ids=\"True\""
|
|
|
|
]
|
|
|
|
},
|
|
|
|
{
|
|
|
|
"type": "indicator",
|
|
|
|
"spec_version": "2.1",
|
|
|
|
"id": "indicator--57726ac2-f9c4-4da5-8c01-4e7b950d210f",
|
|
|
|
"created_by_ref": "identity--55f6ea5f-fd34-43b8-ac1d-40cb950d210f",
|
|
|
|
"created": "2016-06-28T12:17:06.000Z",
|
|
|
|
"modified": "2016-06-28T12:17:06.000Z",
|
|
|
|
"description": "Registrant: HIZLIVZ@GMAIL.COM",
|
|
|
|
"pattern": "[domain-name:value = 'appleidinside.com']",
|
|
|
|
"pattern_type": "stix",
|
|
|
|
"pattern_version": "2.1",
|
|
|
|
"valid_from": "2016-06-28T12:17:06Z",
|
|
|
|
"kill_chain_phases": [
|
|
|
|
{
|
|
|
|
"kill_chain_name": "misp-category",
|
|
|
|
"phase_name": "Network activity"
|
|
|
|
}
|
|
|
|
],
|
|
|
|
"labels": [
|
|
|
|
"misp:type=\"domain\"",
|
|
|
|
"misp:category=\"Network activity\"",
|
|
|
|
"misp:to_ids=\"True\""
|
|
|
|
]
|
|
|
|
},
|
|
|
|
{
|
|
|
|
"type": "indicator",
|
|
|
|
"spec_version": "2.1",
|
|
|
|
"id": "indicator--57726ac3-8d48-44f3-8c43-433e950d210f",
|
|
|
|
"created_by_ref": "identity--55f6ea5f-fd34-43b8-ac1d-40cb950d210f",
|
|
|
|
"created": "2016-06-28T12:17:07.000Z",
|
|
|
|
"modified": "2016-06-28T12:17:07.000Z",
|
|
|
|
"description": "Registrant: HIZLIVZ@GMAIL.COM",
|
|
|
|
"pattern": "[domain-name:value = 'cloudaccount-id.com']",
|
|
|
|
"pattern_type": "stix",
|
|
|
|
"pattern_version": "2.1",
|
|
|
|
"valid_from": "2016-06-28T12:17:07Z",
|
|
|
|
"kill_chain_phases": [
|
|
|
|
{
|
|
|
|
"kill_chain_name": "misp-category",
|
|
|
|
"phase_name": "Network activity"
|
|
|
|
}
|
|
|
|
],
|
|
|
|
"labels": [
|
|
|
|
"misp:type=\"domain\"",
|
|
|
|
"misp:category=\"Network activity\"",
|
|
|
|
"misp:to_ids=\"True\""
|
|
|
|
]
|
|
|
|
},
|
|
|
|
{
|
|
|
|
"type": "indicator",
|
|
|
|
"spec_version": "2.1",
|
|
|
|
"id": "indicator--57726ac3-47dc-4d13-90db-4840950d210f",
|
|
|
|
"created_by_ref": "identity--55f6ea5f-fd34-43b8-ac1d-40cb950d210f",
|
|
|
|
"created": "2016-06-28T12:17:07.000Z",
|
|
|
|
"modified": "2016-06-28T12:17:07.000Z",
|
|
|
|
"description": "Registrant: HIZLIVZ@GMAIL.COM",
|
|
|
|
"pattern": "[domain-name:value = 'cloudaccount-support.com']",
|
|
|
|
"pattern_type": "stix",
|
|
|
|
"pattern_version": "2.1",
|
|
|
|
"valid_from": "2016-06-28T12:17:07Z",
|
|
|
|
"kill_chain_phases": [
|
|
|
|
{
|
|
|
|
"kill_chain_name": "misp-category",
|
|
|
|
"phase_name": "Network activity"
|
|
|
|
}
|
|
|
|
],
|
|
|
|
"labels": [
|
|
|
|
"misp:type=\"domain\"",
|
|
|
|
"misp:category=\"Network activity\"",
|
|
|
|
"misp:to_ids=\"True\""
|
|
|
|
]
|
|
|
|
},
|
|
|
|
{
|
|
|
|
"type": "indicator",
|
|
|
|
"spec_version": "2.1",
|
|
|
|
"id": "indicator--57726ac4-89fc-4b68-8c56-4f19950d210f",
|
|
|
|
"created_by_ref": "identity--55f6ea5f-fd34-43b8-ac1d-40cb950d210f",
|
|
|
|
"created": "2016-06-28T12:17:08.000Z",
|
|
|
|
"modified": "2016-06-28T12:17:08.000Z",
|
|
|
|
"description": "Registrant: HIZLIVZ@GMAIL.COM",
|
|
|
|
"pattern": "[domain-name:value = 'icloud-apple-security.com']",
|
|
|
|
"pattern_type": "stix",
|
|
|
|
"pattern_version": "2.1",
|
|
|
|
"valid_from": "2016-06-28T12:17:08Z",
|
|
|
|
"kill_chain_phases": [
|
|
|
|
{
|
|
|
|
"kill_chain_name": "misp-category",
|
|
|
|
"phase_name": "Network activity"
|
|
|
|
}
|
|
|
|
],
|
|
|
|
"labels": [
|
|
|
|
"misp:type=\"domain\"",
|
|
|
|
"misp:category=\"Network activity\"",
|
|
|
|
"misp:to_ids=\"True\""
|
|
|
|
]
|
|
|
|
},
|
|
|
|
{
|
|
|
|
"type": "indicator",
|
|
|
|
"spec_version": "2.1",
|
|
|
|
"id": "indicator--57726ac4-e8a0-4206-902e-4316950d210f",
|
|
|
|
"created_by_ref": "identity--55f6ea5f-fd34-43b8-ac1d-40cb950d210f",
|
|
|
|
"created": "2016-06-28T12:17:08.000Z",
|
|
|
|
"modified": "2016-06-28T12:17:08.000Z",
|
|
|
|
"description": "Registrant: HIZLIVZ@GMAIL.COM",
|
|
|
|
"pattern": "[domain-name:value = 'icloud-appleid-security.com']",
|
|
|
|
"pattern_type": "stix",
|
|
|
|
"pattern_version": "2.1",
|
|
|
|
"valid_from": "2016-06-28T12:17:08Z",
|
|
|
|
"kill_chain_phases": [
|
|
|
|
{
|
|
|
|
"kill_chain_name": "misp-category",
|
|
|
|
"phase_name": "Network activity"
|
|
|
|
}
|
|
|
|
],
|
|
|
|
"labels": [
|
|
|
|
"misp:type=\"domain\"",
|
|
|
|
"misp:category=\"Network activity\"",
|
|
|
|
"misp:to_ids=\"True\""
|
|
|
|
]
|
|
|
|
},
|
|
|
|
{
|
|
|
|
"type": "indicator",
|
|
|
|
"spec_version": "2.1",
|
|
|
|
"id": "indicator--57726ac5-b6bc-4cea-a222-4677950d210f",
|
|
|
|
"created_by_ref": "identity--55f6ea5f-fd34-43b8-ac1d-40cb950d210f",
|
|
|
|
"created": "2016-06-28T12:17:09.000Z",
|
|
|
|
"modified": "2016-06-28T12:17:09.000Z",
|
|
|
|
"description": "Registrant: HIZLIVZ@GMAIL.COM",
|
|
|
|
"pattern": "[domain-name:value = 'icloud-appleid-support.com']",
|
|
|
|
"pattern_type": "stix",
|
|
|
|
"pattern_version": "2.1",
|
|
|
|
"valid_from": "2016-06-28T12:17:09Z",
|
|
|
|
"kill_chain_phases": [
|
|
|
|
{
|
|
|
|
"kill_chain_name": "misp-category",
|
|
|
|
"phase_name": "Network activity"
|
|
|
|
}
|
|
|
|
],
|
|
|
|
"labels": [
|
|
|
|
"misp:type=\"domain\"",
|
|
|
|
"misp:category=\"Network activity\"",
|
|
|
|
"misp:to_ids=\"True\""
|
|
|
|
]
|
|
|
|
},
|
|
|
|
{
|
|
|
|
"type": "indicator",
|
|
|
|
"spec_version": "2.1",
|
|
|
|
"id": "indicator--57726ac5-2020-425b-8e41-46ff950d210f",
|
|
|
|
"created_by_ref": "identity--55f6ea5f-fd34-43b8-ac1d-40cb950d210f",
|
|
|
|
"created": "2016-06-28T12:17:09.000Z",
|
|
|
|
"modified": "2016-06-28T12:17:09.000Z",
|
|
|
|
"description": "Registrant: HIZLIVZ@GMAIL.COM",
|
|
|
|
"pattern": "[domain-name:value = 'icloud-id-server.com']",
|
|
|
|
"pattern_type": "stix",
|
|
|
|
"pattern_version": "2.1",
|
|
|
|
"valid_from": "2016-06-28T12:17:09Z",
|
|
|
|
"kill_chain_phases": [
|
|
|
|
{
|
|
|
|
"kill_chain_name": "misp-category",
|
|
|
|
"phase_name": "Network activity"
|
|
|
|
}
|
|
|
|
],
|
|
|
|
"labels": [
|
|
|
|
"misp:type=\"domain\"",
|
|
|
|
"misp:category=\"Network activity\"",
|
|
|
|
"misp:to_ids=\"True\""
|
|
|
|
]
|
|
|
|
},
|
|
|
|
{
|
|
|
|
"type": "indicator",
|
|
|
|
"spec_version": "2.1",
|
|
|
|
"id": "indicator--57726ac6-b128-4952-b403-4a3a950d210f",
|
|
|
|
"created_by_ref": "identity--55f6ea5f-fd34-43b8-ac1d-40cb950d210f",
|
|
|
|
"created": "2016-06-28T12:17:10.000Z",
|
|
|
|
"modified": "2016-06-28T12:17:10.000Z",
|
|
|
|
"description": "Registrant: HIZLIVZ@GMAIL.COM",
|
|
|
|
"pattern": "[domain-name:value = 'icloud-id-support-apple.com']",
|
|
|
|
"pattern_type": "stix",
|
|
|
|
"pattern_version": "2.1",
|
|
|
|
"valid_from": "2016-06-28T12:17:10Z",
|
|
|
|
"kill_chain_phases": [
|
|
|
|
{
|
|
|
|
"kill_chain_name": "misp-category",
|
|
|
|
"phase_name": "Network activity"
|
|
|
|
}
|
|
|
|
],
|
|
|
|
"labels": [
|
|
|
|
"misp:type=\"domain\"",
|
|
|
|
"misp:category=\"Network activity\"",
|
|
|
|
"misp:to_ids=\"True\""
|
|
|
|
]
|
|
|
|
},
|
|
|
|
{
|
|
|
|
"type": "indicator",
|
|
|
|
"spec_version": "2.1",
|
|
|
|
"id": "indicator--57726ac6-54b0-4ce1-b6b1-4816950d210f",
|
|
|
|
"created_by_ref": "identity--55f6ea5f-fd34-43b8-ac1d-40cb950d210f",
|
|
|
|
"created": "2016-06-28T12:17:10.000Z",
|
|
|
|
"modified": "2016-06-28T12:17:10.000Z",
|
|
|
|
"description": "Registrant: HIZLIVZ@GMAIL.COM",
|
|
|
|
"pattern": "[domain-name:value = 'icloud-id-support.com']",
|
|
|
|
"pattern_type": "stix",
|
|
|
|
"pattern_version": "2.1",
|
|
|
|
"valid_from": "2016-06-28T12:17:10Z",
|
|
|
|
"kill_chain_phases": [
|
|
|
|
{
|
|
|
|
"kill_chain_name": "misp-category",
|
|
|
|
"phase_name": "Network activity"
|
|
|
|
}
|
|
|
|
],
|
|
|
|
"labels": [
|
|
|
|
"misp:type=\"domain\"",
|
|
|
|
"misp:category=\"Network activity\"",
|
|
|
|
"misp:to_ids=\"True\""
|
|
|
|
]
|
|
|
|
},
|
|
|
|
{
|
|
|
|
"type": "indicator",
|
|
|
|
"spec_version": "2.1",
|
|
|
|
"id": "indicator--57726ac7-d568-4571-aebf-462f950d210f",
|
|
|
|
"created_by_ref": "identity--55f6ea5f-fd34-43b8-ac1d-40cb950d210f",
|
|
|
|
"created": "2016-06-28T12:17:11.000Z",
|
|
|
|
"modified": "2016-06-28T12:17:11.000Z",
|
|
|
|
"description": "Registrant: HIZLIVZ@GMAIL.COM",
|
|
|
|
"pattern": "[domain-name:value = 'icloud-localisation-team.com']",
|
|
|
|
"pattern_type": "stix",
|
|
|
|
"pattern_version": "2.1",
|
|
|
|
"valid_from": "2016-06-28T12:17:11Z",
|
|
|
|
"kill_chain_phases": [
|
|
|
|
{
|
|
|
|
"kill_chain_name": "misp-category",
|
|
|
|
"phase_name": "Network activity"
|
|
|
|
}
|
|
|
|
],
|
|
|
|
"labels": [
|
|
|
|
"misp:type=\"domain\"",
|
|
|
|
"misp:category=\"Network activity\"",
|
|
|
|
"misp:to_ids=\"True\""
|
|
|
|
]
|
|
|
|
},
|
|
|
|
{
|
|
|
|
"type": "indicator",
|
|
|
|
"spec_version": "2.1",
|
|
|
|
"id": "indicator--57726ac7-a980-433e-83cb-4633950d210f",
|
|
|
|
"created_by_ref": "identity--55f6ea5f-fd34-43b8-ac1d-40cb950d210f",
|
|
|
|
"created": "2016-06-28T12:17:11.000Z",
|
|
|
|
"modified": "2016-06-28T12:17:11.000Z",
|
|
|
|
"description": "Registrant: HIZLIVZ@GMAIL.COM",
|
|
|
|
"pattern": "[domain-name:value = 'icloud-noreplay.com']",
|
|
|
|
"pattern_type": "stix",
|
|
|
|
"pattern_version": "2.1",
|
|
|
|
"valid_from": "2016-06-28T12:17:11Z",
|
|
|
|
"kill_chain_phases": [
|
|
|
|
{
|
|
|
|
"kill_chain_name": "misp-category",
|
|
|
|
"phase_name": "Network activity"
|
|
|
|
}
|
|
|
|
],
|
|
|
|
"labels": [
|
|
|
|
"misp:type=\"domain\"",
|
|
|
|
"misp:category=\"Network activity\"",
|
|
|
|
"misp:to_ids=\"True\""
|
|
|
|
]
|
|
|
|
},
|
|
|
|
{
|
|
|
|
"type": "indicator",
|
|
|
|
"spec_version": "2.1",
|
|
|
|
"id": "indicator--57726ac7-2be0-4ed6-bd44-4e82950d210f",
|
|
|
|
"created_by_ref": "identity--55f6ea5f-fd34-43b8-ac1d-40cb950d210f",
|
|
|
|
"created": "2016-06-28T12:17:11.000Z",
|
|
|
|
"modified": "2016-06-28T12:17:11.000Z",
|
|
|
|
"description": "Registrant: HIZLIVZ@GMAIL.COM",
|
|
|
|
"pattern": "[domain-name:value = 'icloud-security-service.com']",
|
|
|
|
"pattern_type": "stix",
|
|
|
|
"pattern_version": "2.1",
|
|
|
|
"valid_from": "2016-06-28T12:17:11Z",
|
|
|
|
"kill_chain_phases": [
|
|
|
|
{
|
|
|
|
"kill_chain_name": "misp-category",
|
|
|
|
"phase_name": "Network activity"
|
|
|
|
}
|
|
|
|
],
|
|
|
|
"labels": [
|
|
|
|
"misp:type=\"domain\"",
|
|
|
|
"misp:category=\"Network activity\"",
|
|
|
|
"misp:to_ids=\"True\""
|
|
|
|
]
|
|
|
|
},
|
|
|
|
{
|
|
|
|
"type": "indicator",
|
|
|
|
"spec_version": "2.1",
|
|
|
|
"id": "indicator--57726ac8-dad0-421f-b61e-4378950d210f",
|
|
|
|
"created_by_ref": "identity--55f6ea5f-fd34-43b8-ac1d-40cb950d210f",
|
|
|
|
"created": "2016-06-28T12:17:12.000Z",
|
|
|
|
"modified": "2016-06-28T12:17:12.000Z",
|
|
|
|
"description": "Registrant: HIZLIVZ@GMAIL.COM",
|
|
|
|
"pattern": "[domain-name:value = 'icloud-service-id.com']",
|
|
|
|
"pattern_type": "stix",
|
|
|
|
"pattern_version": "2.1",
|
|
|
|
"valid_from": "2016-06-28T12:17:12Z",
|
|
|
|
"kill_chain_phases": [
|
|
|
|
{
|
|
|
|
"kill_chain_name": "misp-category",
|
|
|
|
"phase_name": "Network activity"
|
|
|
|
}
|
|
|
|
],
|
|
|
|
"labels": [
|
|
|
|
"misp:type=\"domain\"",
|
|
|
|
"misp:category=\"Network activity\"",
|
|
|
|
"misp:to_ids=\"True\""
|
|
|
|
]
|
|
|
|
},
|
|
|
|
{
|
|
|
|
"type": "indicator",
|
|
|
|
"spec_version": "2.1",
|
|
|
|
"id": "indicator--57726ac8-2e1c-43b1-bf03-4442950d210f",
|
|
|
|
"created_by_ref": "identity--55f6ea5f-fd34-43b8-ac1d-40cb950d210f",
|
|
|
|
"created": "2016-06-28T12:17:12.000Z",
|
|
|
|
"modified": "2016-06-28T12:17:12.000Z",
|
|
|
|
"description": "Registrant: HIZLIVZ@GMAIL.COM",
|
|
|
|
"pattern": "[domain-name:value = 'icloud-support-service.com']",
|
|
|
|
"pattern_type": "stix",
|
|
|
|
"pattern_version": "2.1",
|
|
|
|
"valid_from": "2016-06-28T12:17:12Z",
|
|
|
|
"kill_chain_phases": [
|
|
|
|
{
|
|
|
|
"kill_chain_name": "misp-category",
|
|
|
|
"phase_name": "Network activity"
|
|
|
|
}
|
|
|
|
],
|
|
|
|
"labels": [
|
|
|
|
"misp:type=\"domain\"",
|
|
|
|
"misp:category=\"Network activity\"",
|
|
|
|
"misp:to_ids=\"True\""
|
|
|
|
]
|
|
|
|
},
|
|
|
|
{
|
|
|
|
"type": "indicator",
|
|
|
|
"spec_version": "2.1",
|
|
|
|
"id": "indicator--57726ac8-54e0-436e-b276-4552950d210f",
|
|
|
|
"created_by_ref": "identity--55f6ea5f-fd34-43b8-ac1d-40cb950d210f",
|
|
|
|
"created": "2016-06-28T12:17:12.000Z",
|
|
|
|
"modified": "2016-06-28T12:17:12.000Z",
|
|
|
|
"description": "Registrant: HIZLIVZ@GMAIL.COM",
|
|
|
|
"pattern": "[domain-name:value = 'icloudapple-security.com']",
|
|
|
|
"pattern_type": "stix",
|
|
|
|
"pattern_version": "2.1",
|
|
|
|
"valid_from": "2016-06-28T12:17:12Z",
|
|
|
|
"kill_chain_phases": [
|
|
|
|
{
|
|
|
|
"kill_chain_name": "misp-category",
|
|
|
|
"phase_name": "Network activity"
|
|
|
|
}
|
|
|
|
],
|
|
|
|
"labels": [
|
|
|
|
"misp:type=\"domain\"",
|
|
|
|
"misp:category=\"Network activity\"",
|
|
|
|
"misp:to_ids=\"True\""
|
|
|
|
]
|
|
|
|
},
|
|
|
|
{
|
|
|
|
"type": "indicator",
|
|
|
|
"spec_version": "2.1",
|
|
|
|
"id": "indicator--57726ac8-e2cc-4e1b-adb3-46ae950d210f",
|
|
|
|
"created_by_ref": "identity--55f6ea5f-fd34-43b8-ac1d-40cb950d210f",
|
|
|
|
"created": "2016-06-28T12:17:12.000Z",
|
|
|
|
"modified": "2016-06-28T12:17:12.000Z",
|
|
|
|
"description": "Registrant: HIZLIVZ@GMAIL.COM",
|
|
|
|
"pattern": "[domain-name:value = 'icloudsecurity-apple.com']",
|
|
|
|
"pattern_type": "stix",
|
|
|
|
"pattern_version": "2.1",
|
|
|
|
"valid_from": "2016-06-28T12:17:12Z",
|
|
|
|
"kill_chain_phases": [
|
|
|
|
{
|
|
|
|
"kill_chain_name": "misp-category",
|
|
|
|
"phase_name": "Network activity"
|
|
|
|
}
|
|
|
|
],
|
|
|
|
"labels": [
|
|
|
|
"misp:type=\"domain\"",
|
|
|
|
"misp:category=\"Network activity\"",
|
|
|
|
"misp:to_ids=\"True\""
|
|
|
|
]
|
|
|
|
},
|
|
|
|
{
|
|
|
|
"type": "indicator",
|
|
|
|
"spec_version": "2.1",
|
|
|
|
"id": "indicator--57726ac8-41ac-432d-9494-4a7a950d210f",
|
|
|
|
"created_by_ref": "identity--55f6ea5f-fd34-43b8-ac1d-40cb950d210f",
|
|
|
|
"created": "2016-06-28T12:17:12.000Z",
|
|
|
|
"modified": "2016-06-28T12:17:12.000Z",
|
|
|
|
"description": "Registrant: HIZLIVZ@GMAIL.COM",
|
|
|
|
"pattern": "[domain-name:value = 'icloudsecurityservice.com']",
|
|
|
|
"pattern_type": "stix",
|
|
|
|
"pattern_version": "2.1",
|
|
|
|
"valid_from": "2016-06-28T12:17:12Z",
|
|
|
|
"kill_chain_phases": [
|
|
|
|
{
|
|
|
|
"kill_chain_name": "misp-category",
|
|
|
|
"phase_name": "Network activity"
|
|
|
|
}
|
|
|
|
],
|
|
|
|
"labels": [
|
|
|
|
"misp:type=\"domain\"",
|
|
|
|
"misp:category=\"Network activity\"",
|
|
|
|
"misp:to_ids=\"True\""
|
|
|
|
]
|
|
|
|
},
|
|
|
|
{
|
|
|
|
"type": "indicator",
|
|
|
|
"spec_version": "2.1",
|
|
|
|
"id": "indicator--57726ac9-af5c-45c8-8943-441a950d210f",
|
|
|
|
"created_by_ref": "identity--55f6ea5f-fd34-43b8-ac1d-40cb950d210f",
|
|
|
|
"created": "2016-06-28T12:17:13.000Z",
|
|
|
|
"modified": "2016-06-28T12:17:13.000Z",
|
|
|
|
"description": "Registrant: HIZLIVZ@GMAIL.COM",
|
|
|
|
"pattern": "[domain-name:value = 'id-icloud-security.com']",
|
|
|
|
"pattern_type": "stix",
|
|
|
|
"pattern_version": "2.1",
|
|
|
|
"valid_from": "2016-06-28T12:17:13Z",
|
|
|
|
"kill_chain_phases": [
|
|
|
|
{
|
|
|
|
"kill_chain_name": "misp-category",
|
|
|
|
"phase_name": "Network activity"
|
|
|
|
}
|
|
|
|
],
|
|
|
|
"labels": [
|
|
|
|
"misp:type=\"domain\"",
|
|
|
|
"misp:category=\"Network activity\"",
|
|
|
|
"misp:to_ids=\"True\""
|
|
|
|
]
|
|
|
|
},
|
|
|
|
{
|
|
|
|
"type": "indicator",
|
|
|
|
"spec_version": "2.1",
|
|
|
|
"id": "indicator--57726ac9-742c-4126-b0d9-4017950d210f",
|
|
|
|
"created_by_ref": "identity--55f6ea5f-fd34-43b8-ac1d-40cb950d210f",
|
|
|
|
"created": "2016-06-28T12:17:13.000Z",
|
|
|
|
"modified": "2016-06-28T12:17:13.000Z",
|
|
|
|
"description": "Registrant: HIZLIVZ@GMAIL.COM",
|
|
|
|
"pattern": "[domain-name:value = 'id-icloudapple.com']",
|
|
|
|
"pattern_type": "stix",
|
|
|
|
"pattern_version": "2.1",
|
|
|
|
"valid_from": "2016-06-28T12:17:13Z",
|
|
|
|
"kill_chain_phases": [
|
|
|
|
{
|
|
|
|
"kill_chain_name": "misp-category",
|
|
|
|
"phase_name": "Network activity"
|
|
|
|
}
|
|
|
|
],
|
|
|
|
"labels": [
|
|
|
|
"misp:type=\"domain\"",
|
|
|
|
"misp:category=\"Network activity\"",
|
|
|
|
"misp:to_ids=\"True\""
|
|
|
|
]
|
|
|
|
},
|
|
|
|
{
|
|
|
|
"type": "indicator",
|
|
|
|
"spec_version": "2.1",
|
|
|
|
"id": "indicator--57726ac9-7890-459e-bfb1-404a950d210f",
|
|
|
|
"created_by_ref": "identity--55f6ea5f-fd34-43b8-ac1d-40cb950d210f",
|
|
|
|
"created": "2016-06-28T12:17:13.000Z",
|
|
|
|
"modified": "2016-06-28T12:17:13.000Z",
|
|
|
|
"description": "Registrant: HIZLIVZ@GMAIL.COM",
|
|
|
|
"pattern": "[domain-name:value = 'id-security-apple.com']",
|
|
|
|
"pattern_type": "stix",
|
|
|
|
"pattern_version": "2.1",
|
|
|
|
"valid_from": "2016-06-28T12:17:13Z",
|
|
|
|
"kill_chain_phases": [
|
|
|
|
{
|
|
|
|
"kill_chain_name": "misp-category",
|
|
|
|
"phase_name": "Network activity"
|
|
|
|
}
|
|
|
|
],
|
|
|
|
"labels": [
|
|
|
|
"misp:type=\"domain\"",
|
|
|
|
"misp:category=\"Network activity\"",
|
|
|
|
"misp:to_ids=\"True\""
|
|
|
|
]
|
|
|
|
},
|
|
|
|
{
|
|
|
|
"type": "indicator",
|
|
|
|
"spec_version": "2.1",
|
|
|
|
"id": "indicator--57726ac9-bc8c-4479-ba88-43ea950d210f",
|
|
|
|
"created_by_ref": "identity--55f6ea5f-fd34-43b8-ac1d-40cb950d210f",
|
|
|
|
"created": "2016-06-28T12:17:13.000Z",
|
|
|
|
"modified": "2016-06-28T12:17:13.000Z",
|
|
|
|
"description": "Registrant: HIZLIVZ@GMAIL.COM",
|
|
|
|
"pattern": "[domain-name:value = 'id-security-icloud.com']",
|
|
|
|
"pattern_type": "stix",
|
|
|
|
"pattern_version": "2.1",
|
|
|
|
"valid_from": "2016-06-28T12:17:13Z",
|
|
|
|
"kill_chain_phases": [
|
|
|
|
{
|
|
|
|
"kill_chain_name": "misp-category",
|
|
|
|
"phase_name": "Network activity"
|
|
|
|
}
|
|
|
|
],
|
|
|
|
"labels": [
|
|
|
|
"misp:type=\"domain\"",
|
|
|
|
"misp:category=\"Network activity\"",
|
|
|
|
"misp:to_ids=\"True\""
|
|
|
|
]
|
|
|
|
},
|
|
|
|
{
|
|
|
|
"type": "indicator",
|
|
|
|
"spec_version": "2.1",
|
|
|
|
"id": "indicator--57726ac9-1c6c-4603-97a8-4982950d210f",
|
|
|
|
"created_by_ref": "identity--55f6ea5f-fd34-43b8-ac1d-40cb950d210f",
|
|
|
|
"created": "2016-06-28T12:17:13.000Z",
|
|
|
|
"modified": "2016-06-28T12:17:13.000Z",
|
|
|
|
"description": "Registrant: HIZLIVZ@GMAIL.COM",
|
|
|
|
"pattern": "[domain-name:value = 'inside-apple-localisation.com']",
|
|
|
|
"pattern_type": "stix",
|
|
|
|
"pattern_version": "2.1",
|
|
|
|
"valid_from": "2016-06-28T12:17:13Z",
|
|
|
|
"kill_chain_phases": [
|
|
|
|
{
|
|
|
|
"kill_chain_name": "misp-category",
|
|
|
|
"phase_name": "Network activity"
|
|
|
|
}
|
|
|
|
],
|
|
|
|
"labels": [
|
|
|
|
"misp:type=\"domain\"",
|
|
|
|
"misp:category=\"Network activity\"",
|
|
|
|
"misp:to_ids=\"True\""
|
|
|
|
]
|
|
|
|
},
|
|
|
|
{
|
|
|
|
"type": "indicator",
|
|
|
|
"spec_version": "2.1",
|
|
|
|
"id": "indicator--57726aca-43ec-4e3d-955b-43e6950d210f",
|
|
|
|
"created_by_ref": "identity--55f6ea5f-fd34-43b8-ac1d-40cb950d210f",
|
|
|
|
"created": "2016-06-28T12:17:14.000Z",
|
|
|
|
"modified": "2016-06-28T12:17:14.000Z",
|
|
|
|
"description": "Registrant: HIZLIVZ@GMAIL.COM",
|
|
|
|
"pattern": "[domain-name:value = 'inside-icloud-id.com']",
|
|
|
|
"pattern_type": "stix",
|
|
|
|
"pattern_version": "2.1",
|
|
|
|
"valid_from": "2016-06-28T12:17:14Z",
|
|
|
|
"kill_chain_phases": [
|
|
|
|
{
|
|
|
|
"kill_chain_name": "misp-category",
|
|
|
|
"phase_name": "Network activity"
|
|
|
|
}
|
|
|
|
],
|
|
|
|
"labels": [
|
|
|
|
"misp:type=\"domain\"",
|
|
|
|
"misp:category=\"Network activity\"",
|
|
|
|
"misp:to_ids=\"True\""
|
|
|
|
]
|
|
|
|
},
|
|
|
|
{
|
|
|
|
"type": "indicator",
|
|
|
|
"spec_version": "2.1",
|
|
|
|
"id": "indicator--57726aca-3078-4de7-afac-4143950d210f",
|
|
|
|
"created_by_ref": "identity--55f6ea5f-fd34-43b8-ac1d-40cb950d210f",
|
|
|
|
"created": "2016-06-28T12:17:14.000Z",
|
|
|
|
"modified": "2016-06-28T12:17:14.000Z",
|
|
|
|
"description": "Registrant: HIZLIVZ@GMAIL.COM",
|
|
|
|
"pattern": "[domain-name:value = 'inside-icloud-localisation.com']",
|
|
|
|
"pattern_type": "stix",
|
|
|
|
"pattern_version": "2.1",
|
|
|
|
"valid_from": "2016-06-28T12:17:14Z",
|
|
|
|
"kill_chain_phases": [
|
|
|
|
{
|
|
|
|
"kill_chain_name": "misp-category",
|
|
|
|
"phase_name": "Network activity"
|
|
|
|
}
|
|
|
|
],
|
|
|
|
"labels": [
|
|
|
|
"misp:type=\"domain\"",
|
|
|
|
"misp:category=\"Network activity\"",
|
|
|
|
"misp:to_ids=\"True\""
|
|
|
|
]
|
|
|
|
},
|
|
|
|
{
|
|
|
|
"type": "indicator",
|
|
|
|
"spec_version": "2.1",
|
|
|
|
"id": "indicator--57726aca-b204-4429-86c7-42bc950d210f",
|
|
|
|
"created_by_ref": "identity--55f6ea5f-fd34-43b8-ac1d-40cb950d210f",
|
|
|
|
"created": "2016-06-28T12:17:14.000Z",
|
|
|
|
"modified": "2016-06-28T12:17:14.000Z",
|
|
|
|
"description": "Registrant: HIZLIVZ@GMAIL.COM",
|
|
|
|
"pattern": "[domain-name:value = 'inside-localisation-apple.com']",
|
|
|
|
"pattern_type": "stix",
|
|
|
|
"pattern_version": "2.1",
|
|
|
|
"valid_from": "2016-06-28T12:17:14Z",
|
|
|
|
"kill_chain_phases": [
|
|
|
|
{
|
|
|
|
"kill_chain_name": "misp-category",
|
|
|
|
"phase_name": "Network activity"
|
|
|
|
}
|
|
|
|
],
|
|
|
|
"labels": [
|
|
|
|
"misp:type=\"domain\"",
|
|
|
|
"misp:category=\"Network activity\"",
|
|
|
|
"misp:to_ids=\"True\""
|
|
|
|
]
|
|
|
|
},
|
|
|
|
{
|
|
|
|
"type": "indicator",
|
|
|
|
"spec_version": "2.1",
|
|
|
|
"id": "indicator--57726aca-a024-4b02-a31d-4853950d210f",
|
|
|
|
"created_by_ref": "identity--55f6ea5f-fd34-43b8-ac1d-40cb950d210f",
|
|
|
|
"created": "2016-06-28T12:17:14.000Z",
|
|
|
|
"modified": "2016-06-28T12:17:14.000Z",
|
|
|
|
"description": "Registrant: HIZLIVZ@GMAIL.COM",
|
|
|
|
"pattern": "[domain-name:value = 'inside-localisation-icloud.com']",
|
|
|
|
"pattern_type": "stix",
|
|
|
|
"pattern_version": "2.1",
|
|
|
|
"valid_from": "2016-06-28T12:17:14Z",
|
|
|
|
"kill_chain_phases": [
|
|
|
|
{
|
|
|
|
"kill_chain_name": "misp-category",
|
|
|
|
"phase_name": "Network activity"
|
|
|
|
}
|
|
|
|
],
|
|
|
|
"labels": [
|
|
|
|
"misp:type=\"domain\"",
|
|
|
|
"misp:category=\"Network activity\"",
|
|
|
|
"misp:to_ids=\"True\""
|
|
|
|
]
|
|
|
|
},
|
|
|
|
{
|
|
|
|
"type": "indicator",
|
|
|
|
"spec_version": "2.1",
|
|
|
|
"id": "indicator--57726aca-f0d8-40e8-a656-48cc950d210f",
|
|
|
|
"created_by_ref": "identity--55f6ea5f-fd34-43b8-ac1d-40cb950d210f",
|
|
|
|
"created": "2016-06-28T12:17:14.000Z",
|
|
|
|
"modified": "2016-06-28T12:17:14.000Z",
|
|
|
|
"description": "Registrant: HIZLIVZ@GMAIL.COM",
|
|
|
|
"pattern": "[domain-name:value = 'insidecloud-support.com']",
|
|
|
|
"pattern_type": "stix",
|
|
|
|
"pattern_version": "2.1",
|
|
|
|
"valid_from": "2016-06-28T12:17:14Z",
|
|
|
|
"kill_chain_phases": [
|
|
|
|
{
|
|
|
|
"kill_chain_name": "misp-category",
|
|
|
|
"phase_name": "Network activity"
|
|
|
|
}
|
|
|
|
],
|
|
|
|
"labels": [
|
|
|
|
"misp:type=\"domain\"",
|
|
|
|
"misp:category=\"Network activity\"",
|
|
|
|
"misp:to_ids=\"True\""
|
|
|
|
]
|
|
|
|
},
|
|
|
|
{
|
|
|
|
"type": "indicator",
|
|
|
|
"spec_version": "2.1",
|
|
|
|
"id": "indicator--57726aca-67d4-4396-b5ba-46ba950d210f",
|
|
|
|
"created_by_ref": "identity--55f6ea5f-fd34-43b8-ac1d-40cb950d210f",
|
|
|
|
"created": "2016-06-28T12:17:14.000Z",
|
|
|
|
"modified": "2016-06-28T12:17:14.000Z",
|
|
|
|
"description": "Registrant: HIZLIVZ@GMAIL.COM",
|
|
|
|
"pattern": "[domain-name:value = 'insideicloud-support.com']",
|
|
|
|
"pattern_type": "stix",
|
|
|
|
"pattern_version": "2.1",
|
|
|
|
"valid_from": "2016-06-28T12:17:14Z",
|
|
|
|
"kill_chain_phases": [
|
|
|
|
{
|
|
|
|
"kill_chain_name": "misp-category",
|
|
|
|
"phase_name": "Network activity"
|
|
|
|
}
|
|
|
|
],
|
|
|
|
"labels": [
|
|
|
|
"misp:type=\"domain\"",
|
|
|
|
"misp:category=\"Network activity\"",
|
|
|
|
"misp:to_ids=\"True\""
|
|
|
|
]
|
|
|
|
},
|
|
|
|
{
|
|
|
|
"type": "indicator",
|
|
|
|
"spec_version": "2.1",
|
|
|
|
"id": "indicator--57726acb-d170-4eda-be8f-4ec9950d210f",
|
|
|
|
"created_by_ref": "identity--55f6ea5f-fd34-43b8-ac1d-40cb950d210f",
|
|
|
|
"created": "2016-06-28T12:17:15.000Z",
|
|
|
|
"modified": "2016-06-28T12:17:15.000Z",
|
|
|
|
"description": "Registrant: HIZLIVZ@GMAIL.COM",
|
|
|
|
"pattern": "[domain-name:value = 'localisation-apple-server.com']",
|
|
|
|
"pattern_type": "stix",
|
|
|
|
"pattern_version": "2.1",
|
|
|
|
"valid_from": "2016-06-28T12:17:15Z",
|
|
|
|
"kill_chain_phases": [
|
|
|
|
{
|
|
|
|
"kill_chain_name": "misp-category",
|
|
|
|
"phase_name": "Network activity"
|
|
|
|
}
|
|
|
|
],
|
|
|
|
"labels": [
|
|
|
|
"misp:type=\"domain\"",
|
|
|
|
"misp:category=\"Network activity\"",
|
|
|
|
"misp:to_ids=\"True\""
|
|
|
|
]
|
|
|
|
},
|
|
|
|
{
|
|
|
|
"type": "indicator",
|
|
|
|
"spec_version": "2.1",
|
|
|
|
"id": "indicator--57726acb-3440-42e1-b6d8-4fde950d210f",
|
|
|
|
"created_by_ref": "identity--55f6ea5f-fd34-43b8-ac1d-40cb950d210f",
|
|
|
|
"created": "2016-06-28T12:17:15.000Z",
|
|
|
|
"modified": "2016-06-28T12:17:15.000Z",
|
|
|
|
"description": "Registrant: HIZLIVZ@GMAIL.COM",
|
|
|
|
"pattern": "[domain-name:value = 'localisation-icloud-server.com']",
|
|
|
|
"pattern_type": "stix",
|
|
|
|
"pattern_version": "2.1",
|
|
|
|
"valid_from": "2016-06-28T12:17:15Z",
|
|
|
|
"kill_chain_phases": [
|
|
|
|
{
|
|
|
|
"kill_chain_name": "misp-category",
|
|
|
|
"phase_name": "Network activity"
|
|
|
|
}
|
|
|
|
],
|
|
|
|
"labels": [
|
|
|
|
"misp:type=\"domain\"",
|
|
|
|
"misp:category=\"Network activity\"",
|
|
|
|
"misp:to_ids=\"True\""
|
|
|
|
]
|
|
|
|
},
|
|
|
|
{
|
|
|
|
"type": "indicator",
|
|
|
|
"spec_version": "2.1",
|
|
|
|
"id": "indicator--57726acb-2fcc-4cb2-9703-456e950d210f",
|
|
|
|
"created_by_ref": "identity--55f6ea5f-fd34-43b8-ac1d-40cb950d210f",
|
|
|
|
"created": "2016-06-28T12:17:15.000Z",
|
|
|
|
"modified": "2016-06-28T12:17:15.000Z",
|
|
|
|
"description": "Registrant: HIZLIVZ@GMAIL.COM",
|
|
|
|
"pattern": "[domain-name:value = 'localisation-icloud-service.com']",
|
|
|
|
"pattern_type": "stix",
|
|
|
|
"pattern_version": "2.1",
|
|
|
|
"valid_from": "2016-06-28T12:17:15Z",
|
|
|
|
"kill_chain_phases": [
|
|
|
|
{
|
|
|
|
"kill_chain_name": "misp-category",
|
|
|
|
"phase_name": "Network activity"
|
|
|
|
}
|
|
|
|
],
|
|
|
|
"labels": [
|
|
|
|
"misp:type=\"domain\"",
|
|
|
|
"misp:category=\"Network activity\"",
|
|
|
|
"misp:to_ids=\"True\""
|
|
|
|
]
|
|
|
|
},
|
|
|
|
{
|
|
|
|
"type": "indicator",
|
|
|
|
"spec_version": "2.1",
|
|
|
|
"id": "indicator--57726acb-73dc-4fed-97bf-47cf950d210f",
|
|
|
|
"created_by_ref": "identity--55f6ea5f-fd34-43b8-ac1d-40cb950d210f",
|
|
|
|
"created": "2016-06-28T12:17:15.000Z",
|
|
|
|
"modified": "2016-06-28T12:17:15.000Z",
|
|
|
|
"description": "Registrant: HIZLIVZ@GMAIL.COM",
|
|
|
|
"pattern": "[domain-name:value = 'localisation-icloud-support.com']",
|
|
|
|
"pattern_type": "stix",
|
|
|
|
"pattern_version": "2.1",
|
|
|
|
"valid_from": "2016-06-28T12:17:15Z",
|
|
|
|
"kill_chain_phases": [
|
|
|
|
{
|
|
|
|
"kill_chain_name": "misp-category",
|
|
|
|
"phase_name": "Network activity"
|
|
|
|
}
|
|
|
|
],
|
|
|
|
"labels": [
|
|
|
|
"misp:type=\"domain\"",
|
|
|
|
"misp:category=\"Network activity\"",
|
|
|
|
"misp:to_ids=\"True\""
|
|
|
|
]
|
|
|
|
},
|
|
|
|
{
|
|
|
|
"type": "indicator",
|
|
|
|
"spec_version": "2.1",
|
|
|
|
"id": "indicator--57726acb-adb8-456a-bd8a-4dde950d210f",
|
|
|
|
"created_by_ref": "identity--55f6ea5f-fd34-43b8-ac1d-40cb950d210f",
|
|
|
|
"created": "2016-06-28T12:17:15.000Z",
|
|
|
|
"modified": "2016-06-28T12:17:15.000Z",
|
|
|
|
"description": "Registrant: HIZLIVZ@GMAIL.COM",
|
|
|
|
"pattern": "[domain-name:value = 'localisation-id-service.com']",
|
|
|
|
"pattern_type": "stix",
|
|
|
|
"pattern_version": "2.1",
|
|
|
|
"valid_from": "2016-06-28T12:17:15Z",
|
|
|
|
"kill_chain_phases": [
|
|
|
|
{
|
|
|
|
"kill_chain_name": "misp-category",
|
|
|
|
"phase_name": "Network activity"
|
|
|
|
}
|
|
|
|
],
|
|
|
|
"labels": [
|
|
|
|
"misp:type=\"domain\"",
|
|
|
|
"misp:category=\"Network activity\"",
|
|
|
|
"misp:to_ids=\"True\""
|
|
|
|
]
|
|
|
|
},
|
|
|
|
{
|
|
|
|
"type": "indicator",
|
|
|
|
"spec_version": "2.1",
|
|
|
|
"id": "indicator--57726acc-307c-493e-ae45-4d6e950d210f",
|
|
|
|
"created_by_ref": "identity--55f6ea5f-fd34-43b8-ac1d-40cb950d210f",
|
|
|
|
"created": "2016-06-28T12:17:16.000Z",
|
|
|
|
"modified": "2016-06-28T12:17:16.000Z",
|
|
|
|
"description": "Registrant: HIZLIVZ@GMAIL.COM",
|
|
|
|
"pattern": "[domain-name:value = 'localisation-inside.com']",
|
|
|
|
"pattern_type": "stix",
|
|
|
|
"pattern_version": "2.1",
|
|
|
|
"valid_from": "2016-06-28T12:17:16Z",
|
|
|
|
"kill_chain_phases": [
|
|
|
|
{
|
|
|
|
"kill_chain_name": "misp-category",
|
|
|
|
"phase_name": "Network activity"
|
|
|
|
}
|
|
|
|
],
|
|
|
|
"labels": [
|
|
|
|
"misp:type=\"domain\"",
|
|
|
|
"misp:category=\"Network activity\"",
|
|
|
|
"misp:to_ids=\"True\""
|
|
|
|
]
|
|
|
|
},
|
|
|
|
{
|
|
|
|
"type": "indicator",
|
|
|
|
"spec_version": "2.1",
|
|
|
|
"id": "indicator--57726acc-b1f8-4ced-a71d-4a37950d210f",
|
|
|
|
"created_by_ref": "identity--55f6ea5f-fd34-43b8-ac1d-40cb950d210f",
|
|
|
|
"created": "2016-06-28T12:17:16.000Z",
|
|
|
|
"modified": "2016-06-28T12:17:16.000Z",
|
|
|
|
"description": "Registrant: HIZLIVZ@GMAIL.COM",
|
|
|
|
"pattern": "[domain-name:value = 'localisation-security-service.com']",
|
|
|
|
"pattern_type": "stix",
|
|
|
|
"pattern_version": "2.1",
|
|
|
|
"valid_from": "2016-06-28T12:17:16Z",
|
|
|
|
"kill_chain_phases": [
|
|
|
|
{
|
|
|
|
"kill_chain_name": "misp-category",
|
|
|
|
"phase_name": "Network activity"
|
|
|
|
}
|
|
|
|
],
|
|
|
|
"labels": [
|
|
|
|
"misp:type=\"domain\"",
|
|
|
|
"misp:category=\"Network activity\"",
|
|
|
|
"misp:to_ids=\"True\""
|
|
|
|
]
|
|
|
|
},
|
|
|
|
{
|
|
|
|
"type": "indicator",
|
|
|
|
"spec_version": "2.1",
|
|
|
|
"id": "indicator--57726acc-1c30-448e-805c-4e50950d210f",
|
|
|
|
"created_by_ref": "identity--55f6ea5f-fd34-43b8-ac1d-40cb950d210f",
|
|
|
|
"created": "2016-06-28T12:17:16.000Z",
|
|
|
|
"modified": "2016-06-28T12:17:16.000Z",
|
|
|
|
"description": "Registrant: HIZLIVZ@GMAIL.COM",
|
|
|
|
"pattern": "[domain-name:value = 'localisation-server-icloud.com']",
|
|
|
|
"pattern_type": "stix",
|
|
|
|
"pattern_version": "2.1",
|
|
|
|
"valid_from": "2016-06-28T12:17:16Z",
|
|
|
|
"kill_chain_phases": [
|
|
|
|
{
|
|
|
|
"kill_chain_name": "misp-category",
|
|
|
|
"phase_name": "Network activity"
|
|
|
|
}
|
|
|
|
],
|
|
|
|
"labels": [
|
|
|
|
"misp:type=\"domain\"",
|
|
|
|
"misp:category=\"Network activity\"",
|
|
|
|
"misp:to_ids=\"True\""
|
|
|
|
]
|
|
|
|
},
|
|
|
|
{
|
|
|
|
"type": "indicator",
|
|
|
|
"spec_version": "2.1",
|
|
|
|
"id": "indicator--57726acc-0b4c-499c-8a34-4f07950d210f",
|
|
|
|
"created_by_ref": "identity--55f6ea5f-fd34-43b8-ac1d-40cb950d210f",
|
|
|
|
"created": "2016-06-28T12:17:16.000Z",
|
|
|
|
"modified": "2016-06-28T12:17:16.000Z",
|
|
|
|
"description": "Registrant: HIZLIVZ@GMAIL.COM",
|
|
|
|
"pattern": "[domain-name:value = 'localisation-service-id.com']",
|
|
|
|
"pattern_type": "stix",
|
|
|
|
"pattern_version": "2.1",
|
|
|
|
"valid_from": "2016-06-28T12:17:16Z",
|
|
|
|
"kill_chain_phases": [
|
|
|
|
{
|
|
|
|
"kill_chain_name": "misp-category",
|
|
|
|
"phase_name": "Network activity"
|
|
|
|
}
|
|
|
|
],
|
|
|
|
"labels": [
|
|
|
|
"misp:type=\"domain\"",
|
|
|
|
"misp:category=\"Network activity\"",
|
|
|
|
"misp:to_ids=\"True\""
|
|
|
|
]
|
|
|
|
},
|
|
|
|
{
|
|
|
|
"type": "indicator",
|
|
|
|
"spec_version": "2.1",
|
|
|
|
"id": "indicator--57726acd-3870-4882-8c1e-4921950d210f",
|
|
|
|
"created_by_ref": "identity--55f6ea5f-fd34-43b8-ac1d-40cb950d210f",
|
|
|
|
"created": "2016-06-28T12:17:17.000Z",
|
|
|
|
"modified": "2016-06-28T12:17:17.000Z",
|
|
|
|
"description": "Registrant: HIZLIVZ@GMAIL.COM",
|
|
|
|
"pattern": "[domain-name:value = 'localisation-support-services.com']",
|
|
|
|
"pattern_type": "stix",
|
|
|
|
"pattern_version": "2.1",
|
|
|
|
"valid_from": "2016-06-28T12:17:17Z",
|
|
|
|
"kill_chain_phases": [
|
|
|
|
{
|
|
|
|
"kill_chain_name": "misp-category",
|
|
|
|
"phase_name": "Network activity"
|
|
|
|
}
|
|
|
|
],
|
|
|
|
"labels": [
|
|
|
|
"misp:type=\"domain\"",
|
|
|
|
"misp:category=\"Network activity\"",
|
|
|
|
"misp:to_ids=\"True\""
|
|
|
|
]
|
|
|
|
},
|
|
|
|
{
|
|
|
|
"type": "indicator",
|
|
|
|
"spec_version": "2.1",
|
|
|
|
"id": "indicator--57726acd-5860-4f0f-8d18-44fa950d210f",
|
|
|
|
"created_by_ref": "identity--55f6ea5f-fd34-43b8-ac1d-40cb950d210f",
|
|
|
|
"created": "2016-06-28T12:17:17.000Z",
|
|
|
|
"modified": "2016-06-28T12:17:17.000Z",
|
|
|
|
"description": "Registrant: HIZLIVZ@GMAIL.COM",
|
|
|
|
"pattern": "[domain-name:value = 'localisationicloud.com']",
|
|
|
|
"pattern_type": "stix",
|
|
|
|
"pattern_version": "2.1",
|
|
|
|
"valid_from": "2016-06-28T12:17:17Z",
|
|
|
|
"kill_chain_phases": [
|
|
|
|
{
|
|
|
|
"kill_chain_name": "misp-category",
|
|
|
|
"phase_name": "Network activity"
|
|
|
|
}
|
|
|
|
],
|
|
|
|
"labels": [
|
|
|
|
"misp:type=\"domain\"",
|
|
|
|
"misp:category=\"Network activity\"",
|
|
|
|
"misp:to_ids=\"True\""
|
|
|
|
]
|
|
|
|
},
|
|
|
|
{
|
|
|
|
"type": "indicator",
|
|
|
|
"spec_version": "2.1",
|
|
|
|
"id": "indicator--57726acd-98f8-4434-986a-40a1950d210f",
|
|
|
|
"created_by_ref": "identity--55f6ea5f-fd34-43b8-ac1d-40cb950d210f",
|
|
|
|
"created": "2016-06-28T12:17:17.000Z",
|
|
|
|
"modified": "2016-06-28T12:17:17.000Z",
|
|
|
|
"description": "Registrant: HIZLIVZ@GMAIL.COM",
|
|
|
|
"pattern": "[domain-name:value = 'localisationid-icloud.com']",
|
|
|
|
"pattern_type": "stix",
|
|
|
|
"pattern_version": "2.1",
|
|
|
|
"valid_from": "2016-06-28T12:17:17Z",
|
|
|
|
"kill_chain_phases": [
|
|
|
|
{
|
|
|
|
"kill_chain_name": "misp-category",
|
|
|
|
"phase_name": "Network activity"
|
|
|
|
}
|
|
|
|
],
|
|
|
|
"labels": [
|
|
|
|
"misp:type=\"domain\"",
|
|
|
|
"misp:category=\"Network activity\"",
|
|
|
|
"misp:to_ids=\"True\""
|
|
|
|
]
|
|
|
|
},
|
|
|
|
{
|
|
|
|
"type": "indicator",
|
|
|
|
"spec_version": "2.1",
|
|
|
|
"id": "indicator--57726acd-83b0-4cf5-87f8-4ada950d210f",
|
|
|
|
"created_by_ref": "identity--55f6ea5f-fd34-43b8-ac1d-40cb950d210f",
|
|
|
|
"created": "2016-06-28T12:17:17.000Z",
|
|
|
|
"modified": "2016-06-28T12:17:17.000Z",
|
|
|
|
"description": "Registrant: HIZLIVZ@GMAIL.COM",
|
|
|
|
"pattern": "[domain-name:value = 'localiser-icloud.com']",
|
|
|
|
"pattern_type": "stix",
|
|
|
|
"pattern_version": "2.1",
|
|
|
|
"valid_from": "2016-06-28T12:17:17Z",
|
|
|
|
"kill_chain_phases": [
|
|
|
|
{
|
|
|
|
"kill_chain_name": "misp-category",
|
|
|
|
"phase_name": "Network activity"
|
|
|
|
}
|
|
|
|
],
|
|
|
|
"labels": [
|
|
|
|
"misp:type=\"domain\"",
|
|
|
|
"misp:category=\"Network activity\"",
|
|
|
|
"misp:to_ids=\"True\""
|
|
|
|
]
|
|
|
|
},
|
|
|
|
{
|
|
|
|
"type": "indicator",
|
|
|
|
"spec_version": "2.1",
|
|
|
|
"id": "indicator--57726acd-bc18-4e41-aaed-4c34950d210f",
|
|
|
|
"created_by_ref": "identity--55f6ea5f-fd34-43b8-ac1d-40cb950d210f",
|
|
|
|
"created": "2016-06-28T12:17:17.000Z",
|
|
|
|
"modified": "2016-06-28T12:17:17.000Z",
|
|
|
|
"description": "Registrant: HIZLIVZ@GMAIL.COM",
|
|
|
|
"pattern": "[domain-name:value = 'noreplay-apple.com']",
|
|
|
|
"pattern_type": "stix",
|
|
|
|
"pattern_version": "2.1",
|
|
|
|
"valid_from": "2016-06-28T12:17:17Z",
|
|
|
|
"kill_chain_phases": [
|
|
|
|
{
|
|
|
|
"kill_chain_name": "misp-category",
|
|
|
|
"phase_name": "Network activity"
|
|
|
|
}
|
|
|
|
],
|
|
|
|
"labels": [
|
|
|
|
"misp:type=\"domain\"",
|
|
|
|
"misp:category=\"Network activity\"",
|
|
|
|
"misp:to_ids=\"True\""
|
|
|
|
]
|
|
|
|
},
|
|
|
|
{
|
|
|
|
"type": "indicator",
|
|
|
|
"spec_version": "2.1",
|
|
|
|
"id": "indicator--57726ace-b020-4529-95ff-4161950d210f",
|
|
|
|
"created_by_ref": "identity--55f6ea5f-fd34-43b8-ac1d-40cb950d210f",
|
|
|
|
"created": "2016-06-28T12:17:18.000Z",
|
|
|
|
"modified": "2016-06-28T12:17:18.000Z",
|
|
|
|
"description": "Registrant: HIZLIVZ@GMAIL.COM",
|
|
|
|
"pattern": "[domain-name:value = 'noreplay-icloud-security.com']",
|
|
|
|
"pattern_type": "stix",
|
|
|
|
"pattern_version": "2.1",
|
|
|
|
"valid_from": "2016-06-28T12:17:18Z",
|
|
|
|
"kill_chain_phases": [
|
|
|
|
{
|
|
|
|
"kill_chain_name": "misp-category",
|
|
|
|
"phase_name": "Network activity"
|
|
|
|
}
|
|
|
|
],
|
|
|
|
"labels": [
|
|
|
|
"misp:type=\"domain\"",
|
|
|
|
"misp:category=\"Network activity\"",
|
|
|
|
"misp:to_ids=\"True\""
|
|
|
|
]
|
|
|
|
},
|
|
|
|
{
|
|
|
|
"type": "indicator",
|
|
|
|
"spec_version": "2.1",
|
|
|
|
"id": "indicator--57726ace-b4b8-4fa2-9481-4ece950d210f",
|
|
|
|
"created_by_ref": "identity--55f6ea5f-fd34-43b8-ac1d-40cb950d210f",
|
|
|
|
"created": "2016-06-28T12:17:18.000Z",
|
|
|
|
"modified": "2016-06-28T12:17:18.000Z",
|
|
|
|
"description": "Registrant: HIZLIVZ@GMAIL.COM",
|
|
|
|
"pattern": "[domain-name:value = 'noreplay-icloud.com']",
|
|
|
|
"pattern_type": "stix",
|
|
|
|
"pattern_version": "2.1",
|
|
|
|
"valid_from": "2016-06-28T12:17:18Z",
|
|
|
|
"kill_chain_phases": [
|
|
|
|
{
|
|
|
|
"kill_chain_name": "misp-category",
|
|
|
|
"phase_name": "Network activity"
|
|
|
|
}
|
|
|
|
],
|
|
|
|
"labels": [
|
|
|
|
"misp:type=\"domain\"",
|
|
|
|
"misp:category=\"Network activity\"",
|
|
|
|
"misp:to_ids=\"True\""
|
|
|
|
]
|
|
|
|
},
|
|
|
|
{
|
|
|
|
"type": "indicator",
|
|
|
|
"spec_version": "2.1",
|
|
|
|
"id": "indicator--57726ace-d3c8-42b9-bf61-4820950d210f",
|
|
|
|
"created_by_ref": "identity--55f6ea5f-fd34-43b8-ac1d-40cb950d210f",
|
|
|
|
"created": "2016-06-28T12:17:18.000Z",
|
|
|
|
"modified": "2016-06-28T12:17:18.000Z",
|
|
|
|
"description": "Registrant: HIZLIVZ@GMAIL.COM",
|
|
|
|
"pattern": "[domain-name:value = 'security-apple-localisation.com']",
|
|
|
|
"pattern_type": "stix",
|
|
|
|
"pattern_version": "2.1",
|
|
|
|
"valid_from": "2016-06-28T12:17:18Z",
|
|
|
|
"kill_chain_phases": [
|
|
|
|
{
|
|
|
|
"kill_chain_name": "misp-category",
|
|
|
|
"phase_name": "Network activity"
|
|
|
|
}
|
|
|
|
],
|
|
|
|
"labels": [
|
|
|
|
"misp:type=\"domain\"",
|
|
|
|
"misp:category=\"Network activity\"",
|
|
|
|
"misp:to_ids=\"True\""
|
|
|
|
]
|
|
|
|
},
|
|
|
|
{
|
|
|
|
"type": "indicator",
|
|
|
|
"spec_version": "2.1",
|
|
|
|
"id": "indicator--57726ace-549c-4f16-bf52-49e7950d210f",
|
|
|
|
"created_by_ref": "identity--55f6ea5f-fd34-43b8-ac1d-40cb950d210f",
|
|
|
|
"created": "2016-06-28T12:17:18.000Z",
|
|
|
|
"modified": "2016-06-28T12:17:18.000Z",
|
|
|
|
"description": "Registrant: HIZLIVZ@GMAIL.COM",
|
|
|
|
"pattern": "[domain-name:value = 'security-apple-support.com']",
|
|
|
|
"pattern_type": "stix",
|
|
|
|
"pattern_version": "2.1",
|
|
|
|
"valid_from": "2016-06-28T12:17:18Z",
|
|
|
|
"kill_chain_phases": [
|
|
|
|
{
|
|
|
|
"kill_chain_name": "misp-category",
|
|
|
|
"phase_name": "Network activity"
|
|
|
|
}
|
|
|
|
],
|
|
|
|
"labels": [
|
|
|
|
"misp:type=\"domain\"",
|
|
|
|
"misp:category=\"Network activity\"",
|
|
|
|
"misp:to_ids=\"True\""
|
|
|
|
]
|
|
|
|
},
|
|
|
|
{
|
|
|
|
"type": "indicator",
|
|
|
|
"spec_version": "2.1",
|
|
|
|
"id": "indicator--57726ace-aed4-49e8-964f-49c0950d210f",
|
|
|
|
"created_by_ref": "identity--55f6ea5f-fd34-43b8-ac1d-40cb950d210f",
|
|
|
|
"created": "2016-06-28T12:17:18.000Z",
|
|
|
|
"modified": "2016-06-28T12:17:18.000Z",
|
|
|
|
"description": "Registrant: HIZLIVZ@GMAIL.COM",
|
|
|
|
"pattern": "[domain-name:value = 'security-icloud-support.com']",
|
|
|
|
"pattern_type": "stix",
|
|
|
|
"pattern_version": "2.1",
|
|
|
|
"valid_from": "2016-06-28T12:17:18Z",
|
|
|
|
"kill_chain_phases": [
|
|
|
|
{
|
|
|
|
"kill_chain_name": "misp-category",
|
|
|
|
"phase_name": "Network activity"
|
|
|
|
}
|
|
|
|
],
|
|
|
|
"labels": [
|
|
|
|
"misp:type=\"domain\"",
|
|
|
|
"misp:category=\"Network activity\"",
|
|
|
|
"misp:to_ids=\"True\""
|
|
|
|
]
|
|
|
|
},
|
|
|
|
{
|
|
|
|
"type": "marking-definition",
|
|
|
|
"spec_version": "2.1",
|
|
|
|
"id": "marking-definition--34098fce-860f-48ae-8e50-ebd3cc5e41da",
|
|
|
|
"created": "2017-01-20T00:00:00.000Z",
|
|
|
|
"definition_type": "tlp",
|
|
|
|
"name": "TLP:GREEN",
|
|
|
|
"definition": {
|
|
|
|
"tlp": "green"
|
|
|
|
}
|
|
|
|
}
|
2023-04-21 13:25:09 +00:00
|
|
|
]
|
|
|
|
}
|