2023-04-21 13:25:09 +00:00
{
2023-12-14 14:30:15 +00:00
"Event" : {
"analysis" : "1" ,
"date" : "2019-04-21" ,
"extends_uuid" : "" ,
"info" : "OSINT - 97 domains phishing spread over 10 IP's" ,
"publish_timestamp" : "1555853920" ,
"published" : true ,
"threat_level_id" : "3" ,
"timestamp" : "1555853634" ,
"uuid" : "5cbc6f5e-a058-4a70-ba80-4b8902de0b81" ,
"Orgc" : {
"name" : "CIRCL" ,
"uuid" : "55f6ea5e-2c60-40e5-964f-47a8950d210f"
} ,
"Tag" : [
{
"colour" : "#004646" ,
2024-04-05 12:15:17 +00:00
"local" : false ,
2023-12-14 14:30:15 +00:00
"name" : "type:OSINT" ,
"relationship_type" : ""
} ,
{
"colour" : "#0087e8" ,
2024-04-05 12:15:17 +00:00
"local" : false ,
2023-12-14 14:30:15 +00:00
"name" : "osint:certainty=\"50\"" ,
"relationship_type" : ""
} ,
{
"colour" : "#ffffff" ,
2024-04-05 12:15:17 +00:00
"local" : false ,
2023-12-14 14:30:15 +00:00
"name" : "tlp:white" ,
"relationship_type" : ""
} ,
{
"colour" : "#2d0048" ,
2024-04-05 12:15:17 +00:00
"local" : false ,
2023-12-14 14:30:15 +00:00
"name" : "adversary:infrastructure-status=\"compromised\"" ,
"relationship_type" : ""
}
] ,
"Attribute" : [
{
"category" : "Network activity" ,
"comment" : "" ,
"deleted" : false ,
"disable_correlation" : false ,
"timestamp" : "1555853178" ,
"to_ids" : true ,
"type" : "domain" ,
"uuid" : "5cbc6f7a-b610-4aea-a80f-409c02de0b81" ,
"value" : "service-verify-v4.gq"
} ,
{
"category" : "Network activity" ,
"comment" : "" ,
"deleted" : false ,
"disable_correlation" : false ,
"timestamp" : "1555853178" ,
"to_ids" : true ,
"type" : "ip-dst" ,
"uuid" : "5cbc6f7a-cc70-4e52-8901-4e1802de0b81" ,
"value" : "13.114.203.210"
} ,
{
"category" : "Network activity" ,
"comment" : "" ,
"deleted" : false ,
"disable_correlation" : false ,
"timestamp" : "1555853178" ,
"to_ids" : true ,
"type" : "domain" ,
"uuid" : "5cbc6f7a-4958-4c2f-9a7c-4dc402de0b81" ,
"value" : "service-verify-v1.cf"
} ,
{
"category" : "Network activity" ,
"comment" : "" ,
"deleted" : false ,
"disable_correlation" : false ,
"timestamp" : "1555853178" ,
"to_ids" : true ,
"type" : "domain" ,
"uuid" : "5cbc6f7a-17e4-4f81-ac9d-495602de0b81" ,
"value" : "service-verify-v1.ml"
} ,
{
"category" : "Network activity" ,
"comment" : "" ,
"deleted" : false ,
"disable_correlation" : false ,
"timestamp" : "1555853178" ,
"to_ids" : true ,
"type" : "domain" ,
"uuid" : "5cbc6f7a-bce8-4bc5-9ae1-4d9502de0b81" ,
"value" : "service-verify-v6.gq"
} ,
{
"category" : "Network activity" ,
"comment" : "" ,
"deleted" : false ,
"disable_correlation" : false ,
"timestamp" : "1555853178" ,
"to_ids" : true ,
"type" : "domain" ,
"uuid" : "5cbc6f7a-b50c-435e-ba95-438d02de0b81" ,
"value" : "service-verify-v8.tk"
} ,
{
"category" : "Network activity" ,
"comment" : "" ,
"deleted" : false ,
"disable_correlation" : false ,
"timestamp" : "1555853178" ,
"to_ids" : true ,
"type" : "ip-dst" ,
"uuid" : "5cbc6f7a-d314-4922-b365-44da02de0b81" ,
"value" : "13.78.36.109"
} ,
{
"category" : "Network activity" ,
"comment" : "" ,
"deleted" : false ,
"disable_correlation" : false ,
"timestamp" : "1555853178" ,
"to_ids" : true ,
"type" : "domain" ,
"uuid" : "5cbc6f7a-60f8-4142-92bf-4a4d02de0b81" ,
"value" : "service-verify-v7.cf"
} ,
{
"category" : "Network activity" ,
"comment" : "" ,
"deleted" : false ,
"disable_correlation" : false ,
"timestamp" : "1555853178" ,
"to_ids" : true ,
"type" : "domain" ,
"uuid" : "5cbc6f7a-0f48-47d2-b7ec-489602de0b81" ,
"value" : "service-verify-v7.ml"
} ,
{
"category" : "Network activity" ,
"comment" : "" ,
"deleted" : false ,
"disable_correlation" : false ,
"timestamp" : "1555853178" ,
"to_ids" : true ,
"type" : "domain" ,
"uuid" : "5cbc6f7a-f31c-4354-879b-430a02de0b81" ,
"value" : "service-verify-v7.tk"
} ,
{
"category" : "Network activity" ,
"comment" : "" ,
"deleted" : false ,
"disable_correlation" : false ,
"timestamp" : "1555853178" ,
"to_ids" : true ,
"type" : "domain" ,
"uuid" : "5cbc6f7a-e1a0-4f46-9bd0-4c6902de0b81" ,
"value" : "service-verify-v12.tk"
} ,
{
"category" : "Network activity" ,
"comment" : "" ,
"deleted" : false ,
"disable_correlation" : false ,
"timestamp" : "1555853178" ,
"to_ids" : true ,
"type" : "domain" ,
"uuid" : "5cbc6f7a-6c88-4e68-b7fd-46f302de0b81" ,
"value" : "service-verify-v8.ga"
} ,
{
"category" : "Network activity" ,
"comment" : "" ,
"deleted" : false ,
"disable_correlation" : false ,
"timestamp" : "1555853178" ,
"to_ids" : true ,
"type" : "domain" ,
"uuid" : "5cbc6f7a-a670-49d1-83c6-49eb02de0b81" ,
"value" : "service-verify-v8.gq"
} ,
{
"category" : "Network activity" ,
"comment" : "" ,
"deleted" : false ,
"disable_correlation" : false ,
"timestamp" : "1555853178" ,
"to_ids" : true ,
"type" : "domain" ,
"uuid" : "5cbc6f7a-3f04-461f-89be-43b302de0b81" ,
"value" : "service-verify-v9.cf"
} ,
{
"category" : "Network activity" ,
"comment" : "" ,
"deleted" : false ,
"disable_correlation" : false ,
"timestamp" : "1555853178" ,
"to_ids" : true ,
"type" : "domain" ,
"uuid" : "5cbc6f7a-dab8-4071-aabb-4f4802de0b81" ,
"value" : "service-verify-v14.gq"
} ,
{
"category" : "Network activity" ,
"comment" : "" ,
"deleted" : false ,
"disable_correlation" : false ,
"timestamp" : "1555853178" ,
"to_ids" : true ,
"type" : "ip-dst" ,
"uuid" : "5cbc6f7a-b938-4df0-ac34-4b8302de0b81" ,
"value" : "192.241.152.20"
} ,
{
"category" : "Network activity" ,
"comment" : "" ,
"deleted" : false ,
"disable_correlation" : false ,
"timestamp" : "1555853179" ,
"to_ids" : true ,
"type" : "domain" ,
"uuid" : "5cbc6f7b-4af8-491f-9c52-479b02de0b81" ,
"value" : "service-verify-v13.tk"
} ,
{
"category" : "Network activity" ,
"comment" : "" ,
"deleted" : false ,
"disable_correlation" : false ,
"timestamp" : "1555853179" ,
"to_ids" : true ,
"type" : "domain" ,
"uuid" : "5cbc6f7b-bcfc-43d8-ba4a-4c2302de0b81" ,
"value" : "service-verify-v13.cf"
} ,
{
"category" : "Network activity" ,
"comment" : "" ,
"deleted" : false ,
"disable_correlation" : false ,
"timestamp" : "1555853179" ,
"to_ids" : true ,
"type" : "domain" ,
"uuid" : "5cbc6f7b-1aa8-40e2-ae6d-42d602de0b81" ,
"value" : "service-verify-v13.gq"
} ,
{
"category" : "Network activity" ,
"comment" : "" ,
"deleted" : false ,
"disable_correlation" : false ,
"timestamp" : "1555853179" ,
"to_ids" : true ,
"type" : "domain" ,
"uuid" : "5cbc6f7b-b05c-4369-a548-4eaa02de0b81" ,
"value" : "service-verify-v14.ml"
} ,
{
"category" : "Network activity" ,
"comment" : "" ,
"deleted" : false ,
"disable_correlation" : false ,
"timestamp" : "1555853179" ,
"to_ids" : true ,
"type" : "domain" ,
"uuid" : "5cbc6f7b-6254-4369-a7da-4ebe02de0b81" ,
"value" : "service-verify-v13.ml"
} ,
{
"category" : "Network activity" ,
"comment" : "" ,
"deleted" : false ,
"disable_correlation" : false ,
"timestamp" : "1555853179" ,
"to_ids" : true ,
"type" : "domain" ,
"uuid" : "5cbc6f7b-7d84-4515-aa19-4fb202de0b81" ,
"value" : "service-verify-v14.cf"
} ,
{
"category" : "Network activity" ,
"comment" : "" ,
"deleted" : false ,
"disable_correlation" : false ,
"timestamp" : "1555853179" ,
"to_ids" : true ,
"type" : "domain" ,
"uuid" : "5cbc6f7b-cb7c-406a-86f6-425b02de0b81" ,
"value" : "service-verify-v14.ga"
} ,
{
"category" : "Network activity" ,
"comment" : "" ,
"deleted" : false ,
"disable_correlation" : false ,
"timestamp" : "1555853179" ,
"to_ids" : true ,
"type" : "domain" ,
"uuid" : "5cbc6f7b-8db8-46c6-b2b7-46f302de0b81" ,
"value" : "service-verify-v31.ga"
} ,
{
"category" : "Network activity" ,
"comment" : "" ,
"deleted" : false ,
"disable_correlation" : false ,
"timestamp" : "1555853179" ,
"to_ids" : true ,
"type" : "ip-dst" ,
"uuid" : "5cbc6f7b-ec34-4937-aaa2-470802de0b81" ,
"value" : "52.57.118.133"
} ,
{
"category" : "Network activity" ,
"comment" : "" ,
"deleted" : false ,
"disable_correlation" : false ,
"timestamp" : "1555853179" ,
"to_ids" : true ,
"type" : "domain" ,
"uuid" : "5cbc6f7b-a5b4-450c-9908-42f402de0b81" ,
"value" : "service-verify-v26.tk"
} ,
{
"category" : "Network activity" ,
"comment" : "" ,
"deleted" : false ,
"disable_correlation" : false ,
"timestamp" : "1555853179" ,
"to_ids" : true ,
"type" : "ip-dst" ,
"uuid" : "5cbc6f7b-1fec-478d-9052-40bb02de0b81" ,
"value" : "13.94.203.192"
} ,
{
"category" : "Network activity" ,
"comment" : "" ,
"deleted" : false ,
"disable_correlation" : false ,
"timestamp" : "1555853179" ,
"to_ids" : true ,
"type" : "domain" ,
"uuid" : "5cbc6f7b-9128-4f6b-8b43-40bb02de0b81" ,
"value" : "service-verify-v22.gq"
} ,
{
"category" : "Network activity" ,
"comment" : "" ,
"deleted" : false ,
"disable_correlation" : false ,
"timestamp" : "1555853179" ,
"to_ids" : true ,
"type" : "ip-dst" ,
"uuid" : "5cbc6f7b-05e8-4f83-84d4-4f8c02de0b81" ,
"value" : "104.211.152.15"
} ,
{
"category" : "Network activity" ,
"comment" : "" ,
"deleted" : false ,
"disable_correlation" : false ,
"timestamp" : "1555853179" ,
"to_ids" : true ,
"type" : "domain" ,
"uuid" : "5cbc6f7b-cddc-490c-8d43-487402de0b81" ,
"value" : "service-verify-v21.ga"
} ,
{
"category" : "Network activity" ,
"comment" : "" ,
"deleted" : false ,
"disable_correlation" : false ,
"timestamp" : "1555853179" ,
"to_ids" : true ,
"type" : "domain" ,
"uuid" : "5cbc6f7b-bed4-4ec9-9e83-40f702de0b81" ,
"value" : "service-verify-v30.ml"
} ,
{
"category" : "Network activity" ,
"comment" : "" ,
"deleted" : false ,
"disable_correlation" : false ,
"timestamp" : "1555853179" ,
"to_ids" : true ,
"type" : "domain" ,
"uuid" : "5cbc6f7b-40b8-4dd6-b0f3-4cbd02de0b81" ,
"value" : "service-verify-v29.cf"
} ,
{
"category" : "Network activity" ,
"comment" : "" ,
"deleted" : false ,
"disable_correlation" : false ,
"timestamp" : "1555853179" ,
"to_ids" : true ,
"type" : "domain" ,
"uuid" : "5cbc6f7b-f2a8-42ef-a6ac-4f0202de0b81" ,
"value" : "service-verify-v21.tk"
} ,
{
"category" : "Network activity" ,
"comment" : "" ,
"deleted" : false ,
"disable_correlation" : false ,
"timestamp" : "1555853179" ,
"to_ids" : true ,
"type" : "domain" ,
"uuid" : "5cbc6f7b-ad94-4677-bd76-44c202de0b81" ,
"value" : "service-verify-v28.ml"
} ,
{
"category" : "Network activity" ,
"comment" : "" ,
"deleted" : false ,
"disable_correlation" : false ,
"timestamp" : "1555853179" ,
"to_ids" : true ,
"type" : "domain" ,
"uuid" : "5cbc6f7b-0cb4-4ca2-86d6-41b802de0b81" ,
"value" : "service-verify-v30.gq"
} ,
{
"category" : "Network activity" ,
"comment" : "" ,
"deleted" : false ,
"disable_correlation" : false ,
"timestamp" : "1555853179" ,
"to_ids" : true ,
"type" : "domain" ,
"uuid" : "5cbc6f7b-d54c-4209-9bc2-405702de0b81" ,
"value" : "service-verify-v21.gq"
} ,
{
"category" : "Network activity" ,
"comment" : "" ,
"deleted" : false ,
"disable_correlation" : false ,
"timestamp" : "1555853179" ,
"to_ids" : true ,
"type" : "domain" ,
"uuid" : "5cbc6f7b-6f28-447a-949c-472202de0b81" ,
"value" : "service-verify-v29.ga"
} ,
{
"category" : "Network activity" ,
"comment" : "" ,
"deleted" : false ,
"disable_correlation" : false ,
"timestamp" : "1555853179" ,
"to_ids" : true ,
"type" : "domain" ,
"uuid" : "5cbc6f7b-28a8-485e-a484-443902de0b81" ,
"value" : "service-verify-v17.cf"
} ,
{
"category" : "Network activity" ,
"comment" : "" ,
"deleted" : false ,
"disable_correlation" : false ,
"timestamp" : "1555853179" ,
"to_ids" : true ,
"type" : "domain" ,
"uuid" : "5cbc6f7b-fe48-4cd4-bba2-4f3b02de0b81" ,
"value" : "service-verify-v26.ml"
} ,
{
"category" : "Network activity" ,
"comment" : "" ,
"deleted" : false ,
"disable_correlation" : false ,
"timestamp" : "1555853179" ,
"to_ids" : true ,
"type" : "domain" ,
"uuid" : "5cbc6f7b-f008-475c-8d1a-48a302de0b81" ,
"value" : "service-verify-v32.ga"
} ,
{
"category" : "Network activity" ,
"comment" : "" ,
"deleted" : false ,
"disable_correlation" : false ,
"timestamp" : "1555853179" ,
"to_ids" : true ,
"type" : "domain" ,
"uuid" : "5cbc6f7b-e1c8-4802-91e1-40aa02de0b81" ,
"value" : "service-verify-v28.gq"
} ,
{
"category" : "Network activity" ,
"comment" : "" ,
"deleted" : false ,
"disable_correlation" : false ,
"timestamp" : "1555853179" ,
"to_ids" : true ,
"type" : "domain" ,
"uuid" : "5cbc6f7b-b18c-4b3a-bc64-48fc02de0b81" ,
"value" : "service-verify-v30.cf"
} ,
{
"category" : "Network activity" ,
"comment" : "" ,
"deleted" : false ,
"disable_correlation" : false ,
"timestamp" : "1555853179" ,
"to_ids" : true ,
"type" : "domain" ,
"uuid" : "5cbc6f7b-bbe8-41eb-af69-4f7a02de0b81" ,
"value" : "service-verify-v25.gq"
} ,
{
"category" : "Network activity" ,
"comment" : "" ,
"deleted" : false ,
"disable_correlation" : false ,
"timestamp" : "1555853179" ,
"to_ids" : true ,
"type" : "domain" ,
"uuid" : "5cbc6f7b-3340-4cc5-bea4-443802de0b81" ,
"value" : "service-verify-v29.gq"
} ,
{
"category" : "Network activity" ,
"comment" : "" ,
"deleted" : false ,
"disable_correlation" : false ,
"timestamp" : "1555853179" ,
"to_ids" : true ,
"type" : "domain" ,
"uuid" : "5cbc6f7b-6704-4176-a932-4b4f02de0b81" ,
"value" : "service-verify-v28.ga"
} ,
{
"category" : "Network activity" ,
"comment" : "" ,
"deleted" : false ,
"disable_correlation" : false ,
"timestamp" : "1555853179" ,
"to_ids" : true ,
"type" : "domain" ,
"uuid" : "5cbc6f7b-c648-457e-a897-457302de0b81" ,
"value" : "service-verify-v21.ml"
} ,
{
"category" : "Network activity" ,
"comment" : "" ,
"deleted" : false ,
"disable_correlation" : false ,
"timestamp" : "1555853179" ,
"to_ids" : true ,
"type" : "domain" ,
"uuid" : "5cbc6f7b-2aa0-48f1-acb7-4e3c02de0b81" ,
"value" : "service-verify-v29.ml"
} ,
{
"category" : "Network activity" ,
"comment" : "" ,
"deleted" : false ,
"disable_correlation" : false ,
"timestamp" : "1555853179" ,
"to_ids" : true ,
"type" : "domain" ,
"uuid" : "5cbc6f7b-e358-432e-adcb-42be02de0b81" ,
"value" : "service-verify-v31.ml"
} ,
{
"category" : "Network activity" ,
"comment" : "" ,
"deleted" : false ,
"disable_correlation" : false ,
"timestamp" : "1555853179" ,
"to_ids" : true ,
"type" : "domain" ,
"uuid" : "5cbc6f7b-4940-4732-af01-40e202de0b81" ,
"value" : "service-verify-v23.cf"
} ,
{
"category" : "Network activity" ,
"comment" : "" ,
"deleted" : false ,
"disable_correlation" : false ,
"timestamp" : "1555853179" ,
"to_ids" : true ,
"type" : "domain" ,
"uuid" : "5cbc6f7b-a94c-4a97-913a-498e02de0b81" ,
"value" : "service-verify-v26.ga"
} ,
{
"category" : "Network activity" ,
"comment" : "" ,
"deleted" : false ,
"disable_correlation" : false ,
"timestamp" : "1555853179" ,
"to_ids" : true ,
"type" : "domain" ,
"uuid" : "5cbc6f7b-52dc-4c40-becd-413f02de0b81" ,
"value" : "service-verify-v36.ga"
} ,
{
"category" : "Network activity" ,
"comment" : "" ,
"deleted" : false ,
"disable_correlation" : false ,
"timestamp" : "1555853179" ,
"to_ids" : true ,
"type" : "domain" ,
"uuid" : "5cbc6f7b-b74c-4f5b-b6fc-4a4002de0b81" ,
"value" : "service-verify-v35.ml"
} ,
{
"category" : "Network activity" ,
"comment" : "" ,
"deleted" : false ,
"disable_correlation" : false ,
"timestamp" : "1555853179" ,
"to_ids" : true ,
"type" : "domain" ,
"uuid" : "5cbc6f7b-2b88-4fe0-9800-4a4102de0b81" ,
"value" : "service-verify-v40.gq"
} ,
{
"category" : "Network activity" ,
"comment" : "" ,
"deleted" : false ,
"disable_correlation" : false ,
"timestamp" : "1555853179" ,
"to_ids" : true ,
"type" : "ip-dst" ,
"uuid" : "5cbc6f7b-cd14-4758-8a70-4d8002de0b81" ,
"value" : "34.245.34.247"
} ,
{
"category" : "Network activity" ,
"comment" : "" ,
"deleted" : false ,
"disable_correlation" : false ,
"timestamp" : "1555853179" ,
"to_ids" : true ,
"type" : "domain" ,
"uuid" : "5cbc6f7b-d834-4daa-9f43-47ef02de0b81" ,
"value" : "service-verify-v41.ml"
} ,
{
"category" : "Network activity" ,
"comment" : "" ,
"deleted" : false ,
"disable_correlation" : false ,
"timestamp" : "1555853179" ,
"to_ids" : true ,
"type" : "domain" ,
"uuid" : "5cbc6f7b-79e4-4759-860e-409902de0b81" ,
"value" : "service-verify-v44.ga"
} ,
{
"category" : "Network activity" ,
"comment" : "" ,
"deleted" : false ,
"disable_correlation" : false ,
"timestamp" : "1555853179" ,
"to_ids" : true ,
"type" : "ip-dst" ,
"uuid" : "5cbc6f7b-f0f8-45a5-b754-464d02de0b81" ,
"value" : "51.15.84.31"
} ,
{
"category" : "Network activity" ,
"comment" : "" ,
"deleted" : false ,
"disable_correlation" : false ,
"timestamp" : "1555853179" ,
"to_ids" : true ,
"type" : "domain" ,
"uuid" : "5cbc6f7b-4da0-4664-9d5e-49ec02de0b81" ,
"value" : "service-verify-v36.tk"
} ,
{
"category" : "Network activity" ,
"comment" : "" ,
"deleted" : false ,
"disable_correlation" : false ,
"timestamp" : "1555853179" ,
"to_ids" : true ,
"type" : "domain" ,
"uuid" : "5cbc6f7b-b3cc-4a75-b225-4c5a02de0b81" ,
"value" : "service-verify-v33.tk"
} ,
{
"category" : "Network activity" ,
"comment" : "" ,
"deleted" : false ,
"disable_correlation" : false ,
"timestamp" : "1555853179" ,
"to_ids" : true ,
"type" : "domain" ,
"uuid" : "5cbc6f7b-70c0-4561-8867-4ef102de0b81" ,
"value" : "service-verify-v24.ml"
} ,
{
"category" : "Network activity" ,
"comment" : "" ,
"deleted" : false ,
"disable_correlation" : false ,
"timestamp" : "1555853179" ,
"to_ids" : true ,
"type" : "domain" ,
"uuid" : "5cbc6f7b-892c-4463-9f95-475002de0b81" ,
"value" : "service-verify-v23.tk"
} ,
{
"category" : "Network activity" ,
"comment" : "" ,
"deleted" : false ,
"disable_correlation" : false ,
"timestamp" : "1555853179" ,
"to_ids" : true ,
"type" : "domain" ,
"uuid" : "5cbc6f7b-aa70-4386-b77e-48d402de0b81" ,
"value" : "service-verify-v38.ml"
} ,
{
"category" : "Network activity" ,
"comment" : "" ,
"deleted" : false ,
"disable_correlation" : false ,
"timestamp" : "1555853179" ,
"to_ids" : true ,
"type" : "domain" ,
"uuid" : "5cbc6f7b-9a50-42d2-b312-4d3602de0b81" ,
"value" : "service-verify-v35.ga"
} ,
{
"category" : "Network activity" ,
"comment" : "" ,
"deleted" : false ,
"disable_correlation" : false ,
"timestamp" : "1555853179" ,
"to_ids" : true ,
"type" : "domain" ,
"uuid" : "5cbc6f7b-064c-4e79-b973-436302de0b81" ,
"value" : "service-verify-v23.gq"
} ,
{
"category" : "Network activity" ,
"comment" : "" ,
"deleted" : false ,
"disable_correlation" : false ,
"timestamp" : "1555853179" ,
"to_ids" : true ,
"type" : "domain" ,
"uuid" : "5cbc6f7b-195c-4fa4-ad34-48ee02de0b81" ,
"value" : "service-verify-v43.tk"
} ,
{
"category" : "Network activity" ,
"comment" : "" ,
"deleted" : false ,
"disable_correlation" : false ,
"timestamp" : "1555853179" ,
"to_ids" : true ,
"type" : "domain" ,
"uuid" : "5cbc6f7b-dfdc-4208-ae73-41d102de0b81" ,
"value" : "service-verify-v40.ml"
} ,
{
"category" : "Network activity" ,
"comment" : "" ,
"deleted" : false ,
"disable_correlation" : false ,
"timestamp" : "1555853179" ,
"to_ids" : true ,
"type" : "domain" ,
"uuid" : "5cbc6f7b-dc68-4d4a-85a1-431d02de0b81" ,
"value" : "service-verify-v41.gq"
} ,
{
"category" : "Network activity" ,
"comment" : "" ,
"deleted" : false ,
"disable_correlation" : false ,
"timestamp" : "1555853179" ,
"to_ids" : true ,
"type" : "domain" ,
"uuid" : "5cbc6f7b-59a0-4729-abbe-4e2f02de0b81" ,
"value" : "service-verify-v29.tk"
} ,
{
"category" : "Network activity" ,
"comment" : "" ,
"deleted" : false ,
"disable_correlation" : false ,
"timestamp" : "1555853179" ,
"to_ids" : true ,
"type" : "domain" ,
"uuid" : "5cbc6f7b-3a4c-4ad3-a9c7-469002de0b81" ,
"value" : "service-verify-v43.ml"
} ,
{
"category" : "Network activity" ,
"comment" : "" ,
"deleted" : false ,
"disable_correlation" : false ,
"timestamp" : "1555853179" ,
"to_ids" : true ,
"type" : "domain" ,
"uuid" : "5cbc6f7b-243c-4f09-a8a8-4de002de0b81" ,
"value" : "service-verify-v40.tk"
} ,
{
"category" : "Network activity" ,
"comment" : "" ,
"deleted" : false ,
"disable_correlation" : false ,
"timestamp" : "1555853179" ,
"to_ids" : true ,
"type" : "domain" ,
"uuid" : "5cbc6f7b-7628-4b15-8bae-4d2502de0b81" ,
"value" : "service-verify-v37.cf"
} ,
{
"category" : "Network activity" ,
"comment" : "" ,
"deleted" : false ,
"disable_correlation" : false ,
"timestamp" : "1555853179" ,
"to_ids" : true ,
"type" : "domain" ,
"uuid" : "5cbc6f7b-5a34-4bf1-b2e3-4f5202de0b81" ,
"value" : "service-verify-v44.ml"
} ,
{
"category" : "Network activity" ,
"comment" : "" ,
"deleted" : false ,
"disable_correlation" : false ,
"timestamp" : "1555853179" ,
"to_ids" : true ,
"type" : "domain" ,
"uuid" : "5cbc6f7b-b810-40ae-ac49-48ad02de0b81" ,
"value" : "service-verify-v42.gq"
} ,
{
"category" : "Network activity" ,
"comment" : "" ,
"deleted" : false ,
"disable_correlation" : false ,
"timestamp" : "1555853179" ,
"to_ids" : true ,
"type" : "domain" ,
"uuid" : "5cbc6f7b-8e14-4aa7-b315-4bd702de0b81" ,
"value" : "service-verify-v44.gq"
} ,
{
"category" : "Network activity" ,
"comment" : "" ,
"deleted" : false ,
"disable_correlation" : false ,
"timestamp" : "1555853179" ,
"to_ids" : true ,
"type" : "domain" ,
"uuid" : "5cbc6f7b-1428-420d-ab9f-418002de0b81" ,
"value" : "service-verify-v39.tk"
} ,
{
"category" : "Network activity" ,
"comment" : "" ,
"deleted" : false ,
"disable_correlation" : false ,
"timestamp" : "1555853179" ,
"to_ids" : true ,
"type" : "domain" ,
"uuid" : "5cbc6f7b-845c-4104-9aa9-4f7402de0b81" ,
"value" : "service-verify-v42.cf"
} ,
{
"category" : "Network activity" ,
"comment" : "" ,
"deleted" : false ,
"disable_correlation" : false ,
"timestamp" : "1555853179" ,
"to_ids" : true ,
"type" : "domain" ,
"uuid" : "5cbc6f7b-4010-4c60-90a8-435002de0b81" ,
"value" : "service-verify-v42.ga"
} ,
{
"category" : "Network activity" ,
"comment" : "" ,
"deleted" : false ,
"disable_correlation" : false ,
"timestamp" : "1555853179" ,
"to_ids" : true ,
"type" : "domain" ,
"uuid" : "5cbc6f7b-a7cc-46f7-8c9f-420902de0b81" ,
"value" : "service-verify-v44.cf"
} ,
{
"category" : "Network activity" ,
"comment" : "" ,
"deleted" : false ,
"disable_correlation" : false ,
"timestamp" : "1555853179" ,
"to_ids" : true ,
"type" : "domain" ,
"uuid" : "5cbc6f7b-3ea8-4024-b59a-48a202de0b81" ,
"value" : "service-verify-v40.ga"
} ,
{
"category" : "Network activity" ,
"comment" : "" ,
"deleted" : false ,
"disable_correlation" : false ,
"timestamp" : "1555853179" ,
"to_ids" : true ,
"type" : "domain" ,
"uuid" : "5cbc6f7b-36f4-42fa-b4ba-4ede02de0b81" ,
"value" : "service-verify-v41.cf"
} ,
{
"category" : "Network activity" ,
"comment" : "" ,
"deleted" : false ,
"disable_correlation" : false ,
"timestamp" : "1555853179" ,
"to_ids" : true ,
"type" : "domain" ,
"uuid" : "5cbc6f7b-dfd0-46b8-a67a-46f702de0b81" ,
"value" : "service-verify-v42.ml"
} ,
{
"category" : "Network activity" ,
"comment" : "" ,
"deleted" : false ,
"disable_correlation" : false ,
"timestamp" : "1555853179" ,
"to_ids" : true ,
"type" : "domain" ,
"uuid" : "5cbc6f7b-28e0-4447-8a10-4c1c02de0b81" ,
"value" : "service-verify-v43.ga"
} ,
{
"category" : "Network activity" ,
"comment" : "" ,
"deleted" : false ,
"disable_correlation" : false ,
"timestamp" : "1555853179" ,
"to_ids" : true ,
"type" : "domain" ,
"uuid" : "5cbc6f7b-a020-4bec-ab80-49e202de0b81" ,
"value" : "service-verify-v24.tk"
} ,
{
"category" : "Network activity" ,
"comment" : "" ,
"deleted" : false ,
"disable_correlation" : false ,
"timestamp" : "1555853179" ,
"to_ids" : true ,
"type" : "domain" ,
"uuid" : "5cbc6f7b-28c8-4bc6-b9d6-47f002de0b81" ,
"value" : "service-verify-v45.ml"
} ,
{
"category" : "Network activity" ,
"comment" : "" ,
"deleted" : false ,
"disable_correlation" : false ,
"timestamp" : "1555853179" ,
"to_ids" : true ,
"type" : "domain" ,
"uuid" : "5cbc6f7b-dd30-469d-8088-4fe002de0b81" ,
"value" : "service-verify-v41.ga"
} ,
{
"category" : "Network activity" ,
"comment" : "" ,
"deleted" : false ,
"disable_correlation" : false ,
"timestamp" : "1555853179" ,
"to_ids" : true ,
"type" : "domain" ,
"uuid" : "5cbc6f7b-c65c-4517-a448-464502de0b81" ,
"value" : "service-verify-v43.gq"
} ,
{
"category" : "Network activity" ,
"comment" : "" ,
"deleted" : false ,
"disable_correlation" : false ,
"timestamp" : "1555853180" ,
"to_ids" : true ,
"type" : "domain" ,
"uuid" : "5cbc6f7c-b820-4596-ae0a-4e8a02de0b81" ,
"value" : "service-verify-v1.ga"
} ,
{
"category" : "Network activity" ,
"comment" : "" ,
"deleted" : false ,
"disable_correlation" : false ,
"timestamp" : "1555853180" ,
"to_ids" : true ,
"type" : "domain" ,
"uuid" : "5cbc6f7c-eafc-4bfe-95c5-478702de0b81" ,
"value" : "service-verify-v1.gq"
} ,
{
"category" : "Network activity" ,
"comment" : "" ,
"deleted" : false ,
"disable_correlation" : false ,
"timestamp" : "1555853180" ,
"to_ids" : true ,
"type" : "domain" ,
"uuid" : "5cbc6f7c-5990-458c-887f-405002de0b81" ,
"value" : "service-verify-v2.ml"
} ,
{
"category" : "Network activity" ,
"comment" : "" ,
"deleted" : false ,
"disable_correlation" : false ,
"timestamp" : "1555853180" ,
"to_ids" : true ,
"type" : "domain" ,
"uuid" : "5cbc6f7c-8158-4194-85fd-47a902de0b81" ,
"value" : "service-verify-v2.cf"
} ,
{
"category" : "Network activity" ,
"comment" : "" ,
"deleted" : false ,
"disable_correlation" : false ,
"timestamp" : "1555853180" ,
"to_ids" : true ,
"type" : "domain" ,
"uuid" : "5cbc6f7c-c760-42cd-b5f5-418802de0b81" ,
"value" : "service-verify-v2.ga"
} ,
{
"category" : "Network activity" ,
"comment" : "" ,
"deleted" : false ,
"disable_correlation" : false ,
"timestamp" : "1555853180" ,
"to_ids" : true ,
"type" : "domain" ,
"uuid" : "5cbc6f7c-763c-4d30-b92d-4d5802de0b81" ,
"value" : "service-verify-v2.tk"
} ,
{
"category" : "Network activity" ,
"comment" : "" ,
"deleted" : false ,
"disable_correlation" : false ,
"timestamp" : "1555853180" ,
"to_ids" : true ,
"type" : "domain" ,
"uuid" : "5cbc6f7c-fc80-496c-85a3-48c702de0b81" ,
"value" : "service-verify-v1.tk"
} ,
{
"category" : "Network activity" ,
"comment" : "" ,
"deleted" : false ,
"disable_correlation" : false ,
"timestamp" : "1555853180" ,
"to_ids" : true ,
"type" : "domain" ,
"uuid" : "5cbc6f7c-b6f8-4eb6-bb04-4c3102de0b81" ,
"value" : "service-verify-v3.ga"
} ,
{
"category" : "Network activity" ,
"comment" : "" ,
"deleted" : false ,
"disable_correlation" : false ,
"timestamp" : "1555853180" ,
"to_ids" : true ,
"type" : "domain" ,
"uuid" : "5cbc6f7c-8dc8-4381-81b7-43cf02de0b81" ,
"value" : "service-verify-v3.gq"
} ,
{
"category" : "Network activity" ,
"comment" : "" ,
"deleted" : false ,
"disable_correlation" : false ,
"timestamp" : "1555853180" ,
"to_ids" : true ,
"type" : "domain" ,
"uuid" : "5cbc6f7c-fe88-4d1e-85b5-48f802de0b81" ,
"value" : "service-verify-v3.cf"
} ,
{
"category" : "Network activity" ,
"comment" : "" ,
"deleted" : false ,
"disable_correlation" : false ,
"timestamp" : "1555853180" ,
"to_ids" : true ,
"type" : "domain" ,
"uuid" : "5cbc6f7c-8eac-40c4-a890-407f02de0b81" ,
"value" : "service-verify-v3.tk"
} ,
{
"category" : "Network activity" ,
"comment" : "" ,
"deleted" : false ,
"disable_correlation" : false ,
"timestamp" : "1555853180" ,
"to_ids" : true ,
"type" : "domain" ,
"uuid" : "5cbc6f7c-164c-4818-90d0-422d02de0b81" ,
"value" : "service-verify-v3.ml"
} ,
{
"category" : "Network activity" ,
"comment" : "" ,
"deleted" : false ,
"disable_correlation" : false ,
"timestamp" : "1555853180" ,
"to_ids" : true ,
"type" : "domain" ,
"uuid" : "5cbc6f7c-eec8-419e-85be-4d5202de0b81" ,
"value" : "service-verify-v4.cf"
} ,
{
"category" : "Network activity" ,
"comment" : "" ,
"deleted" : false ,
"disable_correlation" : false ,
"timestamp" : "1555853180" ,
"to_ids" : true ,
"type" : "domain" ,
"uuid" : "5cbc6f7c-6944-4b1a-860a-43eb02de0b81" ,
"value" : "service-verify-v19.cf"
} ,
{
"category" : "Network activity" ,
"comment" : "" ,
"deleted" : false ,
"disable_correlation" : false ,
"timestamp" : "1555853180" ,
"to_ids" : true ,
"type" : "domain" ,
"uuid" : "5cbc6f7c-492c-4544-9b8c-4ea602de0b81" ,
"value" : "service-verify2.ml"
} ,
{
"category" : "Network activity" ,
"comment" : "" ,
"deleted" : false ,
"disable_correlation" : false ,
"timestamp" : "1555853180" ,
"to_ids" : true ,
"type" : "ip-dst" ,
"uuid" : "5cbc6f7c-8548-4c8a-b6f2-4df202de0b81" ,
"value" : "51.158.108.50"
} ,
{
"category" : "Network activity" ,
"comment" : "" ,
"deleted" : false ,
"disable_correlation" : false ,
"timestamp" : "1555853180" ,
"to_ids" : true ,
"type" : "domain" ,
"uuid" : "5cbc6f7c-d550-4b0a-91d8-401102de0b81" ,
"value" : "service-verify1.ml"
} ,
{
"category" : "Network activity" ,
"comment" : "" ,
"deleted" : false ,
"disable_correlation" : false ,
"timestamp" : "1555853180" ,
"to_ids" : true ,
"type" : "domain" ,
"uuid" : "5cbc6f7c-4880-4906-a91d-4b3802de0b81" ,
"value" : "service-verify3.ml"
} ,
{
"category" : "Network activity" ,
"comment" : "" ,
"deleted" : false ,
"disable_correlation" : false ,
"timestamp" : "1555853180" ,
"to_ids" : true ,
"type" : "domain" ,
"uuid" : "5cbc6f7c-507c-4ceb-a907-4b0502de0b81" ,
"value" : "service-verify2.ga"
} ,
{
"category" : "Network activity" ,
"comment" : "" ,
"deleted" : false ,
"disable_correlation" : false ,
"timestamp" : "1555853180" ,
"to_ids" : true ,
"type" : "domain" ,
"uuid" : "5cbc6f7c-2424-40e3-a62b-4a5002de0b81" ,
"value" : "service-verify6.ga"
} ,
{
"category" : "Network activity" ,
"comment" : "" ,
"deleted" : false ,
"disable_correlation" : false ,
"timestamp" : "1555853180" ,
"to_ids" : true ,
"type" : "ip-dst" ,
"uuid" : "5cbc6f7c-f020-455c-8867-4bc702de0b81" ,
"value" : "51.158.190.250"
} ,
{
"category" : "Network activity" ,
"comment" : "" ,
"deleted" : false ,
"disable_correlation" : false ,
"timestamp" : "1555853425" ,
"to_ids" : true ,
"type" : "url" ,
"uuid" : "5cbc7071-59d4-4129-801e-42e202de0b81" ,
"value" : "http://service-verify-v41.ga/"
} ,
{
"category" : "Network activity" ,
"comment" : "Attribute #4255892 enriched by dns." ,
"deleted" : false ,
"disable_correlation" : false ,
"timestamp" : "1555853553" ,
"to_ids" : false ,
"type" : "ip-src" ,
"uuid" : "5cbc70f1-d340-4e04-b842-4496e387cbd9" ,
"value" : "13.114.203.210"
} ,
{
"category" : "Network activity" ,
"comment" : "Attribute #4255897 enriched by dns." ,
"deleted" : false ,
"disable_correlation" : false ,
"timestamp" : "1555853554" ,
"to_ids" : false ,
"type" : "ip-src" ,
"uuid" : "5cbc70f2-dc88-4f8b-b4e0-49b9e387cbd9" ,
"value" : "13.78.36.109"
} ,
{
"category" : "Network activity" ,
"comment" : "Attribute #4255906 enriched by dns." ,
"deleted" : false ,
"disable_correlation" : false ,
"timestamp" : "1555853554" ,
"to_ids" : false ,
"type" : "ip-src" ,
"uuid" : "5cbc70f2-5a94-4291-8c53-40dae387cbd9" ,
"value" : "192.241.152.20"
} ,
{
"category" : "Network activity" ,
"comment" : "Attribute #4255915 enriched by dns." ,
"deleted" : false ,
"disable_correlation" : false ,
"timestamp" : "1555853555" ,
"to_ids" : false ,
"type" : "ip-src" ,
"uuid" : "5cbc70f3-e504-4646-8883-4f5be387cbd9" ,
"value" : "52.57.118.133"
} ,
{
"category" : "Network activity" ,
"comment" : "Attribute #4255917 enriched by dns." ,
"deleted" : false ,
"disable_correlation" : false ,
"timestamp" : "1555853555" ,
"to_ids" : false ,
"type" : "ip-src" ,
"uuid" : "5cbc70f3-2c20-4fb5-b8ce-468fe387cbd9" ,
"value" : "13.94.203.192"
} ,
{
"category" : "Network activity" ,
"comment" : "Attribute #4255919 enriched by dns." ,
"deleted" : false ,
"disable_correlation" : false ,
"timestamp" : "1555853555" ,
"to_ids" : false ,
"type" : "ip-src" ,
"uuid" : "5cbc70f3-0990-4058-b0df-4517e387cbd9" ,
"value" : "104.211.152.15"
} ,
{
"category" : "Network activity" ,
"comment" : "Attribute #4255944 enriched by dns." ,
"deleted" : false ,
"disable_correlation" : false ,
"timestamp" : "1555853556" ,
"to_ids" : false ,
"type" : "ip-src" ,
"uuid" : "5cbc70f4-d8e0-4a10-8fc7-4de6e387cbd9" ,
"value" : "34.245.34.247"
} ,
{
"category" : "Network activity" ,
"comment" : "Attribute #4255947 enriched by dns." ,
"deleted" : false ,
"disable_correlation" : false ,
"timestamp" : "1555853556" ,
"to_ids" : false ,
"type" : "ip-src" ,
"uuid" : "5cbc70f4-ff38-4c71-8aaf-4f4be387cbd9" ,
"value" : "51.15.84.31"
} ,
{
"category" : "Network activity" ,
"comment" : "Attribute #4255992 enriched by dns." ,
"deleted" : false ,
"disable_correlation" : false ,
"timestamp" : "1555853558" ,
"to_ids" : false ,
"type" : "ip-src" ,
"uuid" : "5cbc70f6-b000-4cfa-b57a-466ae387cbd9" ,
"value" : "51.158.108.50"
} ,
{
"category" : "Network activity" ,
"comment" : "Attribute #4255997 enriched by dns." ,
"deleted" : false ,
"disable_correlation" : false ,
"timestamp" : "1555853559" ,
"to_ids" : false ,
"type" : "ip-src" ,
"uuid" : "5cbc70f7-b330-437f-bb85-4ab8e387cbd9" ,
"value" : "51.158.190.250"
}
] ,
"Object" : [
{
"comment" : "" ,
"deleted" : false ,
"description" : "Microblog post like a Twitter tweet or a post on a Facebook wall." ,
"meta-category" : "misc" ,
"name" : "microblog" ,
"template_uuid" : "8ec8c911-ddbe-4f5b-895b-fbff70c42a60" ,
"template_version" : "5" ,
"timestamp" : "1555853360" ,
"uuid" : "5cbc6fec-649c-4d05-aaee-4b6202de0b81" ,
"Attribute" : [
{
"category" : "Other" ,
"comment" : "" ,
"deleted" : false ,
"disable_correlation" : false ,
"object_relation" : "post" ,
"timestamp" : "1555853293" ,
"to_ids" : false ,
"type" : "text" ,
"uuid" : "5cbc6fed-9cd4-467a-ae62-4de002de0b81" ,
"value" : "97 domains #phishing domains spread over 10 IP's... pretty big infrastructure (using @awscloud @azure @digitalocean etc) wonder what they have planned\r\n\r\nfull list here:\r\nhttps://pastebin.com/et1AF0Nm"
} ,
{
"category" : "Other" ,
"comment" : "" ,
"deleted" : false ,
"disable_correlation" : true ,
"object_relation" : "type" ,
"timestamp" : "1555853293" ,
"to_ids" : false ,
"type" : "text" ,
"uuid" : "5cbc6fed-75c0-4dfa-be44-454902de0b81" ,
"value" : "Twitter"
} ,
{
"category" : "External analysis" ,
"comment" : "" ,
"deleted" : false ,
"disable_correlation" : false ,
"object_relation" : "url" ,
"timestamp" : "1555853321" ,
"to_ids" : false ,
"type" : "link" ,
"uuid" : "5cbc6fed-b9c4-4f74-b02b-444502de0b81" ,
"value" : "https://twitter.com/PhishingAi/status/1119762409273511936"
} ,
{
"category" : "External analysis" ,
"comment" : "" ,
"deleted" : false ,
"disable_correlation" : false ,
"object_relation" : "link" ,
"timestamp" : "1555853360" ,
"to_ids" : false ,
"type" : "link" ,
"uuid" : "5cbc6fed-6148-43bf-8f82-4f6f02de0b81" ,
"value" : "https://pastebin.com/et1AF0Nm"
} ,
{
"category" : "Other" ,
"comment" : "" ,
"deleted" : false ,
"disable_correlation" : false ,
"object_relation" : "username" ,
"timestamp" : "1555853293" ,
"to_ids" : false ,
"type" : "text" ,
"uuid" : "5cbc6fed-2a3c-4f71-a9d6-4e5402de0b81" ,
"value" : "PhishingAi"
}
]
}
2023-04-21 13:25:09 +00:00
]
2023-12-14 14:30:15 +00:00
}
2023-04-21 13:25:09 +00:00
}