436 lines
17 KiB
JSON
436 lines
17 KiB
JSON
|
{
|
||
|
"type": "bundle",
|
||
|
"id": "bundle--5b28113a-05b8-4913-8fdb-27410acd0835",
|
||
|
"objects": [
|
||
|
{
|
||
|
"type": "identity",
|
||
|
"spec_version": "2.1",
|
||
|
"id": "identity--5a68c02d-959c-4c8a-a571-0dcac0a8060a",
|
||
|
"created": "2018-06-25T20:18:28.000Z",
|
||
|
"modified": "2018-06-25T20:18:28.000Z",
|
||
|
"name": "Synovus Financial",
|
||
|
"identity_class": "organization"
|
||
|
},
|
||
|
{
|
||
|
"type": "report",
|
||
|
"spec_version": "2.1",
|
||
|
"id": "report--5b28113a-05b8-4913-8fdb-27410acd0835",
|
||
|
"created_by_ref": "identity--5a68c02d-959c-4c8a-a571-0dcac0a8060a",
|
||
|
"created": "2018-06-25T20:18:28.000Z",
|
||
|
"modified": "2018-06-25T20:18:28.000Z",
|
||
|
"name": "bank phishing domains",
|
||
|
"published": "2018-06-25T20:18:58Z",
|
||
|
"object_refs": [
|
||
|
"observed-data--5b281204-013c-48ec-a60e-2cda0acd0835",
|
||
|
"domain-name--5b281204-013c-48ec-a60e-2cda0acd0835",
|
||
|
"observed-data--5b281217-f58c-40c0-8e42-16ec0acd0835",
|
||
|
"domain-name--5b281217-f58c-40c0-8e42-16ec0acd0835",
|
||
|
"observed-data--5b281217-0a80-4b77-9713-16ec0acd0835",
|
||
|
"domain-name--5b281217-0a80-4b77-9713-16ec0acd0835",
|
||
|
"observed-data--5b281217-0fd4-4fc4-8d6c-16ec0acd0835",
|
||
|
"domain-name--5b281217-0fd4-4fc4-8d6c-16ec0acd0835",
|
||
|
"observed-data--5b281217-1398-4b25-bc8c-16ec0acd0835",
|
||
|
"domain-name--5b281217-1398-4b25-bc8c-16ec0acd0835",
|
||
|
"observed-data--5b281217-0e60-4261-aacd-16ec0acd0835",
|
||
|
"domain-name--5b281217-0e60-4261-aacd-16ec0acd0835",
|
||
|
"observed-data--5b281217-06d0-41a9-9eb6-16ec0acd0835",
|
||
|
"domain-name--5b281217-06d0-41a9-9eb6-16ec0acd0835",
|
||
|
"observed-data--5b281217-0cec-466e-82bf-16ec0acd0835",
|
||
|
"domain-name--5b281217-0cec-466e-82bf-16ec0acd0835",
|
||
|
"observed-data--5b281217-94b8-4b4d-8d01-16ec0acd0835",
|
||
|
"domain-name--5b281217-94b8-4b4d-8d01-16ec0acd0835",
|
||
|
"observed-data--5b281217-91d8-4835-835b-16ec0acd0835",
|
||
|
"domain-name--5b281217-91d8-4835-835b-16ec0acd0835",
|
||
|
"observed-data--5b281217-8854-4e92-8602-16ec0acd0835",
|
||
|
"domain-name--5b281217-8854-4e92-8602-16ec0acd0835",
|
||
|
"observed-data--5b281217-863c-441c-aea7-16ec0acd0835",
|
||
|
"domain-name--5b281217-863c-441c-aea7-16ec0acd0835",
|
||
|
"observed-data--5b281217-7f10-4099-a190-16ec0acd0835",
|
||
|
"domain-name--5b281217-7f10-4099-a190-16ec0acd0835",
|
||
|
"observed-data--5b281217-89dc-4306-92b8-16ec0acd0835",
|
||
|
"domain-name--5b281217-89dc-4306-92b8-16ec0acd0835",
|
||
|
"observed-data--5b281217-937c-485c-9fa3-16ec0acd0835",
|
||
|
"domain-name--5b281217-937c-485c-9fa3-16ec0acd0835"
|
||
|
],
|
||
|
"labels": [
|
||
|
"Threat-Report",
|
||
|
"misp:tool=\"MISP-STIX-Converter\"",
|
||
|
"veris:action:social:variety=\"Phishing\""
|
||
|
],
|
||
|
"object_marking_refs": [
|
||
|
"marking-definition--613f2e26-407d-48c7-9eca-b8e91df99dc9"
|
||
|
]
|
||
|
},
|
||
|
{
|
||
|
"type": "observed-data",
|
||
|
"spec_version": "2.1",
|
||
|
"id": "observed-data--5b281204-013c-48ec-a60e-2cda0acd0835",
|
||
|
"created_by_ref": "identity--5a68c02d-959c-4c8a-a571-0dcac0a8060a",
|
||
|
"created": "2018-06-18T20:11:48.000Z",
|
||
|
"modified": "2018-06-18T20:11:48.000Z",
|
||
|
"first_observed": "2018-06-18T20:11:48Z",
|
||
|
"last_observed": "2018-06-18T20:11:48Z",
|
||
|
"number_observed": 1,
|
||
|
"object_refs": [
|
||
|
"domain-name--5b281204-013c-48ec-a60e-2cda0acd0835"
|
||
|
],
|
||
|
"labels": [
|
||
|
"misp:type=\"domain\"",
|
||
|
"misp:category=\"Payload delivery\""
|
||
|
]
|
||
|
},
|
||
|
{
|
||
|
"type": "domain-name",
|
||
|
"spec_version": "2.1",
|
||
|
"id": "domain-name--5b281204-013c-48ec-a60e-2cda0acd0835",
|
||
|
"value": "homeappleinc.com"
|
||
|
},
|
||
|
{
|
||
|
"type": "observed-data",
|
||
|
"spec_version": "2.1",
|
||
|
"id": "observed-data--5b281217-f58c-40c0-8e42-16ec0acd0835",
|
||
|
"created_by_ref": "identity--5a68c02d-959c-4c8a-a571-0dcac0a8060a",
|
||
|
"created": "2018-06-18T20:12:07.000Z",
|
||
|
"modified": "2018-06-18T20:12:07.000Z",
|
||
|
"first_observed": "2018-06-18T20:12:07Z",
|
||
|
"last_observed": "2018-06-18T20:12:07Z",
|
||
|
"number_observed": 1,
|
||
|
"object_refs": [
|
||
|
"domain-name--5b281217-f58c-40c0-8e42-16ec0acd0835"
|
||
|
],
|
||
|
"labels": [
|
||
|
"misp:type=\"domain\"",
|
||
|
"misp:category=\"Payload delivery\""
|
||
|
]
|
||
|
},
|
||
|
{
|
||
|
"type": "domain-name",
|
||
|
"spec_version": "2.1",
|
||
|
"id": "domain-name--5b281217-f58c-40c0-8e42-16ec0acd0835",
|
||
|
"value": "servicesystem-deviceappleid.com"
|
||
|
},
|
||
|
{
|
||
|
"type": "observed-data",
|
||
|
"spec_version": "2.1",
|
||
|
"id": "observed-data--5b281217-0a80-4b77-9713-16ec0acd0835",
|
||
|
"created_by_ref": "identity--5a68c02d-959c-4c8a-a571-0dcac0a8060a",
|
||
|
"created": "2018-06-18T20:12:07.000Z",
|
||
|
"modified": "2018-06-18T20:12:07.000Z",
|
||
|
"first_observed": "2018-06-18T20:12:07Z",
|
||
|
"last_observed": "2018-06-18T20:12:07Z",
|
||
|
"number_observed": 1,
|
||
|
"object_refs": [
|
||
|
"domain-name--5b281217-0a80-4b77-9713-16ec0acd0835"
|
||
|
],
|
||
|
"labels": [
|
||
|
"misp:type=\"domain\"",
|
||
|
"misp:category=\"Payload delivery\""
|
||
|
]
|
||
|
},
|
||
|
{
|
||
|
"type": "domain-name",
|
||
|
"spec_version": "2.1",
|
||
|
"id": "domain-name--5b281217-0a80-4b77-9713-16ec0acd0835",
|
||
|
"value": "freemobilee-fr.com"
|
||
|
},
|
||
|
{
|
||
|
"type": "observed-data",
|
||
|
"spec_version": "2.1",
|
||
|
"id": "observed-data--5b281217-0fd4-4fc4-8d6c-16ec0acd0835",
|
||
|
"created_by_ref": "identity--5a68c02d-959c-4c8a-a571-0dcac0a8060a",
|
||
|
"created": "2018-06-18T20:12:07.000Z",
|
||
|
"modified": "2018-06-18T20:12:07.000Z",
|
||
|
"first_observed": "2018-06-18T20:12:07Z",
|
||
|
"last_observed": "2018-06-18T20:12:07Z",
|
||
|
"number_observed": 1,
|
||
|
"object_refs": [
|
||
|
"domain-name--5b281217-0fd4-4fc4-8d6c-16ec0acd0835"
|
||
|
],
|
||
|
"labels": [
|
||
|
"misp:type=\"domain\"",
|
||
|
"misp:category=\"Payload delivery\""
|
||
|
]
|
||
|
},
|
||
|
{
|
||
|
"type": "domain-name",
|
||
|
"spec_version": "2.1",
|
||
|
"id": "domain-name--5b281217-0fd4-4fc4-8d6c-16ec0acd0835",
|
||
|
"value": "freemobil-fr.com"
|
||
|
},
|
||
|
{
|
||
|
"type": "observed-data",
|
||
|
"spec_version": "2.1",
|
||
|
"id": "observed-data--5b281217-1398-4b25-bc8c-16ec0acd0835",
|
||
|
"created_by_ref": "identity--5a68c02d-959c-4c8a-a571-0dcac0a8060a",
|
||
|
"created": "2018-06-18T20:12:07.000Z",
|
||
|
"modified": "2018-06-18T20:12:07.000Z",
|
||
|
"first_observed": "2018-06-18T20:12:07Z",
|
||
|
"last_observed": "2018-06-18T20:12:07Z",
|
||
|
"number_observed": 1,
|
||
|
"object_refs": [
|
||
|
"domain-name--5b281217-1398-4b25-bc8c-16ec0acd0835"
|
||
|
],
|
||
|
"labels": [
|
||
|
"misp:type=\"domain\"",
|
||
|
"misp:category=\"Payload delivery\""
|
||
|
]
|
||
|
},
|
||
|
{
|
||
|
"type": "domain-name",
|
||
|
"spec_version": "2.1",
|
||
|
"id": "domain-name--5b281217-1398-4b25-bc8c-16ec0acd0835",
|
||
|
"value": "fr-freemobil.com"
|
||
|
},
|
||
|
{
|
||
|
"type": "observed-data",
|
||
|
"spec_version": "2.1",
|
||
|
"id": "observed-data--5b281217-0e60-4261-aacd-16ec0acd0835",
|
||
|
"created_by_ref": "identity--5a68c02d-959c-4c8a-a571-0dcac0a8060a",
|
||
|
"created": "2018-06-18T20:12:07.000Z",
|
||
|
"modified": "2018-06-18T20:12:07.000Z",
|
||
|
"first_observed": "2018-06-18T20:12:07Z",
|
||
|
"last_observed": "2018-06-18T20:12:07Z",
|
||
|
"number_observed": 1,
|
||
|
"object_refs": [
|
||
|
"domain-name--5b281217-0e60-4261-aacd-16ec0acd0835"
|
||
|
],
|
||
|
"labels": [
|
||
|
"misp:type=\"domain\"",
|
||
|
"misp:category=\"Payload delivery\""
|
||
|
]
|
||
|
},
|
||
|
{
|
||
|
"type": "domain-name",
|
||
|
"spec_version": "2.1",
|
||
|
"id": "domain-name--5b281217-0e60-4261-aacd-16ec0acd0835",
|
||
|
"value": "secur-appl.com"
|
||
|
},
|
||
|
{
|
||
|
"type": "observed-data",
|
||
|
"spec_version": "2.1",
|
||
|
"id": "observed-data--5b281217-06d0-41a9-9eb6-16ec0acd0835",
|
||
|
"created_by_ref": "identity--5a68c02d-959c-4c8a-a571-0dcac0a8060a",
|
||
|
"created": "2018-06-18T20:12:07.000Z",
|
||
|
"modified": "2018-06-18T20:12:07.000Z",
|
||
|
"first_observed": "2018-06-18T20:12:07Z",
|
||
|
"last_observed": "2018-06-18T20:12:07Z",
|
||
|
"number_observed": 1,
|
||
|
"object_refs": [
|
||
|
"domain-name--5b281217-06d0-41a9-9eb6-16ec0acd0835"
|
||
|
],
|
||
|
"labels": [
|
||
|
"misp:type=\"domain\"",
|
||
|
"misp:category=\"Payload delivery\""
|
||
|
]
|
||
|
},
|
||
|
{
|
||
|
"type": "domain-name",
|
||
|
"spec_version": "2.1",
|
||
|
"id": "domain-name--5b281217-06d0-41a9-9eb6-16ec0acd0835",
|
||
|
"value": "customregardingasap.com"
|
||
|
},
|
||
|
{
|
||
|
"type": "observed-data",
|
||
|
"spec_version": "2.1",
|
||
|
"id": "observed-data--5b281217-0cec-466e-82bf-16ec0acd0835",
|
||
|
"created_by_ref": "identity--5a68c02d-959c-4c8a-a571-0dcac0a8060a",
|
||
|
"created": "2018-06-18T20:12:07.000Z",
|
||
|
"modified": "2018-06-18T20:12:07.000Z",
|
||
|
"first_observed": "2018-06-18T20:12:07Z",
|
||
|
"last_observed": "2018-06-18T20:12:07Z",
|
||
|
"number_observed": 1,
|
||
|
"object_refs": [
|
||
|
"domain-name--5b281217-0cec-466e-82bf-16ec0acd0835"
|
||
|
],
|
||
|
"labels": [
|
||
|
"misp:type=\"domain\"",
|
||
|
"misp:category=\"Payload delivery\""
|
||
|
]
|
||
|
},
|
||
|
{
|
||
|
"type": "domain-name",
|
||
|
"spec_version": "2.1",
|
||
|
"id": "domain-name--5b281217-0cec-466e-82bf-16ec0acd0835",
|
||
|
"value": "cipinspectinfoadmin.com"
|
||
|
},
|
||
|
{
|
||
|
"type": "observed-data",
|
||
|
"spec_version": "2.1",
|
||
|
"id": "observed-data--5b281217-94b8-4b4d-8d01-16ec0acd0835",
|
||
|
"created_by_ref": "identity--5a68c02d-959c-4c8a-a571-0dcac0a8060a",
|
||
|
"created": "2018-06-18T20:12:07.000Z",
|
||
|
"modified": "2018-06-18T20:12:07.000Z",
|
||
|
"first_observed": "2018-06-18T20:12:07Z",
|
||
|
"last_observed": "2018-06-18T20:12:07Z",
|
||
|
"number_observed": 1,
|
||
|
"object_refs": [
|
||
|
"domain-name--5b281217-94b8-4b4d-8d01-16ec0acd0835"
|
||
|
],
|
||
|
"labels": [
|
||
|
"misp:type=\"domain\"",
|
||
|
"misp:category=\"Payload delivery\""
|
||
|
]
|
||
|
},
|
||
|
{
|
||
|
"type": "domain-name",
|
||
|
"spec_version": "2.1",
|
||
|
"id": "domain-name--5b281217-94b8-4b4d-8d01-16ec0acd0835",
|
||
|
"value": "1infomsgmanagealert.com"
|
||
|
},
|
||
|
{
|
||
|
"type": "observed-data",
|
||
|
"spec_version": "2.1",
|
||
|
"id": "observed-data--5b281217-91d8-4835-835b-16ec0acd0835",
|
||
|
"created_by_ref": "identity--5a68c02d-959c-4c8a-a571-0dcac0a8060a",
|
||
|
"created": "2018-06-18T20:12:07.000Z",
|
||
|
"modified": "2018-06-18T20:12:07.000Z",
|
||
|
"first_observed": "2018-06-18T20:12:07Z",
|
||
|
"last_observed": "2018-06-18T20:12:07Z",
|
||
|
"number_observed": 1,
|
||
|
"object_refs": [
|
||
|
"domain-name--5b281217-91d8-4835-835b-16ec0acd0835"
|
||
|
],
|
||
|
"labels": [
|
||
|
"misp:type=\"domain\"",
|
||
|
"misp:category=\"Payload delivery\""
|
||
|
]
|
||
|
},
|
||
|
{
|
||
|
"type": "domain-name",
|
||
|
"spec_version": "2.1",
|
||
|
"id": "domain-name--5b281217-91d8-4835-835b-16ec0acd0835",
|
||
|
"value": "securemsgadmincip.com"
|
||
|
},
|
||
|
{
|
||
|
"type": "observed-data",
|
||
|
"spec_version": "2.1",
|
||
|
"id": "observed-data--5b281217-8854-4e92-8602-16ec0acd0835",
|
||
|
"created_by_ref": "identity--5a68c02d-959c-4c8a-a571-0dcac0a8060a",
|
||
|
"created": "2018-06-18T20:12:07.000Z",
|
||
|
"modified": "2018-06-18T20:12:07.000Z",
|
||
|
"first_observed": "2018-06-18T20:12:07Z",
|
||
|
"last_observed": "2018-06-18T20:12:07Z",
|
||
|
"number_observed": 1,
|
||
|
"object_refs": [
|
||
|
"domain-name--5b281217-8854-4e92-8602-16ec0acd0835"
|
||
|
],
|
||
|
"labels": [
|
||
|
"misp:type=\"domain\"",
|
||
|
"misp:category=\"Payload delivery\""
|
||
|
]
|
||
|
},
|
||
|
{
|
||
|
"type": "domain-name",
|
||
|
"spec_version": "2.1",
|
||
|
"id": "domain-name--5b281217-8854-4e92-8602-16ec0acd0835",
|
||
|
"value": "craigslist.systems"
|
||
|
},
|
||
|
{
|
||
|
"type": "observed-data",
|
||
|
"spec_version": "2.1",
|
||
|
"id": "observed-data--5b281217-863c-441c-aea7-16ec0acd0835",
|
||
|
"created_by_ref": "identity--5a68c02d-959c-4c8a-a571-0dcac0a8060a",
|
||
|
"created": "2018-06-18T20:12:07.000Z",
|
||
|
"modified": "2018-06-18T20:12:07.000Z",
|
||
|
"first_observed": "2018-06-18T20:12:07Z",
|
||
|
"last_observed": "2018-06-18T20:12:07Z",
|
||
|
"number_observed": 1,
|
||
|
"object_refs": [
|
||
|
"domain-name--5b281217-863c-441c-aea7-16ec0acd0835"
|
||
|
],
|
||
|
"labels": [
|
||
|
"misp:type=\"domain\"",
|
||
|
"misp:category=\"Payload delivery\""
|
||
|
]
|
||
|
},
|
||
|
{
|
||
|
"type": "domain-name",
|
||
|
"spec_version": "2.1",
|
||
|
"id": "domain-name--5b281217-863c-441c-aea7-16ec0acd0835",
|
||
|
"value": "bancorestadoempresas.com"
|
||
|
},
|
||
|
{
|
||
|
"type": "observed-data",
|
||
|
"spec_version": "2.1",
|
||
|
"id": "observed-data--5b281217-7f10-4099-a190-16ec0acd0835",
|
||
|
"created_by_ref": "identity--5a68c02d-959c-4c8a-a571-0dcac0a8060a",
|
||
|
"created": "2018-06-18T20:12:07.000Z",
|
||
|
"modified": "2018-06-18T20:12:07.000Z",
|
||
|
"first_observed": "2018-06-18T20:12:07Z",
|
||
|
"last_observed": "2018-06-18T20:12:07Z",
|
||
|
"number_observed": 1,
|
||
|
"object_refs": [
|
||
|
"domain-name--5b281217-7f10-4099-a190-16ec0acd0835"
|
||
|
],
|
||
|
"labels": [
|
||
|
"misp:type=\"domain\"",
|
||
|
"misp:category=\"Payload delivery\""
|
||
|
]
|
||
|
},
|
||
|
{
|
||
|
"type": "domain-name",
|
||
|
"spec_version": "2.1",
|
||
|
"id": "domain-name--5b281217-7f10-4099-a190-16ec0acd0835",
|
||
|
"value": "bancorestadorempresas.com"
|
||
|
},
|
||
|
{
|
||
|
"type": "observed-data",
|
||
|
"spec_version": "2.1",
|
||
|
"id": "observed-data--5b281217-89dc-4306-92b8-16ec0acd0835",
|
||
|
"created_by_ref": "identity--5a68c02d-959c-4c8a-a571-0dcac0a8060a",
|
||
|
"created": "2018-06-18T20:12:07.000Z",
|
||
|
"modified": "2018-06-18T20:12:07.000Z",
|
||
|
"first_observed": "2018-06-18T20:12:07Z",
|
||
|
"last_observed": "2018-06-18T20:12:07Z",
|
||
|
"number_observed": 1,
|
||
|
"object_refs": [
|
||
|
"domain-name--5b281217-89dc-4306-92b8-16ec0acd0835"
|
||
|
],
|
||
|
"labels": [
|
||
|
"misp:type=\"domain\"",
|
||
|
"misp:category=\"Payload delivery\""
|
||
|
]
|
||
|
},
|
||
|
{
|
||
|
"type": "domain-name",
|
||
|
"spec_version": "2.1",
|
||
|
"id": "domain-name--5b281217-89dc-4306-92b8-16ec0acd0835",
|
||
|
"value": "comm2mobileauth.com"
|
||
|
},
|
||
|
{
|
||
|
"type": "observed-data",
|
||
|
"spec_version": "2.1",
|
||
|
"id": "observed-data--5b281217-937c-485c-9fa3-16ec0acd0835",
|
||
|
"created_by_ref": "identity--5a68c02d-959c-4c8a-a571-0dcac0a8060a",
|
||
|
"created": "2018-06-18T20:12:07.000Z",
|
||
|
"modified": "2018-06-18T20:12:07.000Z",
|
||
|
"first_observed": "2018-06-18T20:12:07Z",
|
||
|
"last_observed": "2018-06-18T20:12:07Z",
|
||
|
"number_observed": 1,
|
||
|
"object_refs": [
|
||
|
"domain-name--5b281217-937c-485c-9fa3-16ec0acd0835"
|
||
|
],
|
||
|
"labels": [
|
||
|
"misp:type=\"domain\"",
|
||
|
"misp:category=\"Payload delivery\""
|
||
|
]
|
||
|
},
|
||
|
{
|
||
|
"type": "domain-name",
|
||
|
"spec_version": "2.1",
|
||
|
"id": "domain-name--5b281217-937c-485c-9fa3-16ec0acd0835",
|
||
|
"value": "successfull-paypal.com"
|
||
|
},
|
||
|
{
|
||
|
"type": "marking-definition",
|
||
|
"spec_version": "2.1",
|
||
|
"id": "marking-definition--613f2e26-407d-48c7-9eca-b8e91df99dc9",
|
||
|
"created": "2017-01-20T00:00:00.000Z",
|
||
|
"definition_type": "tlp",
|
||
|
"name": "TLP:WHITE",
|
||
|
"definition": {
|
||
|
"tlp": "white"
|
||
|
}
|
||
|
}
|
||
|
]
|
||
|
}
|