misp-circl-feed/feeds/circl/stix-2.1/57d24ef7-1258-4e36-a571-43c9950d210f.json

1721 lines
No EOL
70 KiB
JSON

{
"type": "bundle",
"id": "bundle--57d24ef7-1258-4e36-a571-43c9950d210f",
"objects": [
{
"type": "identity",
"spec_version": "2.1",
"id": "identity--55f6ea5e-2c60-40e5-964f-47a8950d210f",
"created": "2016-09-09T05:58:03.000Z",
"modified": "2016-09-09T05:58:03.000Z",
"name": "CIRCL",
"identity_class": "organization"
},
{
"type": "report",
"spec_version": "2.1",
"id": "report--57d24ef7-1258-4e36-a571-43c9950d210f",
"created_by_ref": "identity--55f6ea5e-2c60-40e5-964f-47a8950d210f",
"created": "2016-09-09T05:58:03.000Z",
"modified": "2016-09-09T05:58:03.000Z",
"name": "Malspam 2016-09-08 (.wsf in .zip) - campaign: icloud.com",
"published": "2016-09-09T06:02:25Z",
"object_refs": [
"indicator--57d24f5b-3e2c-48a5-8c81-e6b6950d210f",
"indicator--57d24f5b-afb4-4db3-b145-e6b6950d210f",
"indicator--57d24f5b-823c-45f2-a6a0-e6b6950d210f",
"indicator--57d24f5c-3930-4568-acac-e6b6950d210f",
"indicator--57d24f5c-5dc8-42cd-a6d0-e6b6950d210f",
"indicator--57d24f5c-b91c-456e-81ea-e6b6950d210f",
"indicator--57d24f5c-7da0-4500-bad7-e6b6950d210f",
"indicator--57d24f5d-7b48-4703-b1d4-e6b6950d210f",
"indicator--57d24f5d-dddc-4e96-b999-e6b6950d210f",
"indicator--57d24f5d-0ab4-4e17-9d2a-e6b6950d210f",
"indicator--57d24f5d-3168-4d21-aaf4-e6b6950d210f",
"indicator--57d24f5e-f168-480e-8f60-e6b6950d210f",
"indicator--57d24f5e-afd8-40d7-b8df-e6b6950d210f",
"indicator--57d24f5e-ba94-4acc-8cfd-e6b6950d210f",
"indicator--57d24f5e-6a88-4f0d-b088-e6b6950d210f",
"indicator--57d24f5f-edf4-4029-9887-e6b6950d210f",
"indicator--57d24f5f-5d00-4c4b-a257-e6b6950d210f",
"indicator--57d24f5f-246c-4447-b77a-e6b6950d210f",
"indicator--57d24f5f-f808-45bd-8afc-e6b6950d210f",
"indicator--57d24f60-40d4-4c4d-9237-e6b6950d210f",
"indicator--57d24f60-57e8-437e-ac18-e6b6950d210f",
"indicator--57d24f60-caac-4600-b61f-e6b6950d210f",
"indicator--57d24f60-ea7c-43d4-a67c-e6b6950d210f",
"indicator--57d24f61-da6c-4e10-89a3-e6b6950d210f",
"indicator--57d24f61-7ac0-41c2-b0b5-e6b6950d210f",
"indicator--57d24f61-a494-40da-ac38-e6b6950d210f",
"indicator--57d24f61-f7fc-4b54-9e07-e6b6950d210f",
"indicator--57d24f61-7298-4ea4-aa7c-e6b6950d210f",
"indicator--57d24f62-f92c-4878-a28f-e6b6950d210f",
"indicator--57d24f62-4f80-4133-aa87-e6b6950d210f",
"indicator--57d24f62-f2e4-414e-9bca-e6b6950d210f",
"indicator--57d24f62-7320-443c-9fce-e6b6950d210f",
"indicator--57d24f63-1474-4090-b659-e6b6950d210f",
"indicator--57d24f63-514c-4f65-a6b9-e6b6950d210f",
"indicator--57d24f63-6148-4457-ad48-e6b6950d210f",
"indicator--57d24f63-ef70-4168-aea0-e6b6950d210f",
"indicator--57d24f64-ed58-459d-afea-e6b6950d210f",
"indicator--57d24f64-8fbc-4568-947c-e6b6950d210f",
"indicator--57d24f64-e1c4-4cca-b73d-e6b6950d210f",
"indicator--57d24f64-4878-44c0-a556-e6b6950d210f",
"indicator--57d24f65-efa0-45ec-9df7-e6b6950d210f",
"indicator--57d24f65-e22c-436e-ab14-e6b6950d210f",
"indicator--57d24f65-2a04-4624-964e-e6b6950d210f",
"indicator--57d24f65-9c38-46a9-845d-e6b6950d210f",
"indicator--57d24f66-01c0-4567-9bb5-e6b6950d210f",
"indicator--57d24f66-dff8-4608-9d35-e6b6950d210f",
"indicator--57d24f66-1848-460e-8b9f-e6b6950d210f",
"indicator--57d24f66-0268-4fe3-add0-e6b6950d210f",
"indicator--57d24f67-2390-4219-9ee8-e6b6950d210f",
"indicator--57d24f67-f87c-46a7-b56f-e6b6950d210f",
"indicator--57d24f67-92d8-4e62-affe-e6b6950d210f",
"indicator--57d24f67-a668-48af-9853-e6b6950d210f",
"indicator--57d24f68-6838-4cc7-bf7e-e6b6950d210f",
"indicator--57d24f68-fbe8-4b13-a031-e6b6950d210f",
"indicator--57d24f68-10c0-4372-b096-e6b6950d210f",
"indicator--57d24f68-a928-4175-88b1-e6b6950d210f",
"indicator--57d24f69-fc88-4dbf-bf90-e6b6950d210f",
"indicator--57d24f69-1b6c-4f46-b64e-e6b6950d210f",
"indicator--57d24f69-adf0-4929-bf8d-e6b6950d210f",
"indicator--57d24f69-90e4-466b-87bd-e6b6950d210f",
"indicator--57d24f6a-42cc-45d0-8d39-e6b6950d210f",
"indicator--57d24f6a-0e3c-4284-b8c4-e6b6950d210f",
"indicator--57d24f6a-2348-459f-b049-e6b6950d210f",
"indicator--57d24f6a-33dc-4282-9607-e6b6950d210f",
"indicator--57d24f6b-7ae0-447d-86c7-e6b6950d210f",
"indicator--57d24f6b-3ca0-427c-84b9-e6b6950d210f",
"indicator--57d24f6b-92b4-455f-81ec-e6b6950d210f"
],
"labels": [
"Threat-Report",
"misp:tool=\"MISP-STIX-Converter\"",
"circl:incident-classification=\"malware\""
],
"object_marking_refs": [
"marking-definition--613f2e26-407d-48c7-9eca-b8e91df99dc9"
]
},
{
"type": "indicator",
"spec_version": "2.1",
"id": "indicator--57d24f5b-3e2c-48a5-8c81-e6b6950d210f",
"created_by_ref": "identity--55f6ea5e-2c60-40e5-964f-47a8950d210f",
"created": "2016-09-09T05:57:47.000Z",
"modified": "2016-09-09T05:57:47.000Z",
"description": "download location",
"pattern": "[network-traffic:dst_ref.type = 'ipv4-addr' AND network-traffic:dst_ref.value = '112.140.42.29']",
"pattern_type": "stix",
"pattern_version": "2.1",
"valid_from": "2016-09-09T05:57:47Z",
"kill_chain_phases": [
{
"kill_chain_name": "misp-category",
"phase_name": "Network activity"
}
],
"labels": [
"misp:type=\"ip-dst\"",
"misp:category=\"Network activity\"",
"misp:to_ids=\"True\""
]
},
{
"type": "indicator",
"spec_version": "2.1",
"id": "indicator--57d24f5b-afb4-4db3-b145-e6b6950d210f",
"created_by_ref": "identity--55f6ea5e-2c60-40e5-964f-47a8950d210f",
"created": "2016-09-09T05:57:47.000Z",
"modified": "2016-09-09T05:57:47.000Z",
"description": "download location",
"pattern": "[network-traffic:dst_ref.type = 'ipv4-addr' AND network-traffic:dst_ref.value = '158.195.68.10']",
"pattern_type": "stix",
"pattern_version": "2.1",
"valid_from": "2016-09-09T05:57:47Z",
"kill_chain_phases": [
{
"kill_chain_name": "misp-category",
"phase_name": "Network activity"
}
],
"labels": [
"misp:type=\"ip-dst\"",
"misp:category=\"Network activity\"",
"misp:to_ids=\"True\""
]
},
{
"type": "indicator",
"spec_version": "2.1",
"id": "indicator--57d24f5b-823c-45f2-a6a0-e6b6950d210f",
"created_by_ref": "identity--55f6ea5e-2c60-40e5-964f-47a8950d210f",
"created": "2016-09-09T05:57:47.000Z",
"modified": "2016-09-09T05:57:47.000Z",
"description": "download location",
"pattern": "[network-traffic:dst_ref.type = 'ipv4-addr' AND network-traffic:dst_ref.value = '188.120.235.214']",
"pattern_type": "stix",
"pattern_version": "2.1",
"valid_from": "2016-09-09T05:57:47Z",
"kill_chain_phases": [
{
"kill_chain_name": "misp-category",
"phase_name": "Network activity"
}
],
"labels": [
"misp:type=\"ip-dst\"",
"misp:category=\"Network activity\"",
"misp:to_ids=\"True\""
]
},
{
"type": "indicator",
"spec_version": "2.1",
"id": "indicator--57d24f5c-3930-4568-acac-e6b6950d210f",
"created_by_ref": "identity--55f6ea5e-2c60-40e5-964f-47a8950d210f",
"created": "2016-09-09T05:57:48.000Z",
"modified": "2016-09-09T05:57:48.000Z",
"description": "download location",
"pattern": "[network-traffic:dst_ref.type = 'ipv4-addr' AND network-traffic:dst_ref.value = '200.83.4.62']",
"pattern_type": "stix",
"pattern_version": "2.1",
"valid_from": "2016-09-09T05:57:48Z",
"kill_chain_phases": [
{
"kill_chain_name": "misp-category",
"phase_name": "Network activity"
}
],
"labels": [
"misp:type=\"ip-dst\"",
"misp:category=\"Network activity\"",
"misp:to_ids=\"True\""
]
},
{
"type": "indicator",
"spec_version": "2.1",
"id": "indicator--57d24f5c-5dc8-42cd-a6d0-e6b6950d210f",
"created_by_ref": "identity--55f6ea5e-2c60-40e5-964f-47a8950d210f",
"created": "2016-09-09T05:57:48.000Z",
"modified": "2016-09-09T05:57:48.000Z",
"description": "download location",
"pattern": "[network-traffic:dst_ref.type = 'ipv4-addr' AND network-traffic:dst_ref.value = '202.224.63.6']",
"pattern_type": "stix",
"pattern_version": "2.1",
"valid_from": "2016-09-09T05:57:48Z",
"kill_chain_phases": [
{
"kill_chain_name": "misp-category",
"phase_name": "Network activity"
}
],
"labels": [
"misp:type=\"ip-dst\"",
"misp:category=\"Network activity\"",
"misp:to_ids=\"True\""
]
},
{
"type": "indicator",
"spec_version": "2.1",
"id": "indicator--57d24f5c-b91c-456e-81ea-e6b6950d210f",
"created_by_ref": "identity--55f6ea5e-2c60-40e5-964f-47a8950d210f",
"created": "2016-09-09T05:57:48.000Z",
"modified": "2016-09-09T05:57:48.000Z",
"description": "download location",
"pattern": "[network-traffic:dst_ref.type = 'ipv4-addr' AND network-traffic:dst_ref.value = '208.71.106.37']",
"pattern_type": "stix",
"pattern_version": "2.1",
"valid_from": "2016-09-09T05:57:48Z",
"kill_chain_phases": [
{
"kill_chain_name": "misp-category",
"phase_name": "Network activity"
}
],
"labels": [
"misp:type=\"ip-dst\"",
"misp:category=\"Network activity\"",
"misp:to_ids=\"True\""
]
},
{
"type": "indicator",
"spec_version": "2.1",
"id": "indicator--57d24f5c-7da0-4500-bad7-e6b6950d210f",
"created_by_ref": "identity--55f6ea5e-2c60-40e5-964f-47a8950d210f",
"created": "2016-09-09T05:57:48.000Z",
"modified": "2016-09-09T05:57:48.000Z",
"description": "download location",
"pattern": "[network-traffic:dst_ref.type = 'ipv4-addr' AND network-traffic:dst_ref.value = '208.71.106.45']",
"pattern_type": "stix",
"pattern_version": "2.1",
"valid_from": "2016-09-09T05:57:48Z",
"kill_chain_phases": [
{
"kill_chain_name": "misp-category",
"phase_name": "Network activity"
}
],
"labels": [
"misp:type=\"ip-dst\"",
"misp:category=\"Network activity\"",
"misp:to_ids=\"True\""
]
},
{
"type": "indicator",
"spec_version": "2.1",
"id": "indicator--57d24f5d-7b48-4703-b1d4-e6b6950d210f",
"created_by_ref": "identity--55f6ea5e-2c60-40e5-964f-47a8950d210f",
"created": "2016-09-09T05:57:49.000Z",
"modified": "2016-09-09T05:57:49.000Z",
"description": "download location",
"pattern": "[network-traffic:dst_ref.type = 'ipv4-addr' AND network-traffic:dst_ref.value = '208.71.106.61']",
"pattern_type": "stix",
"pattern_version": "2.1",
"valid_from": "2016-09-09T05:57:49Z",
"kill_chain_phases": [
{
"kill_chain_name": "misp-category",
"phase_name": "Network activity"
}
],
"labels": [
"misp:type=\"ip-dst\"",
"misp:category=\"Network activity\"",
"misp:to_ids=\"True\""
]
},
{
"type": "indicator",
"spec_version": "2.1",
"id": "indicator--57d24f5d-dddc-4e96-b999-e6b6950d210f",
"created_by_ref": "identity--55f6ea5e-2c60-40e5-964f-47a8950d210f",
"created": "2016-09-09T05:57:49.000Z",
"modified": "2016-09-09T05:57:49.000Z",
"description": "download location",
"pattern": "[network-traffic:dst_ref.type = 'ipv4-addr' AND network-traffic:dst_ref.value = '209.41.183.242']",
"pattern_type": "stix",
"pattern_version": "2.1",
"valid_from": "2016-09-09T05:57:49Z",
"kill_chain_phases": [
{
"kill_chain_name": "misp-category",
"phase_name": "Network activity"
}
],
"labels": [
"misp:type=\"ip-dst\"",
"misp:category=\"Network activity\"",
"misp:to_ids=\"True\""
]
},
{
"type": "indicator",
"spec_version": "2.1",
"id": "indicator--57d24f5d-0ab4-4e17-9d2a-e6b6950d210f",
"created_by_ref": "identity--55f6ea5e-2c60-40e5-964f-47a8950d210f",
"created": "2016-09-09T05:57:49.000Z",
"modified": "2016-09-09T05:57:49.000Z",
"description": "download location",
"pattern": "[network-traffic:dst_ref.type = 'ipv4-addr' AND network-traffic:dst_ref.value = '211.134.181.38']",
"pattern_type": "stix",
"pattern_version": "2.1",
"valid_from": "2016-09-09T05:57:49Z",
"kill_chain_phases": [
{
"kill_chain_name": "misp-category",
"phase_name": "Network activity"
}
],
"labels": [
"misp:type=\"ip-dst\"",
"misp:category=\"Network activity\"",
"misp:to_ids=\"True\""
]
},
{
"type": "indicator",
"spec_version": "2.1",
"id": "indicator--57d24f5d-3168-4d21-aaf4-e6b6950d210f",
"created_by_ref": "identity--55f6ea5e-2c60-40e5-964f-47a8950d210f",
"created": "2016-09-09T05:57:49.000Z",
"modified": "2016-09-09T05:57:49.000Z",
"description": "download location",
"pattern": "[network-traffic:dst_ref.type = 'ipv4-addr' AND network-traffic:dst_ref.value = '211.78.38.199']",
"pattern_type": "stix",
"pattern_version": "2.1",
"valid_from": "2016-09-09T05:57:49Z",
"kill_chain_phases": [
{
"kill_chain_name": "misp-category",
"phase_name": "Network activity"
}
],
"labels": [
"misp:type=\"ip-dst\"",
"misp:category=\"Network activity\"",
"misp:to_ids=\"True\""
]
},
{
"type": "indicator",
"spec_version": "2.1",
"id": "indicator--57d24f5e-f168-480e-8f60-e6b6950d210f",
"created_by_ref": "identity--55f6ea5e-2c60-40e5-964f-47a8950d210f",
"created": "2016-09-09T05:57:50.000Z",
"modified": "2016-09-09T05:57:50.000Z",
"description": "download location",
"pattern": "[network-traffic:dst_ref.type = 'ipv4-addr' AND network-traffic:dst_ref.value = '213.185.87.30']",
"pattern_type": "stix",
"pattern_version": "2.1",
"valid_from": "2016-09-09T05:57:50Z",
"kill_chain_phases": [
{
"kill_chain_name": "misp-category",
"phase_name": "Network activity"
}
],
"labels": [
"misp:type=\"ip-dst\"",
"misp:category=\"Network activity\"",
"misp:to_ids=\"True\""
]
},
{
"type": "indicator",
"spec_version": "2.1",
"id": "indicator--57d24f5e-afd8-40d7-b8df-e6b6950d210f",
"created_by_ref": "identity--55f6ea5e-2c60-40e5-964f-47a8950d210f",
"created": "2016-09-09T05:57:50.000Z",
"modified": "2016-09-09T05:57:50.000Z",
"description": "download location",
"pattern": "[network-traffic:dst_ref.type = 'ipv4-addr' AND network-traffic:dst_ref.value = '213.205.40.169']",
"pattern_type": "stix",
"pattern_version": "2.1",
"valid_from": "2016-09-09T05:57:50Z",
"kill_chain_phases": [
{
"kill_chain_name": "misp-category",
"phase_name": "Network activity"
}
],
"labels": [
"misp:type=\"ip-dst\"",
"misp:category=\"Network activity\"",
"misp:to_ids=\"True\""
]
},
{
"type": "indicator",
"spec_version": "2.1",
"id": "indicator--57d24f5e-ba94-4acc-8cfd-e6b6950d210f",
"created_by_ref": "identity--55f6ea5e-2c60-40e5-964f-47a8950d210f",
"created": "2016-09-09T05:57:50.000Z",
"modified": "2016-09-09T05:57:50.000Z",
"description": "download location",
"pattern": "[network-traffic:dst_ref.type = 'ipv4-addr' AND network-traffic:dst_ref.value = '213.208.133.41']",
"pattern_type": "stix",
"pattern_version": "2.1",
"valid_from": "2016-09-09T05:57:50Z",
"kill_chain_phases": [
{
"kill_chain_name": "misp-category",
"phase_name": "Network activity"
}
],
"labels": [
"misp:type=\"ip-dst\"",
"misp:category=\"Network activity\"",
"misp:to_ids=\"True\""
]
},
{
"type": "indicator",
"spec_version": "2.1",
"id": "indicator--57d24f5e-6a88-4f0d-b088-e6b6950d210f",
"created_by_ref": "identity--55f6ea5e-2c60-40e5-964f-47a8950d210f",
"created": "2016-09-09T05:57:50.000Z",
"modified": "2016-09-09T05:57:50.000Z",
"description": "download location",
"pattern": "[network-traffic:dst_ref.type = 'ipv4-addr' AND network-traffic:dst_ref.value = '216.110.144.242']",
"pattern_type": "stix",
"pattern_version": "2.1",
"valid_from": "2016-09-09T05:57:50Z",
"kill_chain_phases": [
{
"kill_chain_name": "misp-category",
"phase_name": "Network activity"
}
],
"labels": [
"misp:type=\"ip-dst\"",
"misp:category=\"Network activity\"",
"misp:to_ids=\"True\""
]
},
{
"type": "indicator",
"spec_version": "2.1",
"id": "indicator--57d24f5f-edf4-4029-9887-e6b6950d210f",
"created_by_ref": "identity--55f6ea5e-2c60-40e5-964f-47a8950d210f",
"created": "2016-09-09T05:57:51.000Z",
"modified": "2016-09-09T05:57:51.000Z",
"description": "download location",
"pattern": "[network-traffic:dst_ref.type = 'ipv4-addr' AND network-traffic:dst_ref.value = '62.24.202.31']",
"pattern_type": "stix",
"pattern_version": "2.1",
"valid_from": "2016-09-09T05:57:51Z",
"kill_chain_phases": [
{
"kill_chain_name": "misp-category",
"phase_name": "Network activity"
}
],
"labels": [
"misp:type=\"ip-dst\"",
"misp:category=\"Network activity\"",
"misp:to_ids=\"True\""
]
},
{
"type": "indicator",
"spec_version": "2.1",
"id": "indicator--57d24f5f-5d00-4c4b-a257-e6b6950d210f",
"created_by_ref": "identity--55f6ea5e-2c60-40e5-964f-47a8950d210f",
"created": "2016-09-09T05:57:51.000Z",
"modified": "2016-09-09T05:57:51.000Z",
"description": "download location",
"pattern": "[network-traffic:dst_ref.type = 'ipv4-addr' AND network-traffic:dst_ref.value = '62.250.4.180']",
"pattern_type": "stix",
"pattern_version": "2.1",
"valid_from": "2016-09-09T05:57:51Z",
"kill_chain_phases": [
{
"kill_chain_name": "misp-category",
"phase_name": "Network activity"
}
],
"labels": [
"misp:type=\"ip-dst\"",
"misp:category=\"Network activity\"",
"misp:to_ids=\"True\""
]
},
{
"type": "indicator",
"spec_version": "2.1",
"id": "indicator--57d24f5f-246c-4447-b77a-e6b6950d210f",
"created_by_ref": "identity--55f6ea5e-2c60-40e5-964f-47a8950d210f",
"created": "2016-09-09T05:57:51.000Z",
"modified": "2016-09-09T05:57:51.000Z",
"description": "download location",
"pattern": "[network-traffic:dst_ref.type = 'ipv4-addr' AND network-traffic:dst_ref.value = '62.42.230.17']",
"pattern_type": "stix",
"pattern_version": "2.1",
"valid_from": "2016-09-09T05:57:51Z",
"kill_chain_phases": [
{
"kill_chain_name": "misp-category",
"phase_name": "Network activity"
}
],
"labels": [
"misp:type=\"ip-dst\"",
"misp:category=\"Network activity\"",
"misp:to_ids=\"True\""
]
},
{
"type": "indicator",
"spec_version": "2.1",
"id": "indicator--57d24f5f-f808-45bd-8afc-e6b6950d210f",
"created_by_ref": "identity--55f6ea5e-2c60-40e5-964f-47a8950d210f",
"created": "2016-09-09T05:57:51.000Z",
"modified": "2016-09-09T05:57:51.000Z",
"description": "download location",
"pattern": "[network-traffic:dst_ref.type = 'ipv4-addr' AND network-traffic:dst_ref.value = '80.150.6.138']",
"pattern_type": "stix",
"pattern_version": "2.1",
"valid_from": "2016-09-09T05:57:51Z",
"kill_chain_phases": [
{
"kill_chain_name": "misp-category",
"phase_name": "Network activity"
}
],
"labels": [
"misp:type=\"ip-dst\"",
"misp:category=\"Network activity\"",
"misp:to_ids=\"True\""
]
},
{
"type": "indicator",
"spec_version": "2.1",
"id": "indicator--57d24f60-40d4-4c4d-9237-e6b6950d210f",
"created_by_ref": "identity--55f6ea5e-2c60-40e5-964f-47a8950d210f",
"created": "2016-09-09T05:57:52.000Z",
"modified": "2016-09-09T05:57:52.000Z",
"description": "download location",
"pattern": "[network-traffic:dst_ref.type = 'ipv4-addr' AND network-traffic:dst_ref.value = '81.196.20.133']",
"pattern_type": "stix",
"pattern_version": "2.1",
"valid_from": "2016-09-09T05:57:52Z",
"kill_chain_phases": [
{
"kill_chain_name": "misp-category",
"phase_name": "Network activity"
}
],
"labels": [
"misp:type=\"ip-dst\"",
"misp:category=\"Network activity\"",
"misp:to_ids=\"True\""
]
},
{
"type": "indicator",
"spec_version": "2.1",
"id": "indicator--57d24f60-57e8-437e-ac18-e6b6950d210f",
"created_by_ref": "identity--55f6ea5e-2c60-40e5-964f-47a8950d210f",
"created": "2016-09-09T05:57:52.000Z",
"modified": "2016-09-09T05:57:52.000Z",
"description": "download location",
"pattern": "[network-traffic:dst_ref.type = 'ipv4-addr' AND network-traffic:dst_ref.value = '85.18.11.68']",
"pattern_type": "stix",
"pattern_version": "2.1",
"valid_from": "2016-09-09T05:57:52Z",
"kill_chain_phases": [
{
"kill_chain_name": "misp-category",
"phase_name": "Network activity"
}
],
"labels": [
"misp:type=\"ip-dst\"",
"misp:category=\"Network activity\"",
"misp:to_ids=\"True\""
]
},
{
"type": "indicator",
"spec_version": "2.1",
"id": "indicator--57d24f60-caac-4600-b61f-e6b6950d210f",
"created_by_ref": "identity--55f6ea5e-2c60-40e5-964f-47a8950d210f",
"created": "2016-09-09T05:57:52.000Z",
"modified": "2016-09-09T05:57:52.000Z",
"description": "download location",
"pattern": "[network-traffic:dst_ref.type = 'ipv4-addr' AND network-traffic:dst_ref.value = '85.248.42.103']",
"pattern_type": "stix",
"pattern_version": "2.1",
"valid_from": "2016-09-09T05:57:52Z",
"kill_chain_phases": [
{
"kill_chain_name": "misp-category",
"phase_name": "Network activity"
}
],
"labels": [
"misp:type=\"ip-dst\"",
"misp:category=\"Network activity\"",
"misp:to_ids=\"True\""
]
},
{
"type": "indicator",
"spec_version": "2.1",
"id": "indicator--57d24f60-ea7c-43d4-a67c-e6b6950d210f",
"created_by_ref": "identity--55f6ea5e-2c60-40e5-964f-47a8950d210f",
"created": "2016-09-09T05:57:52.000Z",
"modified": "2016-09-09T05:57:52.000Z",
"description": "download location",
"pattern": "[network-traffic:dst_ref.type = 'ipv4-addr' AND network-traffic:dst_ref.value = '86.65.123.70']",
"pattern_type": "stix",
"pattern_version": "2.1",
"valid_from": "2016-09-09T05:57:52Z",
"kill_chain_phases": [
{
"kill_chain_name": "misp-category",
"phase_name": "Network activity"
}
],
"labels": [
"misp:type=\"ip-dst\"",
"misp:category=\"Network activity\"",
"misp:to_ids=\"True\""
]
},
{
"type": "indicator",
"spec_version": "2.1",
"id": "indicator--57d24f61-da6c-4e10-89a3-e6b6950d210f",
"created_by_ref": "identity--55f6ea5e-2c60-40e5-964f-47a8950d210f",
"created": "2016-09-09T05:57:53.000Z",
"modified": "2016-09-09T05:57:53.000Z",
"description": "download location",
"pattern": "[network-traffic:dst_ref.type = 'ipv4-addr' AND network-traffic:dst_ref.value = '87.242.73.75']",
"pattern_type": "stix",
"pattern_version": "2.1",
"valid_from": "2016-09-09T05:57:53Z",
"kill_chain_phases": [
{
"kill_chain_name": "misp-category",
"phase_name": "Network activity"
}
],
"labels": [
"misp:type=\"ip-dst\"",
"misp:category=\"Network activity\"",
"misp:to_ids=\"True\""
]
},
{
"type": "indicator",
"spec_version": "2.1",
"id": "indicator--57d24f61-7ac0-41c2-b0b5-e6b6950d210f",
"created_by_ref": "identity--55f6ea5e-2c60-40e5-964f-47a8950d210f",
"created": "2016-09-09T05:57:53.000Z",
"modified": "2016-09-09T05:57:53.000Z",
"description": "download location",
"pattern": "[network-traffic:dst_ref.type = 'ipv4-addr' AND network-traffic:dst_ref.value = '93.184.47.165']",
"pattern_type": "stix",
"pattern_version": "2.1",
"valid_from": "2016-09-09T05:57:53Z",
"kill_chain_phases": [
{
"kill_chain_name": "misp-category",
"phase_name": "Network activity"
}
],
"labels": [
"misp:type=\"ip-dst\"",
"misp:category=\"Network activity\"",
"misp:to_ids=\"True\""
]
},
{
"type": "indicator",
"spec_version": "2.1",
"id": "indicator--57d24f61-a494-40da-ac38-e6b6950d210f",
"created_by_ref": "identity--55f6ea5e-2c60-40e5-964f-47a8950d210f",
"created": "2016-09-09T05:57:53.000Z",
"modified": "2016-09-09T05:57:53.000Z",
"description": "download location",
"pattern": "[domain-name:value = 'dashman.web.fc2.com']",
"pattern_type": "stix",
"pattern_version": "2.1",
"valid_from": "2016-09-09T05:57:53Z",
"kill_chain_phases": [
{
"kill_chain_name": "misp-category",
"phase_name": "Network activity"
}
],
"labels": [
"misp:type=\"hostname\"",
"misp:category=\"Network activity\"",
"misp:to_ids=\"True\""
]
},
{
"type": "indicator",
"spec_version": "2.1",
"id": "indicator--57d24f61-f7fc-4b54-9e07-e6b6950d210f",
"created_by_ref": "identity--55f6ea5e-2c60-40e5-964f-47a8950d210f",
"created": "2016-09-09T05:57:53.000Z",
"modified": "2016-09-09T05:57:53.000Z",
"description": "download location",
"pattern": "[domain-name:value = 'fidelitas.heimat.eu']",
"pattern_type": "stix",
"pattern_version": "2.1",
"valid_from": "2016-09-09T05:57:53Z",
"kill_chain_phases": [
{
"kill_chain_name": "misp-category",
"phase_name": "Network activity"
}
],
"labels": [
"misp:type=\"hostname\"",
"misp:category=\"Network activity\"",
"misp:to_ids=\"True\""
]
},
{
"type": "indicator",
"spec_version": "2.1",
"id": "indicator--57d24f61-7298-4ea4-aa7c-e6b6950d210f",
"created_by_ref": "identity--55f6ea5e-2c60-40e5-964f-47a8950d210f",
"created": "2016-09-09T05:57:53.000Z",
"modified": "2016-09-09T05:57:53.000Z",
"description": "download location",
"pattern": "[domain-name:value = 'gam-e20.it']",
"pattern_type": "stix",
"pattern_version": "2.1",
"valid_from": "2016-09-09T05:57:53Z",
"kill_chain_phases": [
{
"kill_chain_name": "misp-category",
"phase_name": "Network activity"
}
],
"labels": [
"misp:type=\"domain\"",
"misp:category=\"Network activity\"",
"misp:to_ids=\"True\""
]
},
{
"type": "indicator",
"spec_version": "2.1",
"id": "indicator--57d24f62-f92c-4878-a28f-e6b6950d210f",
"created_by_ref": "identity--55f6ea5e-2c60-40e5-964f-47a8950d210f",
"created": "2016-09-09T05:57:54.000Z",
"modified": "2016-09-09T05:57:54.000Z",
"description": "download location",
"pattern": "[url:value = 'http://158.195.68.10/g76gyui']",
"pattern_type": "stix",
"pattern_version": "2.1",
"valid_from": "2016-09-09T05:57:54Z",
"kill_chain_phases": [
{
"kill_chain_name": "misp-category",
"phase_name": "Network activity"
}
],
"labels": [
"misp:type=\"url\"",
"misp:category=\"Network activity\"",
"misp:to_ids=\"True\""
]
},
{
"type": "indicator",
"spec_version": "2.1",
"id": "indicator--57d24f62-4f80-4133-aa87-e6b6950d210f",
"created_by_ref": "identity--55f6ea5e-2c60-40e5-964f-47a8950d210f",
"created": "2016-09-09T05:57:54.000Z",
"modified": "2016-09-09T05:57:54.000Z",
"description": "download location",
"pattern": "[url:value = 'http://209.41.183.242/g76gyui']",
"pattern_type": "stix",
"pattern_version": "2.1",
"valid_from": "2016-09-09T05:57:54Z",
"kill_chain_phases": [
{
"kill_chain_name": "misp-category",
"phase_name": "Network activity"
}
],
"labels": [
"misp:type=\"url\"",
"misp:category=\"Network activity\"",
"misp:to_ids=\"True\""
]
},
{
"type": "indicator",
"spec_version": "2.1",
"id": "indicator--57d24f62-f2e4-414e-9bca-e6b6950d210f",
"created_by_ref": "identity--55f6ea5e-2c60-40e5-964f-47a8950d210f",
"created": "2016-09-09T05:57:54.000Z",
"modified": "2016-09-09T05:57:54.000Z",
"description": "download location",
"pattern": "[url:value = 'http://fidelitas.heimat.eu/g76gyui']",
"pattern_type": "stix",
"pattern_version": "2.1",
"valid_from": "2016-09-09T05:57:54Z",
"kill_chain_phases": [
{
"kill_chain_name": "misp-category",
"phase_name": "Network activity"
}
],
"labels": [
"misp:type=\"url\"",
"misp:category=\"Network activity\"",
"misp:to_ids=\"True\""
]
},
{
"type": "indicator",
"spec_version": "2.1",
"id": "indicator--57d24f62-7320-443c-9fce-e6b6950d210f",
"created_by_ref": "identity--55f6ea5e-2c60-40e5-964f-47a8950d210f",
"created": "2016-09-09T05:57:54.000Z",
"modified": "2016-09-09T05:57:54.000Z",
"description": "download location",
"pattern": "[url:value = 'http://josemedina.com/g76gyui']",
"pattern_type": "stix",
"pattern_version": "2.1",
"valid_from": "2016-09-09T05:57:54Z",
"kill_chain_phases": [
{
"kill_chain_name": "misp-category",
"phase_name": "Network activity"
}
],
"labels": [
"misp:type=\"url\"",
"misp:category=\"Network activity\"",
"misp:to_ids=\"True\""
]
},
{
"type": "indicator",
"spec_version": "2.1",
"id": "indicator--57d24f63-1474-4090-b659-e6b6950d210f",
"created_by_ref": "identity--55f6ea5e-2c60-40e5-964f-47a8950d210f",
"created": "2016-09-09T05:57:55.000Z",
"modified": "2016-09-09T05:57:55.000Z",
"description": "download location",
"pattern": "[url:value = 'http://sitio655.vtrbandaancha.net/g76gyui']",
"pattern_type": "stix",
"pattern_version": "2.1",
"valid_from": "2016-09-09T05:57:55Z",
"kill_chain_phases": [
{
"kill_chain_name": "misp-category",
"phase_name": "Network activity"
}
],
"labels": [
"misp:type=\"url\"",
"misp:category=\"Network activity\"",
"misp:to_ids=\"True\""
]
},
{
"type": "indicator",
"spec_version": "2.1",
"id": "indicator--57d24f63-514c-4f65-a6b9-e6b6950d210f",
"created_by_ref": "identity--55f6ea5e-2c60-40e5-964f-47a8950d210f",
"created": "2016-09-09T05:57:55.000Z",
"modified": "2016-09-09T05:57:55.000Z",
"description": "download location",
"pattern": "[url:value = 'http://sp-moto.ru/g76gyui']",
"pattern_type": "stix",
"pattern_version": "2.1",
"valid_from": "2016-09-09T05:57:55Z",
"kill_chain_phases": [
{
"kill_chain_name": "misp-category",
"phase_name": "Network activity"
}
],
"labels": [
"misp:type=\"url\"",
"misp:category=\"Network activity\"",
"misp:to_ids=\"True\""
]
},
{
"type": "indicator",
"spec_version": "2.1",
"id": "indicator--57d24f63-6148-4457-ad48-e6b6950d210f",
"created_by_ref": "identity--55f6ea5e-2c60-40e5-964f-47a8950d210f",
"created": "2016-09-09T05:57:55.000Z",
"modified": "2016-09-09T05:57:55.000Z",
"description": "download location",
"pattern": "[url:value = 'http://srxrun.nobody.jp/g76gyui']",
"pattern_type": "stix",
"pattern_version": "2.1",
"valid_from": "2016-09-09T05:57:55Z",
"kill_chain_phases": [
{
"kill_chain_name": "misp-category",
"phase_name": "Network activity"
}
],
"labels": [
"misp:type=\"url\"",
"misp:category=\"Network activity\"",
"misp:to_ids=\"True\""
]
},
{
"type": "indicator",
"spec_version": "2.1",
"id": "indicator--57d24f63-ef70-4168-aea0-e6b6950d210f",
"created_by_ref": "identity--55f6ea5e-2c60-40e5-964f-47a8950d210f",
"created": "2016-09-09T05:57:55.000Z",
"modified": "2016-09-09T05:57:55.000Z",
"description": "download location",
"pattern": "[url:value = 'http://toukontoutaukaiazalea.web.fc2.com/g76gyui']",
"pattern_type": "stix",
"pattern_version": "2.1",
"valid_from": "2016-09-09T05:57:55Z",
"kill_chain_phases": [
{
"kill_chain_name": "misp-category",
"phase_name": "Network activity"
}
],
"labels": [
"misp:type=\"url\"",
"misp:category=\"Network activity\"",
"misp:to_ids=\"True\""
]
},
{
"type": "indicator",
"spec_version": "2.1",
"id": "indicator--57d24f64-ed58-459d-afea-e6b6950d210f",
"created_by_ref": "identity--55f6ea5e-2c60-40e5-964f-47a8950d210f",
"created": "2016-09-09T05:57:56.000Z",
"modified": "2016-09-09T05:57:56.000Z",
"description": "download location",
"pattern": "[url:value = 'http://www.aldesco.it/g76gyui']",
"pattern_type": "stix",
"pattern_version": "2.1",
"valid_from": "2016-09-09T05:57:56Z",
"kill_chain_phases": [
{
"kill_chain_name": "misp-category",
"phase_name": "Network activity"
}
],
"labels": [
"misp:type=\"url\"",
"misp:category=\"Network activity\"",
"misp:to_ids=\"True\""
]
},
{
"type": "indicator",
"spec_version": "2.1",
"id": "indicator--57d24f64-8fbc-4568-947c-e6b6950d210f",
"created_by_ref": "identity--55f6ea5e-2c60-40e5-964f-47a8950d210f",
"created": "2016-09-09T05:57:56.000Z",
"modified": "2016-09-09T05:57:56.000Z",
"description": "download location",
"pattern": "[url:value = 'http://www.association-julescatoire.fr/g76gyui']",
"pattern_type": "stix",
"pattern_version": "2.1",
"valid_from": "2016-09-09T05:57:56Z",
"kill_chain_phases": [
{
"kill_chain_name": "misp-category",
"phase_name": "Network activity"
}
],
"labels": [
"misp:type=\"url\"",
"misp:category=\"Network activity\"",
"misp:to_ids=\"True\""
]
},
{
"type": "indicator",
"spec_version": "2.1",
"id": "indicator--57d24f64-e1c4-4cca-b73d-e6b6950d210f",
"created_by_ref": "identity--55f6ea5e-2c60-40e5-964f-47a8950d210f",
"created": "2016-09-09T05:57:56.000Z",
"modified": "2016-09-09T05:57:56.000Z",
"description": "download location",
"pattern": "[url:value = 'http://www.bytove.jadro.szm.com/g76gyui']",
"pattern_type": "stix",
"pattern_version": "2.1",
"valid_from": "2016-09-09T05:57:56Z",
"kill_chain_phases": [
{
"kill_chain_name": "misp-category",
"phase_name": "Network activity"
}
],
"labels": [
"misp:type=\"url\"",
"misp:category=\"Network activity\"",
"misp:to_ids=\"True\""
]
},
{
"type": "indicator",
"spec_version": "2.1",
"id": "indicator--57d24f64-4878-44c0-a556-e6b6950d210f",
"created_by_ref": "identity--55f6ea5e-2c60-40e5-964f-47a8950d210f",
"created": "2016-09-09T05:57:56.000Z",
"modified": "2016-09-09T05:57:56.000Z",
"description": "download location",
"pattern": "[url:value = 'http://www.ccnprodusenaturiste.home.ro/g76gyui']",
"pattern_type": "stix",
"pattern_version": "2.1",
"valid_from": "2016-09-09T05:57:56Z",
"kill_chain_phases": [
{
"kill_chain_name": "misp-category",
"phase_name": "Network activity"
}
],
"labels": [
"misp:type=\"url\"",
"misp:category=\"Network activity\"",
"misp:to_ids=\"True\""
]
},
{
"type": "indicator",
"spec_version": "2.1",
"id": "indicator--57d24f65-efa0-45ec-9df7-e6b6950d210f",
"created_by_ref": "identity--55f6ea5e-2c60-40e5-964f-47a8950d210f",
"created": "2016-09-09T05:57:57.000Z",
"modified": "2016-09-09T05:57:57.000Z",
"description": "download location",
"pattern": "[url:value = 'http://www.idiomestarradellas.com/g76gyui']",
"pattern_type": "stix",
"pattern_version": "2.1",
"valid_from": "2016-09-09T05:57:57Z",
"kill_chain_phases": [
{
"kill_chain_name": "misp-category",
"phase_name": "Network activity"
}
],
"labels": [
"misp:type=\"url\"",
"misp:category=\"Network activity\"",
"misp:to_ids=\"True\""
]
},
{
"type": "indicator",
"spec_version": "2.1",
"id": "indicator--57d24f65-e22c-436e-ab14-e6b6950d210f",
"created_by_ref": "identity--55f6ea5e-2c60-40e5-964f-47a8950d210f",
"created": "2016-09-09T05:57:57.000Z",
"modified": "2016-09-09T05:57:57.000Z",
"description": "download location",
"pattern": "[url:value = 'http://www.oltransservice.org/g76gyui']",
"pattern_type": "stix",
"pattern_version": "2.1",
"valid_from": "2016-09-09T05:57:57Z",
"kill_chain_phases": [
{
"kill_chain_name": "misp-category",
"phase_name": "Network activity"
}
],
"labels": [
"misp:type=\"url\"",
"misp:category=\"Network activity\"",
"misp:to_ids=\"True\""
]
},
{
"type": "indicator",
"spec_version": "2.1",
"id": "indicator--57d24f65-2a04-4624-964e-e6b6950d210f",
"created_by_ref": "identity--55f6ea5e-2c60-40e5-964f-47a8950d210f",
"created": "2016-09-09T05:57:57.000Z",
"modified": "2016-09-09T05:57:57.000Z",
"description": "download location",
"pattern": "[url:value = 'http://www.one-clap.jp/g76gyui']",
"pattern_type": "stix",
"pattern_version": "2.1",
"valid_from": "2016-09-09T05:57:57Z",
"kill_chain_phases": [
{
"kill_chain_name": "misp-category",
"phase_name": "Network activity"
}
],
"labels": [
"misp:type=\"url\"",
"misp:category=\"Network activity\"",
"misp:to_ids=\"True\""
]
},
{
"type": "indicator",
"spec_version": "2.1",
"id": "indicator--57d24f65-9c38-46a9-845d-e6b6950d210f",
"created_by_ref": "identity--55f6ea5e-2c60-40e5-964f-47a8950d210f",
"created": "2016-09-09T05:57:57.000Z",
"modified": "2016-09-09T05:57:57.000Z",
"description": "download location",
"pattern": "[url:value = 'http://www.xolod-teplo.ru/g76gyui']",
"pattern_type": "stix",
"pattern_version": "2.1",
"valid_from": "2016-09-09T05:57:57Z",
"kill_chain_phases": [
{
"kill_chain_name": "misp-category",
"phase_name": "Network activity"
}
],
"labels": [
"misp:type=\"url\"",
"misp:category=\"Network activity\"",
"misp:to_ids=\"True\""
]
},
{
"type": "indicator",
"spec_version": "2.1",
"id": "indicator--57d24f66-01c0-4567-9bb5-e6b6950d210f",
"created_by_ref": "identity--55f6ea5e-2c60-40e5-964f-47a8950d210f",
"created": "2016-09-09T05:57:58.000Z",
"modified": "2016-09-09T05:57:58.000Z",
"description": "download location",
"pattern": "[domain-name:value = 'josemedina.com']",
"pattern_type": "stix",
"pattern_version": "2.1",
"valid_from": "2016-09-09T05:57:58Z",
"kill_chain_phases": [
{
"kill_chain_name": "misp-category",
"phase_name": "Network activity"
}
],
"labels": [
"misp:type=\"domain\"",
"misp:category=\"Network activity\"",
"misp:to_ids=\"True\""
]
},
{
"type": "indicator",
"spec_version": "2.1",
"id": "indicator--57d24f66-dff8-4608-9d35-e6b6950d210f",
"created_by_ref": "identity--55f6ea5e-2c60-40e5-964f-47a8950d210f",
"created": "2016-09-09T05:57:58.000Z",
"modified": "2016-09-09T05:57:58.000Z",
"description": "download location",
"pattern": "[domain-name:value = 'ngenge.web.fc2.com']",
"pattern_type": "stix",
"pattern_version": "2.1",
"valid_from": "2016-09-09T05:57:58Z",
"kill_chain_phases": [
{
"kill_chain_name": "misp-category",
"phase_name": "Network activity"
}
],
"labels": [
"misp:type=\"hostname\"",
"misp:category=\"Network activity\"",
"misp:to_ids=\"True\""
]
},
{
"type": "indicator",
"spec_version": "2.1",
"id": "indicator--57d24f66-1848-460e-8b9f-e6b6950d210f",
"created_by_ref": "identity--55f6ea5e-2c60-40e5-964f-47a8950d210f",
"created": "2016-09-09T05:57:58.000Z",
"modified": "2016-09-09T05:57:58.000Z",
"description": "download location",
"pattern": "[domain-name:value = 'olivier.coroenne.perso.sfr.fr']",
"pattern_type": "stix",
"pattern_version": "2.1",
"valid_from": "2016-09-09T05:57:58Z",
"kill_chain_phases": [
{
"kill_chain_name": "misp-category",
"phase_name": "Network activity"
}
],
"labels": [
"misp:type=\"hostname\"",
"misp:category=\"Network activity\"",
"misp:to_ids=\"True\""
]
},
{
"type": "indicator",
"spec_version": "2.1",
"id": "indicator--57d24f66-0268-4fe3-add0-e6b6950d210f",
"created_by_ref": "identity--55f6ea5e-2c60-40e5-964f-47a8950d210f",
"created": "2016-09-09T05:57:58.000Z",
"modified": "2016-09-09T05:57:58.000Z",
"description": "download location",
"pattern": "[domain-name:value = 'sitio655.vtrbandaancha.net']",
"pattern_type": "stix",
"pattern_version": "2.1",
"valid_from": "2016-09-09T05:57:58Z",
"kill_chain_phases": [
{
"kill_chain_name": "misp-category",
"phase_name": "Network activity"
}
],
"labels": [
"misp:type=\"hostname\"",
"misp:category=\"Network activity\"",
"misp:to_ids=\"True\""
]
},
{
"type": "indicator",
"spec_version": "2.1",
"id": "indicator--57d24f67-2390-4219-9ee8-e6b6950d210f",
"created_by_ref": "identity--55f6ea5e-2c60-40e5-964f-47a8950d210f",
"created": "2016-09-09T05:57:59.000Z",
"modified": "2016-09-09T05:57:59.000Z",
"description": "download location",
"pattern": "[domain-name:value = 'sp-moto.ru']",
"pattern_type": "stix",
"pattern_version": "2.1",
"valid_from": "2016-09-09T05:57:59Z",
"kill_chain_phases": [
{
"kill_chain_name": "misp-category",
"phase_name": "Network activity"
}
],
"labels": [
"misp:type=\"domain\"",
"misp:category=\"Network activity\"",
"misp:to_ids=\"True\""
]
},
{
"type": "indicator",
"spec_version": "2.1",
"id": "indicator--57d24f67-f87c-46a7-b56f-e6b6950d210f",
"created_by_ref": "identity--55f6ea5e-2c60-40e5-964f-47a8950d210f",
"created": "2016-09-09T05:57:59.000Z",
"modified": "2016-09-09T05:57:59.000Z",
"description": "download location",
"pattern": "[domain-name:value = 'srxrun.nobody.jp']",
"pattern_type": "stix",
"pattern_version": "2.1",
"valid_from": "2016-09-09T05:57:59Z",
"kill_chain_phases": [
{
"kill_chain_name": "misp-category",
"phase_name": "Network activity"
}
],
"labels": [
"misp:type=\"hostname\"",
"misp:category=\"Network activity\"",
"misp:to_ids=\"True\""
]
},
{
"type": "indicator",
"spec_version": "2.1",
"id": "indicator--57d24f67-92d8-4e62-affe-e6b6950d210f",
"created_by_ref": "identity--55f6ea5e-2c60-40e5-964f-47a8950d210f",
"created": "2016-09-09T05:57:59.000Z",
"modified": "2016-09-09T05:57:59.000Z",
"description": "download location",
"pattern": "[domain-name:value = 'thb-berlin.homepage.t-online.de']",
"pattern_type": "stix",
"pattern_version": "2.1",
"valid_from": "2016-09-09T05:57:59Z",
"kill_chain_phases": [
{
"kill_chain_name": "misp-category",
"phase_name": "Network activity"
}
],
"labels": [
"misp:type=\"hostname\"",
"misp:category=\"Network activity\"",
"misp:to_ids=\"True\""
]
},
{
"type": "indicator",
"spec_version": "2.1",
"id": "indicator--57d24f67-a668-48af-9853-e6b6950d210f",
"created_by_ref": "identity--55f6ea5e-2c60-40e5-964f-47a8950d210f",
"created": "2016-09-09T05:57:59.000Z",
"modified": "2016-09-09T05:57:59.000Z",
"description": "download location",
"pattern": "[domain-name:value = 'toukontoutaukaiazalea.web.fc2.com']",
"pattern_type": "stix",
"pattern_version": "2.1",
"valid_from": "2016-09-09T05:57:59Z",
"kill_chain_phases": [
{
"kill_chain_name": "misp-category",
"phase_name": "Network activity"
}
],
"labels": [
"misp:type=\"hostname\"",
"misp:category=\"Network activity\"",
"misp:to_ids=\"True\""
]
},
{
"type": "indicator",
"spec_version": "2.1",
"id": "indicator--57d24f68-6838-4cc7-bf7e-e6b6950d210f",
"created_by_ref": "identity--55f6ea5e-2c60-40e5-964f-47a8950d210f",
"created": "2016-09-09T05:58:00.000Z",
"modified": "2016-09-09T05:58:00.000Z",
"description": "download location",
"pattern": "[domain-name:value = 'unimet.tmhandel.com']",
"pattern_type": "stix",
"pattern_version": "2.1",
"valid_from": "2016-09-09T05:58:00Z",
"kill_chain_phases": [
{
"kill_chain_name": "misp-category",
"phase_name": "Network activity"
}
],
"labels": [
"misp:type=\"hostname\"",
"misp:category=\"Network activity\"",
"misp:to_ids=\"True\""
]
},
{
"type": "indicator",
"spec_version": "2.1",
"id": "indicator--57d24f68-fbe8-4b13-a031-e6b6950d210f",
"created_by_ref": "identity--55f6ea5e-2c60-40e5-964f-47a8950d210f",
"created": "2016-09-09T05:58:00.000Z",
"modified": "2016-09-09T05:58:00.000Z",
"description": "download location",
"pattern": "[domain-name:value = 'www.aldesco.it']",
"pattern_type": "stix",
"pattern_version": "2.1",
"valid_from": "2016-09-09T05:58:00Z",
"kill_chain_phases": [
{
"kill_chain_name": "misp-category",
"phase_name": "Network activity"
}
],
"labels": [
"misp:type=\"hostname\"",
"misp:category=\"Network activity\"",
"misp:to_ids=\"True\""
]
},
{
"type": "indicator",
"spec_version": "2.1",
"id": "indicator--57d24f68-10c0-4372-b096-e6b6950d210f",
"created_by_ref": "identity--55f6ea5e-2c60-40e5-964f-47a8950d210f",
"created": "2016-09-09T05:58:00.000Z",
"modified": "2016-09-09T05:58:00.000Z",
"description": "download location",
"pattern": "[domain-name:value = 'www.alpstaxi.co.jp']",
"pattern_type": "stix",
"pattern_version": "2.1",
"valid_from": "2016-09-09T05:58:00Z",
"kill_chain_phases": [
{
"kill_chain_name": "misp-category",
"phase_name": "Network activity"
}
],
"labels": [
"misp:type=\"hostname\"",
"misp:category=\"Network activity\"",
"misp:to_ids=\"True\""
]
},
{
"type": "indicator",
"spec_version": "2.1",
"id": "indicator--57d24f68-a928-4175-88b1-e6b6950d210f",
"created_by_ref": "identity--55f6ea5e-2c60-40e5-964f-47a8950d210f",
"created": "2016-09-09T05:58:00.000Z",
"modified": "2016-09-09T05:58:00.000Z",
"description": "download location",
"pattern": "[domain-name:value = 'www.association-julescatoire.fr']",
"pattern_type": "stix",
"pattern_version": "2.1",
"valid_from": "2016-09-09T05:58:00Z",
"kill_chain_phases": [
{
"kill_chain_name": "misp-category",
"phase_name": "Network activity"
}
],
"labels": [
"misp:type=\"hostname\"",
"misp:category=\"Network activity\"",
"misp:to_ids=\"True\""
]
},
{
"type": "indicator",
"spec_version": "2.1",
"id": "indicator--57d24f69-fc88-4dbf-bf90-e6b6950d210f",
"created_by_ref": "identity--55f6ea5e-2c60-40e5-964f-47a8950d210f",
"created": "2016-09-09T05:58:01.000Z",
"modified": "2016-09-09T05:58:01.000Z",
"description": "download location",
"pattern": "[domain-name:value = 'www.bytove.jadro.szm.com']",
"pattern_type": "stix",
"pattern_version": "2.1",
"valid_from": "2016-09-09T05:58:01Z",
"kill_chain_phases": [
{
"kill_chain_name": "misp-category",
"phase_name": "Network activity"
}
],
"labels": [
"misp:type=\"hostname\"",
"misp:category=\"Network activity\"",
"misp:to_ids=\"True\""
]
},
{
"type": "indicator",
"spec_version": "2.1",
"id": "indicator--57d24f69-1b6c-4f46-b64e-e6b6950d210f",
"created_by_ref": "identity--55f6ea5e-2c60-40e5-964f-47a8950d210f",
"created": "2016-09-09T05:58:01.000Z",
"modified": "2016-09-09T05:58:01.000Z",
"description": "download location",
"pattern": "[domain-name:value = 'www.ccnprodusenaturiste.home.ro']",
"pattern_type": "stix",
"pattern_version": "2.1",
"valid_from": "2016-09-09T05:58:01Z",
"kill_chain_phases": [
{
"kill_chain_name": "misp-category",
"phase_name": "Network activity"
}
],
"labels": [
"misp:type=\"hostname\"",
"misp:category=\"Network activity\"",
"misp:to_ids=\"True\""
]
},
{
"type": "indicator",
"spec_version": "2.1",
"id": "indicator--57d24f69-adf0-4929-bf8d-e6b6950d210f",
"created_by_ref": "identity--55f6ea5e-2c60-40e5-964f-47a8950d210f",
"created": "2016-09-09T05:58:01.000Z",
"modified": "2016-09-09T05:58:01.000Z",
"description": "download location",
"pattern": "[domain-name:value = 'www.gebrvanorsouw.nl']",
"pattern_type": "stix",
"pattern_version": "2.1",
"valid_from": "2016-09-09T05:58:01Z",
"kill_chain_phases": [
{
"kill_chain_name": "misp-category",
"phase_name": "Network activity"
}
],
"labels": [
"misp:type=\"hostname\"",
"misp:category=\"Network activity\"",
"misp:to_ids=\"True\""
]
},
{
"type": "indicator",
"spec_version": "2.1",
"id": "indicator--57d24f69-90e4-466b-87bd-e6b6950d210f",
"created_by_ref": "identity--55f6ea5e-2c60-40e5-964f-47a8950d210f",
"created": "2016-09-09T05:58:01.000Z",
"modified": "2016-09-09T05:58:01.000Z",
"description": "download location",
"pattern": "[domain-name:value = 'www.hung-guan.com.tw']",
"pattern_type": "stix",
"pattern_version": "2.1",
"valid_from": "2016-09-09T05:58:01Z",
"kill_chain_phases": [
{
"kill_chain_name": "misp-category",
"phase_name": "Network activity"
}
],
"labels": [
"misp:type=\"hostname\"",
"misp:category=\"Network activity\"",
"misp:to_ids=\"True\""
]
},
{
"type": "indicator",
"spec_version": "2.1",
"id": "indicator--57d24f6a-42cc-45d0-8d39-e6b6950d210f",
"created_by_ref": "identity--55f6ea5e-2c60-40e5-964f-47a8950d210f",
"created": "2016-09-09T05:58:02.000Z",
"modified": "2016-09-09T05:58:02.000Z",
"description": "download location",
"pattern": "[domain-name:value = 'www.idiomestarradellas.com']",
"pattern_type": "stix",
"pattern_version": "2.1",
"valid_from": "2016-09-09T05:58:02Z",
"kill_chain_phases": [
{
"kill_chain_name": "misp-category",
"phase_name": "Network activity"
}
],
"labels": [
"misp:type=\"hostname\"",
"misp:category=\"Network activity\"",
"misp:to_ids=\"True\""
]
},
{
"type": "indicator",
"spec_version": "2.1",
"id": "indicator--57d24f6a-0e3c-4284-b8c4-e6b6950d210f",
"created_by_ref": "identity--55f6ea5e-2c60-40e5-964f-47a8950d210f",
"created": "2016-09-09T05:58:02.000Z",
"modified": "2016-09-09T05:58:02.000Z",
"description": "download location",
"pattern": "[domain-name:value = 'www.laribalta.org']",
"pattern_type": "stix",
"pattern_version": "2.1",
"valid_from": "2016-09-09T05:58:02Z",
"kill_chain_phases": [
{
"kill_chain_name": "misp-category",
"phase_name": "Network activity"
}
],
"labels": [
"misp:type=\"hostname\"",
"misp:category=\"Network activity\"",
"misp:to_ids=\"True\""
]
},
{
"type": "indicator",
"spec_version": "2.1",
"id": "indicator--57d24f6a-2348-459f-b049-e6b6950d210f",
"created_by_ref": "identity--55f6ea5e-2c60-40e5-964f-47a8950d210f",
"created": "2016-09-09T05:58:02.000Z",
"modified": "2016-09-09T05:58:02.000Z",
"description": "download location",
"pattern": "[domain-name:value = 'www.oltransservice.org']",
"pattern_type": "stix",
"pattern_version": "2.1",
"valid_from": "2016-09-09T05:58:02Z",
"kill_chain_phases": [
{
"kill_chain_name": "misp-category",
"phase_name": "Network activity"
}
],
"labels": [
"misp:type=\"hostname\"",
"misp:category=\"Network activity\"",
"misp:to_ids=\"True\""
]
},
{
"type": "indicator",
"spec_version": "2.1",
"id": "indicator--57d24f6a-33dc-4282-9607-e6b6950d210f",
"created_by_ref": "identity--55f6ea5e-2c60-40e5-964f-47a8950d210f",
"created": "2016-09-09T05:58:02.000Z",
"modified": "2016-09-09T05:58:02.000Z",
"description": "download location",
"pattern": "[domain-name:value = 'www.one-clap.jp']",
"pattern_type": "stix",
"pattern_version": "2.1",
"valid_from": "2016-09-09T05:58:02Z",
"kill_chain_phases": [
{
"kill_chain_name": "misp-category",
"phase_name": "Network activity"
}
],
"labels": [
"misp:type=\"hostname\"",
"misp:category=\"Network activity\"",
"misp:to_ids=\"True\""
]
},
{
"type": "indicator",
"spec_version": "2.1",
"id": "indicator--57d24f6b-7ae0-447d-86c7-e6b6950d210f",
"created_by_ref": "identity--55f6ea5e-2c60-40e5-964f-47a8950d210f",
"created": "2016-09-09T05:58:03.000Z",
"modified": "2016-09-09T05:58:03.000Z",
"description": "download location",
"pattern": "[domain-name:value = 'www.plumbntile.talktalk.net']",
"pattern_type": "stix",
"pattern_version": "2.1",
"valid_from": "2016-09-09T05:58:03Z",
"kill_chain_phases": [
{
"kill_chain_name": "misp-category",
"phase_name": "Network activity"
}
],
"labels": [
"misp:type=\"hostname\"",
"misp:category=\"Network activity\"",
"misp:to_ids=\"True\""
]
},
{
"type": "indicator",
"spec_version": "2.1",
"id": "indicator--57d24f6b-3ca0-427c-84b9-e6b6950d210f",
"created_by_ref": "identity--55f6ea5e-2c60-40e5-964f-47a8950d210f",
"created": "2016-09-09T05:58:03.000Z",
"modified": "2016-09-09T05:58:03.000Z",
"description": "download location",
"pattern": "[domain-name:value = 'www.radicegioielli.com']",
"pattern_type": "stix",
"pattern_version": "2.1",
"valid_from": "2016-09-09T05:58:03Z",
"kill_chain_phases": [
{
"kill_chain_name": "misp-category",
"phase_name": "Network activity"
}
],
"labels": [
"misp:type=\"hostname\"",
"misp:category=\"Network activity\"",
"misp:to_ids=\"True\""
]
},
{
"type": "indicator",
"spec_version": "2.1",
"id": "indicator--57d24f6b-92b4-455f-81ec-e6b6950d210f",
"created_by_ref": "identity--55f6ea5e-2c60-40e5-964f-47a8950d210f",
"created": "2016-09-09T05:58:03.000Z",
"modified": "2016-09-09T05:58:03.000Z",
"description": "download location",
"pattern": "[domain-name:value = 'www.xolod-teplo.ru']",
"pattern_type": "stix",
"pattern_version": "2.1",
"valid_from": "2016-09-09T05:58:03Z",
"kill_chain_phases": [
{
"kill_chain_name": "misp-category",
"phase_name": "Network activity"
}
],
"labels": [
"misp:type=\"hostname\"",
"misp:category=\"Network activity\"",
"misp:to_ids=\"True\""
]
},
{
"type": "marking-definition",
"spec_version": "2.1",
"id": "marking-definition--613f2e26-407d-48c7-9eca-b8e91df99dc9",
"created": "2017-01-20T00:00:00.000Z",
"definition_type": "tlp",
"name": "TLP:WHITE",
"definition": {
"tlp": "white"
}
}
]
}