{ "type": "bundle", "id": "bundle--5a3bc0f1-77d4-4152-be44-4d15950d210f", "objects": [ { "type": "identity", "spec_version": "2.1", "id": "identity--55f6ea5e-2c60-40e5-964f-47a8950d210f", "created": "2017-12-22T08:30:34.000Z", "modified": "2017-12-22T08:30:34.000Z", "name": "CIRCL", "identity_class": "organization" }, { "type": "grouping", "spec_version": "2.1", "id": "grouping--5a3bc0f1-77d4-4152-be44-4d15950d210f", "created_by_ref": "identity--55f6ea5e-2c60-40e5-964f-47a8950d210f", "created": "2017-12-22T08:30:34.000Z", "modified": "2017-12-22T08:30:34.000Z", "name": "OSINT - Kromtech Discovers Massive Elasticsearch Infected Malware Botnet", "context": "suspicious-activity", "object_refs": [ "observed-data--5a3bc10e-842c-4f90-81a0-46d9950d210f", "url--5a3bc10e-842c-4f90-81a0-46d9950d210f" ], "labels": [ "Threat-Report", "misp:tool=\"MISP-STIX-Converter\"", "workflow:state=\"incomplete\"", "workflow:todo=\"create-missing-misp-galaxy-cluster-values\"", "workflow:todo=\"create-missing-misp-galaxy-cluster\"" ], "object_marking_refs": [ "marking-definition--613f2e26-407d-48c7-9eca-b8e91df99dc9" ] }, { "type": "observed-data", "spec_version": "2.1", "id": "observed-data--5a3bc10e-842c-4f90-81a0-46d9950d210f", "created_by_ref": "identity--55f6ea5e-2c60-40e5-964f-47a8950d210f", "created": "2017-12-21T14:11:26.000Z", "modified": "2017-12-21T14:11:26.000Z", "first_observed": "2017-12-21T14:11:26Z", "last_observed": "2017-12-21T14:11:26Z", "number_observed": 1, "object_refs": [ "url--5a3bc10e-842c-4f90-81a0-46d9950d210f" ], "labels": [ "misp:type=\"link\"", "misp:category=\"External analysis\"" ] }, { "type": "url", "spec_version": "2.1", "id": "url--5a3bc10e-842c-4f90-81a0-46d9950d210f", "value": "https://mackeepersecurity.com/post/kromtech-discovers-massive-elasticsearch-infected-malware-botnet" }, { "type": "marking-definition", "spec_version": "2.1", "id": "marking-definition--613f2e26-407d-48c7-9eca-b8e91df99dc9", "created": "2017-01-20T00:00:00.000Z", "definition_type": "tlp", "name": "TLP:WHITE", "definition": { "tlp": "white" } } ] }