8280 lines
No EOL
279 KiB
JSON
8280 lines
No EOL
279 KiB
JSON
{
|
|
"Event": {
|
|
"analysis": "2",
|
|
"date": "2019-08-05",
|
|
"extends_uuid": "",
|
|
"info": "OSINT - Sharpening the Machete",
|
|
"publish_timestamp": "1566552922",
|
|
"published": true,
|
|
"threat_level_id": "3",
|
|
"timestamp": "1566552908",
|
|
"uuid": "5d498330-f574-4889-bcc9-c53c950d210f",
|
|
"Orgc": {
|
|
"name": "CIRCL",
|
|
"uuid": "55f6ea5e-2c60-40e5-964f-47a8950d210f"
|
|
},
|
|
"Tag": [
|
|
{
|
|
"colour": "#0088cc",
|
|
"local": false,
|
|
"name": "misp-galaxy:malpedia=\"Machete\"",
|
|
"relationship_type": ""
|
|
},
|
|
{
|
|
"colour": "#0088cc",
|
|
"local": false,
|
|
"name": "misp-galaxy:threat-actor=\"El Machete\"",
|
|
"relationship_type": ""
|
|
},
|
|
{
|
|
"colour": "#0088cc",
|
|
"local": false,
|
|
"name": "misp-galaxy:mitre-attack-pattern=\"Spearphishing Attachment - T1193\"",
|
|
"relationship_type": ""
|
|
},
|
|
{
|
|
"colour": "#0088cc",
|
|
"local": false,
|
|
"name": "misp-galaxy:mitre-attack-pattern=\"Spearphishing Link - T1192\"",
|
|
"relationship_type": ""
|
|
},
|
|
{
|
|
"colour": "#0088cc",
|
|
"local": false,
|
|
"name": "misp-galaxy:mitre-attack-pattern=\"User Execution - T1204\"",
|
|
"relationship_type": ""
|
|
},
|
|
{
|
|
"colour": "#0088cc",
|
|
"local": false,
|
|
"name": "misp-galaxy:mitre-attack-pattern=\"Scheduled Task - T1053\"",
|
|
"relationship_type": ""
|
|
},
|
|
{
|
|
"colour": "#0088cc",
|
|
"local": false,
|
|
"name": "misp-galaxy:mitre-attack-pattern=\"Hidden Files and Directories - T1158\"",
|
|
"relationship_type": ""
|
|
},
|
|
{
|
|
"colour": "#0088cc",
|
|
"local": false,
|
|
"name": "misp-galaxy:mitre-attack-pattern=\"Obfuscated Files or Information - T1027\"",
|
|
"relationship_type": ""
|
|
},
|
|
{
|
|
"colour": "#0088cc",
|
|
"local": false,
|
|
"name": "misp-galaxy:mitre-attack-pattern=\"Software Packing - T1045\"",
|
|
"relationship_type": ""
|
|
},
|
|
{
|
|
"colour": "#0088cc",
|
|
"local": false,
|
|
"name": "misp-galaxy:mitre-attack-pattern=\"Masquerading - T1036\"",
|
|
"relationship_type": ""
|
|
},
|
|
{
|
|
"colour": "#0088cc",
|
|
"local": false,
|
|
"name": "misp-galaxy:mitre-attack-pattern=\"Private Keys - T1145\"",
|
|
"relationship_type": ""
|
|
},
|
|
{
|
|
"colour": "#0088cc",
|
|
"local": false,
|
|
"name": "misp-galaxy:mitre-attack-pattern=\"Credentials in Files - T1081\"",
|
|
"relationship_type": ""
|
|
},
|
|
{
|
|
"colour": "#0088cc",
|
|
"local": false,
|
|
"name": "misp-galaxy:mitre-attack-pattern=\"System Network Connections Discovery - T1049\"",
|
|
"relationship_type": ""
|
|
},
|
|
{
|
|
"colour": "#0088cc",
|
|
"local": false,
|
|
"name": "misp-galaxy:mitre-attack-pattern=\"Peripheral Device Discovery - T1120\"",
|
|
"relationship_type": ""
|
|
},
|
|
{
|
|
"colour": "#0088cc",
|
|
"local": false,
|
|
"name": "misp-galaxy:mitre-attack-pattern=\"File and Directory Discovery - T1083\"",
|
|
"relationship_type": ""
|
|
},
|
|
{
|
|
"colour": "#0088cc",
|
|
"local": false,
|
|
"name": "misp-galaxy:mitre-attack-pattern=\"Browser Bookmark Discovery - T1217\"",
|
|
"relationship_type": ""
|
|
},
|
|
{
|
|
"colour": "#0088cc",
|
|
"local": false,
|
|
"name": "misp-galaxy:mitre-attack-pattern=\"Process Discovery - T1057\"",
|
|
"relationship_type": ""
|
|
},
|
|
{
|
|
"colour": "#0088cc",
|
|
"local": false,
|
|
"name": "misp-galaxy:mitre-attack-pattern=\"Application Window Discovery - T1010\"",
|
|
"relationship_type": ""
|
|
},
|
|
{
|
|
"colour": "#0088cc",
|
|
"local": false,
|
|
"name": "misp-galaxy:mitre-attack-pattern=\"Clipboard Data - T1115\"",
|
|
"relationship_type": ""
|
|
},
|
|
{
|
|
"colour": "#0088cc",
|
|
"local": false,
|
|
"name": "misp-galaxy:mitre-attack-pattern=\"Data from Local System - T1005\"",
|
|
"relationship_type": ""
|
|
},
|
|
{
|
|
"colour": "#0088cc",
|
|
"local": false,
|
|
"name": "misp-galaxy:mitre-attack-pattern=\"Data from Removable Media - T1025\"",
|
|
"relationship_type": ""
|
|
},
|
|
{
|
|
"colour": "#0088cc",
|
|
"local": false,
|
|
"name": "misp-galaxy:mitre-attack-pattern=\"Data Staged - T1074\"",
|
|
"relationship_type": ""
|
|
},
|
|
{
|
|
"colour": "#0088cc",
|
|
"local": false,
|
|
"name": "misp-galaxy:mitre-attack-pattern=\"Input Capture - T1056\"",
|
|
"relationship_type": ""
|
|
},
|
|
{
|
|
"colour": "#0088cc",
|
|
"local": false,
|
|
"name": "misp-galaxy:mitre-attack-pattern=\"Screen Capture - T1113\"",
|
|
"relationship_type": ""
|
|
},
|
|
{
|
|
"colour": "#0088cc",
|
|
"local": false,
|
|
"name": "misp-galaxy:mitre-attack-pattern=\"Commonly Used Port - T1043\"",
|
|
"relationship_type": ""
|
|
},
|
|
{
|
|
"colour": "#0088cc",
|
|
"local": false,
|
|
"name": "misp-galaxy:mitre-attack-pattern=\"Fallback Channels - T1008\"",
|
|
"relationship_type": ""
|
|
},
|
|
{
|
|
"colour": "#0088cc",
|
|
"local": false,
|
|
"name": "misp-galaxy:mitre-attack-pattern=\"Standard Application Layer Protocol - T1071\"",
|
|
"relationship_type": ""
|
|
},
|
|
{
|
|
"colour": "#0088cc",
|
|
"local": false,
|
|
"name": "misp-galaxy:mitre-attack-pattern=\"Remote File Copy - T1105\"",
|
|
"relationship_type": ""
|
|
},
|
|
{
|
|
"colour": "#0088cc",
|
|
"local": false,
|
|
"name": "misp-galaxy:mitre-attack-pattern=\"Automated Exfiltration - T1020\"",
|
|
"relationship_type": ""
|
|
},
|
|
{
|
|
"colour": "#0088cc",
|
|
"local": false,
|
|
"name": "misp-galaxy:mitre-attack-pattern=\"Data Compressed - T1002\"",
|
|
"relationship_type": ""
|
|
},
|
|
{
|
|
"colour": "#0088cc",
|
|
"local": false,
|
|
"name": "misp-galaxy:mitre-attack-pattern=\"Data Encrypted - T1022\"",
|
|
"relationship_type": ""
|
|
},
|
|
{
|
|
"colour": "#0088cc",
|
|
"local": false,
|
|
"name": "misp-galaxy:mitre-attack-pattern=\"Exfiltration Over Command and Control Channel - T1041\"",
|
|
"relationship_type": ""
|
|
},
|
|
{
|
|
"colour": "#0088cc",
|
|
"local": false,
|
|
"name": "misp-galaxy:mitre-attack-pattern=\"Exfiltration Over Physical Medium - T1052\"",
|
|
"relationship_type": ""
|
|
},
|
|
{
|
|
"colour": "#0088cc",
|
|
"local": false,
|
|
"name": "misp-galaxy:mitre-attack-pattern=\"Scheduled Transfer - T1029\"",
|
|
"relationship_type": ""
|
|
},
|
|
{
|
|
"colour": "#004646",
|
|
"local": false,
|
|
"name": "type:OSINT",
|
|
"relationship_type": ""
|
|
},
|
|
{
|
|
"colour": "#0071c3",
|
|
"local": false,
|
|
"name": "osint:lifetime=\"perpetual\"",
|
|
"relationship_type": ""
|
|
},
|
|
{
|
|
"colour": "#0087e8",
|
|
"local": false,
|
|
"name": "osint:certainty=\"50\"",
|
|
"relationship_type": ""
|
|
},
|
|
{
|
|
"colour": "#ffffff",
|
|
"local": false,
|
|
"name": "tlp:white",
|
|
"relationship_type": ""
|
|
},
|
|
{
|
|
"colour": "#3bb800",
|
|
"local": false,
|
|
"name": "enisa:nefarious-activity-abuse=\"spear-phishing-attacks\"",
|
|
"relationship_type": ""
|
|
}
|
|
],
|
|
"Attribute": [
|
|
{
|
|
"category": "External analysis",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"timestamp": "1565098813",
|
|
"to_ids": false,
|
|
"type": "link",
|
|
"uuid": "5d49833d-2ac8-489d-a0bb-4535950d210f",
|
|
"value": "https://www.welivesecurity.com/2019/08/05/sharpening-machete-cyberespionage/"
|
|
},
|
|
{
|
|
"category": "External analysis",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"timestamp": "1565100270",
|
|
"to_ids": false,
|
|
"type": "link",
|
|
"uuid": "5d4988ee-55fc-4a68-813f-44d4950d210f",
|
|
"value": "https://www.welivesecurity.com/wp-content/uploads/2019/08/ESET_Machete.pdf"
|
|
},
|
|
{
|
|
"category": "Network activity",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"timestamp": "1565618992",
|
|
"to_ids": true,
|
|
"type": "domain",
|
|
"uuid": "5d517330-22ac-4be8-93c4-49c9950d210f",
|
|
"value": "tobabean.expert"
|
|
},
|
|
{
|
|
"category": "Network activity",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"timestamp": "1565618992",
|
|
"to_ids": true,
|
|
"type": "domain",
|
|
"uuid": "5d517330-1658-4540-a753-46e0950d210f",
|
|
"value": "koliast.com"
|
|
},
|
|
{
|
|
"category": "Network activity",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"timestamp": "1565618992",
|
|
"to_ids": true,
|
|
"type": "hostname",
|
|
"uuid": "5d517330-bd80-44e7-91bc-438c950d210f",
|
|
"value": "u929489355.hostingerapp.com"
|
|
},
|
|
{
|
|
"category": "Network activity",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"timestamp": "1565618992",
|
|
"to_ids": true,
|
|
"type": "hostname",
|
|
"uuid": "5d517330-9d60-41b3-8436-4e39950d210f",
|
|
"value": "u154611594.hostingerapp.com"
|
|
},
|
|
{
|
|
"category": "Network activity",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"timestamp": "1565618992",
|
|
"to_ids": true,
|
|
"type": "hostname",
|
|
"uuid": "5d517330-25f8-447c-93fc-4b86950d210f",
|
|
"value": "6e24a5fb.ngrok.io"
|
|
},
|
|
{
|
|
"category": "Network activity",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"timestamp": "1565618992",
|
|
"to_ids": true,
|
|
"type": "hostname",
|
|
"uuid": "5d517330-59a8-4798-9b8f-419d950d210f",
|
|
"value": "f9527d03.ngrok.io"
|
|
},
|
|
{
|
|
"category": "Network activity",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"timestamp": "1565618993",
|
|
"to_ids": true,
|
|
"type": "hostname",
|
|
"uuid": "5d517331-6070-446d-a363-4ddf950d210f",
|
|
"value": "adtiomtardecessd.zapto.org"
|
|
},
|
|
{
|
|
"category": "Network activity",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"timestamp": "1565618993",
|
|
"to_ids": true,
|
|
"type": "hostname",
|
|
"uuid": "5d517331-ae34-454b-b2fe-4dec950d210f",
|
|
"value": "mcsi.gotdns.ch"
|
|
},
|
|
{
|
|
"category": "Network activity",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"timestamp": "1565618993",
|
|
"to_ids": true,
|
|
"type": "hostname",
|
|
"uuid": "5d517331-4b84-4341-afd9-41a6950d210f",
|
|
"value": "djcaps.gotdns.ch"
|
|
},
|
|
{
|
|
"category": "Network activity",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"timestamp": "1565618993",
|
|
"to_ids": true,
|
|
"type": "hostname",
|
|
"uuid": "5d517331-4108-4e33-a7ac-42d2950d210f",
|
|
"value": "tokeiss.ddns.net"
|
|
},
|
|
{
|
|
"category": "Network activity",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"timestamp": "1565618993",
|
|
"to_ids": true,
|
|
"type": "domain",
|
|
"uuid": "5d517331-c47c-413c-8047-497e950d210f",
|
|
"value": "artyomt.com"
|
|
},
|
|
{
|
|
"category": "Network activity",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"timestamp": "1565618993",
|
|
"to_ids": true,
|
|
"type": "hostname",
|
|
"uuid": "5d517331-e328-4744-8529-4088950d210f",
|
|
"value": "lawyersofficial.mipropia.com"
|
|
},
|
|
{
|
|
"category": "Network activity",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"timestamp": "1565618993",
|
|
"to_ids": true,
|
|
"type": "hostname",
|
|
"uuid": "5d517331-d6dc-4648-9b62-4404950d210f",
|
|
"value": "ceofanb18.mipropia.com"
|
|
},
|
|
{
|
|
"category": "Network activity",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"timestamp": "1565619066",
|
|
"to_ids": true,
|
|
"type": "ip-dst",
|
|
"uuid": "5d51737a-b680-46c6-9b58-4ff0950d210f",
|
|
"value": "185.224.137.63"
|
|
},
|
|
{
|
|
"category": "Network activity",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"timestamp": "1565619067",
|
|
"to_ids": true,
|
|
"type": "ip-dst",
|
|
"uuid": "5d51737b-39c8-46cc-87bb-4342950d210f",
|
|
"value": "156.67.222.88"
|
|
},
|
|
{
|
|
"category": "Network activity",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"timestamp": "1565619067",
|
|
"to_ids": true,
|
|
"type": "ip-dst",
|
|
"uuid": "5d51737b-c5d4-42e3-9991-43ca950d210f",
|
|
"value": "158.69.9.209"
|
|
},
|
|
{
|
|
"category": "Network activity",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"timestamp": "1565619067",
|
|
"to_ids": true,
|
|
"type": "ip-dst",
|
|
"uuid": "5d51737b-d2ec-4a93-9e4a-4623950d210f",
|
|
"value": "142.44.236.215"
|
|
},
|
|
{
|
|
"category": "Network activity",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"timestamp": "1565619067",
|
|
"to_ids": true,
|
|
"type": "ip-dst",
|
|
"uuid": "5d51737b-cb90-492c-bc50-49da950d210f",
|
|
"value": "199.79.63.188"
|
|
},
|
|
{
|
|
"category": "Network activity",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"timestamp": "1565619067",
|
|
"to_ids": true,
|
|
"type": "ip-dst",
|
|
"uuid": "5d51737b-e68c-4cf8-8484-4c8f950d210f",
|
|
"value": "109.61.164.33"
|
|
},
|
|
{
|
|
"category": "External analysis",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"timestamp": "1565680412",
|
|
"to_ids": false,
|
|
"type": "text",
|
|
"uuid": "5d52631c-1110-4600-a024-d9c8950d210f",
|
|
"value": "Latin America is often overlooked when it comes to persistent threats and groups with politically motivated targets. There is, however, an ongoing case of cyberespionage against high-profile organizations that has managed to stay under the radar. The group behind these attacks has stolen gigabytes of confidential documents, mostly from Venezuelan government organizations. It is still very active at the time of this publication, regularly introducing changes to its malware, infrastructure and spearphishing campaigns.\r\n\r\nESET has been tracking a new version of Machete (the group\u00e2\u20ac\u2122s Python-based toolset) that was first seen in April 2018. While the main functionality of the backdoor remains the same as in previous versions, it has been extended with new features over the course of a year."
|
|
}
|
|
],
|
|
"Object": [
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "File object describing a file with meta-information",
|
|
"meta-category": "file",
|
|
"name": "file",
|
|
"template_uuid": "688c46fb-5edb-40a3-8273-1af7923e2215",
|
|
"template_version": "16",
|
|
"timestamp": "1565255665",
|
|
"uuid": "8a692de1-9181-4a14-b03b-33eff84dd2dd",
|
|
"Attribute": [
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha1",
|
|
"timestamp": "1565255665",
|
|
"to_ids": true,
|
|
"type": "sha1",
|
|
"uuid": "82214acd-177b-4f01-9cb1-09f8ea0e056c",
|
|
"value": "048c40eb606da3def08c9f6997c1948afbbc959b"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": true,
|
|
"object_relation": "filename",
|
|
"timestamp": "1565255665",
|
|
"to_ids": true,
|
|
"type": "filename",
|
|
"uuid": "3c4644ca-551f-4279-8f1e-a7be021c381c",
|
|
"value": "GoogleUpdate.exe"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "File object describing a file with meta-information",
|
|
"meta-category": "file",
|
|
"name": "file",
|
|
"template_uuid": "688c46fb-5edb-40a3-8273-1af7923e2215",
|
|
"template_version": "16",
|
|
"timestamp": "1565255666",
|
|
"uuid": "33584ba5-ffb6-4b6d-a583-2ed8be8b13a8",
|
|
"Attribute": [
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha1",
|
|
"timestamp": "1565255666",
|
|
"to_ids": true,
|
|
"type": "sha1",
|
|
"uuid": "0e25cbcd-502e-4149-b970-72bafa4d5c4c",
|
|
"value": "2e8d8508096caa38493414f6ba788d0041ea9e15"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": true,
|
|
"object_relation": "filename",
|
|
"timestamp": "1565255666",
|
|
"to_ids": true,
|
|
"type": "filename",
|
|
"uuid": "ced164af-a222-4585-a62e-52a24beace5f",
|
|
"value": "GoogleUpdate.exe"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "File object describing a file with meta-information",
|
|
"meta-category": "file",
|
|
"name": "file",
|
|
"template_uuid": "688c46fb-5edb-40a3-8273-1af7923e2215",
|
|
"template_version": "16",
|
|
"timestamp": "1565255989",
|
|
"uuid": "b1fe24c7-e0d6-4ad6-bded-71e94646e1de",
|
|
"ObjectReference": [
|
|
{
|
|
"comment": "",
|
|
"object_uuid": "b1fe24c7-e0d6-4ad6-bded-71e94646e1de",
|
|
"referenced_uuid": "33584ba5-ffb6-4b6d-a583-2ed8be8b13a8",
|
|
"relationship_type": "drops",
|
|
"timestamp": "1565255989",
|
|
"uuid": "5d4be915-a934-4d87-bb52-4c19950d210f"
|
|
}
|
|
],
|
|
"Attribute": [
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha1",
|
|
"timestamp": "1565255666",
|
|
"to_ids": true,
|
|
"type": "sha1",
|
|
"uuid": "3d6d8816-687e-445d-892b-a1cde6ac25c9",
|
|
"value": "85bdd7d871108c737701ac30c14a2d343cbdef94"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": true,
|
|
"object_relation": "filename",
|
|
"timestamp": "1565255667",
|
|
"to_ids": true,
|
|
"type": "filename",
|
|
"uuid": "e737ec76-a070-496c-95d5-77ce2298a415",
|
|
"value": "GoogleUpdate.exe"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "File object describing a file with meta-information",
|
|
"meta-category": "file",
|
|
"name": "file",
|
|
"template_uuid": "688c46fb-5edb-40a3-8273-1af7923e2215",
|
|
"template_version": "16",
|
|
"timestamp": "1565255667",
|
|
"uuid": "a438f26a-8ac2-48fa-92db-eeabe8bf2ea1",
|
|
"Attribute": [
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha1",
|
|
"timestamp": "1565255667",
|
|
"to_ids": true,
|
|
"type": "sha1",
|
|
"uuid": "62ee697a-2742-449a-a055-9e261a7e1063",
|
|
"value": "8ed8cb784512f7dadd147347fc94e945faf16338"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": true,
|
|
"object_relation": "filename",
|
|
"timestamp": "1565255667",
|
|
"to_ids": true,
|
|
"type": "filename",
|
|
"uuid": "9c306007-03f9-408e-99c8-b278c8c28d06",
|
|
"value": "GoogleUpdate.exe"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "File object describing a file with meta-information",
|
|
"meta-category": "file",
|
|
"name": "file",
|
|
"template_uuid": "688c46fb-5edb-40a3-8273-1af7923e2215",
|
|
"template_version": "16",
|
|
"timestamp": "1565255667",
|
|
"uuid": "0c8e9a07-b77f-4d99-88bc-90e01491881d",
|
|
"Attribute": [
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha1",
|
|
"timestamp": "1565255667",
|
|
"to_ids": true,
|
|
"type": "sha1",
|
|
"uuid": "e69dde3f-fcc2-4abe-8a21-34da8a235f52",
|
|
"value": "9c413075aab7ef7876b8dc8d7b7c1b9b96842c6e"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": true,
|
|
"object_relation": "filename",
|
|
"timestamp": "1565255668",
|
|
"to_ids": true,
|
|
"type": "filename",
|
|
"uuid": "d6d873d5-faa5-4a70-b3bd-213fe745e6de",
|
|
"value": "GoogleUpdate.exe"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "File object describing a file with meta-information",
|
|
"meta-category": "file",
|
|
"name": "file",
|
|
"template_uuid": "688c46fb-5edb-40a3-8273-1af7923e2215",
|
|
"template_version": "16",
|
|
"timestamp": "1565255668",
|
|
"uuid": "ea7d0d1f-8fa6-4e26-9d70-ff1ad56265af",
|
|
"Attribute": [
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha1",
|
|
"timestamp": "1565255668",
|
|
"to_ids": true,
|
|
"type": "sha1",
|
|
"uuid": "3aa21536-0dc0-4158-913e-c2ec259de214",
|
|
"value": "ab8dd6b0cc950618589603012863b57f7adb9d9b"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": true,
|
|
"object_relation": "filename",
|
|
"timestamp": "1565255668",
|
|
"to_ids": true,
|
|
"type": "filename",
|
|
"uuid": "6ff6c0df-cd14-4b6b-b05f-10864a94c4db",
|
|
"value": "GoogleUpdate.exe"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "File object describing a file with meta-information",
|
|
"meta-category": "file",
|
|
"name": "file",
|
|
"template_uuid": "688c46fb-5edb-40a3-8273-1af7923e2215",
|
|
"template_version": "16",
|
|
"timestamp": "1565607226",
|
|
"uuid": "04a81d9f-75c8-44eb-8775-7938c5303ab2",
|
|
"Attribute": [
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha1",
|
|
"timestamp": "1565607226",
|
|
"to_ids": true,
|
|
"type": "sha1",
|
|
"uuid": "569757f8-de33-4482-9361-2cb0f4b5396e",
|
|
"value": "318496b58cf5052efd49a95c721d9165278e9fce"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": true,
|
|
"object_relation": "filename",
|
|
"timestamp": "1565607226",
|
|
"to_ids": true,
|
|
"type": "filename",
|
|
"uuid": "cf825d3c-a3c8-4906-a758-0b8c6d35d2a1",
|
|
"value": "Chrome.exe"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "File object describing a file with meta-information",
|
|
"meta-category": "file",
|
|
"name": "file",
|
|
"template_uuid": "688c46fb-5edb-40a3-8273-1af7923e2215",
|
|
"template_version": "16",
|
|
"timestamp": "1565607227",
|
|
"uuid": "dba87e0c-17e3-43c0-af22-6f6a55bda3e0",
|
|
"Attribute": [
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha1",
|
|
"timestamp": "1565607227",
|
|
"to_ids": true,
|
|
"type": "sha1",
|
|
"uuid": "4da792bf-4a7c-4a7f-b7f5-235c63753eab",
|
|
"value": "3bb345032b6d0226d6771ba65fe4da0faf628631"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": true,
|
|
"object_relation": "filename",
|
|
"timestamp": "1565607227",
|
|
"to_ids": true,
|
|
"type": "filename",
|
|
"uuid": "d6fd9f75-d841-4bfa-affa-5d2e3cd0db21",
|
|
"value": "Chrome.exe"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "File object describing a file with meta-information",
|
|
"meta-category": "file",
|
|
"name": "file",
|
|
"template_uuid": "688c46fb-5edb-40a3-8273-1af7923e2215",
|
|
"template_version": "16",
|
|
"timestamp": "1565607227",
|
|
"uuid": "dd47f065-a663-4fbb-ad78-66fb372704ca",
|
|
"Attribute": [
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha1",
|
|
"timestamp": "1565607227",
|
|
"to_ids": true,
|
|
"type": "sha1",
|
|
"uuid": "46098939-09b5-4f22-9fd4-935598318832",
|
|
"value": "946a24dfbd0ae94209ef7c284d3f462548566a3c"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": true,
|
|
"object_relation": "filename",
|
|
"timestamp": "1565607228",
|
|
"to_ids": true,
|
|
"type": "filename",
|
|
"uuid": "da12fcfa-0571-48e9-87fe-e048ce7a6081",
|
|
"value": "Chrome.exe"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "File object describing a file with meta-information",
|
|
"meta-category": "file",
|
|
"name": "file",
|
|
"template_uuid": "688c46fb-5edb-40a3-8273-1af7923e2215",
|
|
"template_version": "16",
|
|
"timestamp": "1565607228",
|
|
"uuid": "6c19c316-14d6-469a-a122-f2b13c21cc8e",
|
|
"Attribute": [
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha1",
|
|
"timestamp": "1565607229",
|
|
"to_ids": true,
|
|
"type": "sha1",
|
|
"uuid": "abf16ae8-0918-4058-b638-61925a4b7eb6",
|
|
"value": "984b9202a6dbd7d3dd696cae1220338a68092dc9"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": true,
|
|
"object_relation": "filename",
|
|
"timestamp": "1565607229",
|
|
"to_ids": true,
|
|
"type": "filename",
|
|
"uuid": "dd94b59e-2d60-4391-bde1-84e983350ebd",
|
|
"value": "Chrome.exe"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "File object describing a file with meta-information",
|
|
"meta-category": "file",
|
|
"name": "file",
|
|
"template_uuid": "688c46fb-5edb-40a3-8273-1af7923e2215",
|
|
"template_version": "16",
|
|
"timestamp": "1565607229",
|
|
"uuid": "4f751950-e0d0-400a-90e0-bbab853a48dd",
|
|
"Attribute": [
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha1",
|
|
"timestamp": "1565607229",
|
|
"to_ids": true,
|
|
"type": "sha1",
|
|
"uuid": "278992de-6bcd-41f9-9246-709ad069e121",
|
|
"value": "eabd45d0a86113f5ccff9fd292c1e482a5727815"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": true,
|
|
"object_relation": "filename",
|
|
"timestamp": "1565607229",
|
|
"to_ids": true,
|
|
"type": "filename",
|
|
"uuid": "ef2e5b2c-8b30-4f87-a894-5b2e4554844e",
|
|
"value": "Chrome.exe"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "File object describing a file with meta-information",
|
|
"meta-category": "file",
|
|
"name": "file",
|
|
"template_uuid": "688c46fb-5edb-40a3-8273-1af7923e2215",
|
|
"template_version": "16",
|
|
"timestamp": "1565607229",
|
|
"uuid": "191b4c43-86e6-402b-a206-44cbc16f8ffa",
|
|
"Attribute": [
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha1",
|
|
"timestamp": "1565607230",
|
|
"to_ids": true,
|
|
"type": "sha1",
|
|
"uuid": "0d32d1ca-0556-45e7-8e93-d262f48de9c7",
|
|
"value": "f05bc018c90b560dc4932758956adffbc10588ce"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": true,
|
|
"object_relation": "filename",
|
|
"timestamp": "1565607230",
|
|
"to_ids": true,
|
|
"type": "filename",
|
|
"uuid": "5bab8147-9a07-451e-b9ff-d4e743a13cb9",
|
|
"value": "Chrome.exe"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "File object describing a file with meta-information",
|
|
"meta-category": "file",
|
|
"name": "file",
|
|
"template_uuid": "688c46fb-5edb-40a3-8273-1af7923e2215",
|
|
"template_version": "16",
|
|
"timestamp": "1565607230",
|
|
"uuid": "7acd2cf2-c80b-4dbf-850d-7168fe00298c",
|
|
"Attribute": [
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha1",
|
|
"timestamp": "1565607230",
|
|
"to_ids": true,
|
|
"type": "sha1",
|
|
"uuid": "a865387c-6fef-451b-bb08-cf02883a6063",
|
|
"value": "204a2850548e5994d4696e9002f90dfccbe2093a"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": true,
|
|
"object_relation": "filename",
|
|
"timestamp": "1565607230",
|
|
"to_ids": true,
|
|
"type": "filename",
|
|
"uuid": "e0a3dadc-2c47-4ac1-a179-18b9fd5a3d7d",
|
|
"value": "GoogleCrash.exe"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "File object describing a file with meta-information",
|
|
"meta-category": "file",
|
|
"name": "file",
|
|
"template_uuid": "688c46fb-5edb-40a3-8273-1af7923e2215",
|
|
"template_version": "16",
|
|
"timestamp": "1565607578",
|
|
"uuid": "957251b4-6f97-4058-97b4-a70ed80ac6e6",
|
|
"Attribute": [
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha1",
|
|
"timestamp": "1565607578",
|
|
"to_ids": true,
|
|
"type": "sha1",
|
|
"uuid": "5eef8dfe-380f-4c03-85e5-7bec9cab2e03",
|
|
"value": "3792588edc809270e6666a4677ec85a3400ba4cf"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": true,
|
|
"object_relation": "filename",
|
|
"timestamp": "1565607586",
|
|
"to_ids": true,
|
|
"type": "filename",
|
|
"uuid": "aef335a0-b00d-4908-8aaa-16ffba9c9f64",
|
|
"value": "GoogleCrash.exe"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "File object describing a file with meta-information",
|
|
"meta-category": "file",
|
|
"name": "file",
|
|
"template_uuid": "688c46fb-5edb-40a3-8273-1af7923e2215",
|
|
"template_version": "16",
|
|
"timestamp": "1565607617",
|
|
"uuid": "3c0badfe-f235-436e-aad3-c91be69b2ec5",
|
|
"Attribute": [
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha1",
|
|
"timestamp": "1565607617",
|
|
"to_ids": true,
|
|
"type": "sha1",
|
|
"uuid": "eb5c042e-6fdb-4618-86d6-063f57c09f58",
|
|
"value": "4899a2c2ceceb92d2cc4ed17d092d1d599379284"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": true,
|
|
"object_relation": "filename",
|
|
"timestamp": "1565607619",
|
|
"to_ids": true,
|
|
"type": "filename",
|
|
"uuid": "eab66a4c-2cd8-4914-bcdc-6af4c8a4d2be",
|
|
"value": "GoogleCrash.exe"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "File object describing a file with meta-information",
|
|
"meta-category": "file",
|
|
"name": "file",
|
|
"template_uuid": "688c46fb-5edb-40a3-8273-1af7923e2215",
|
|
"template_version": "16",
|
|
"timestamp": "1565607619",
|
|
"uuid": "fe11a26b-5e51-4278-8527-77a9757e2c8d",
|
|
"Attribute": [
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha1",
|
|
"timestamp": "1565607619",
|
|
"to_ids": true,
|
|
"type": "sha1",
|
|
"uuid": "680a662c-14d9-4d96-997f-ed352b8d96dd",
|
|
"value": "a42756280aa352f4612bed85aabf7f3267e676c2"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": true,
|
|
"object_relation": "filename",
|
|
"timestamp": "1565607619",
|
|
"to_ids": true,
|
|
"type": "filename",
|
|
"uuid": "e55a5d01-a8d9-4820-ad8e-d0d3c0493c67",
|
|
"value": "GoogleCrash.exe"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "File object describing a file with meta-information",
|
|
"meta-category": "file",
|
|
"name": "file",
|
|
"template_uuid": "688c46fb-5edb-40a3-8273-1af7923e2215",
|
|
"template_version": "16",
|
|
"timestamp": "1565607620",
|
|
"uuid": "c7c69120-a89c-4b14-8a38-36acd6488961",
|
|
"Attribute": [
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha1",
|
|
"timestamp": "1565607620",
|
|
"to_ids": true,
|
|
"type": "sha1",
|
|
"uuid": "627971d5-d1f5-4239-8866-c98ff9a17904",
|
|
"value": "a97cf05ad7f3102bde45e4b4947ed435efea1968"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": true,
|
|
"object_relation": "filename",
|
|
"timestamp": "1565607620",
|
|
"to_ids": true,
|
|
"type": "filename",
|
|
"uuid": "01f552ae-daed-4587-8757-7dbbd2cd2b54",
|
|
"value": "GoogleCrash.exe"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "File object describing a file with meta-information",
|
|
"meta-category": "file",
|
|
"name": "file",
|
|
"template_uuid": "688c46fb-5edb-40a3-8273-1af7923e2215",
|
|
"template_version": "16",
|
|
"timestamp": "1565607620",
|
|
"uuid": "f708b2e6-8236-4b45-8180-28f20c5cb105",
|
|
"Attribute": [
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha1",
|
|
"timestamp": "1565607620",
|
|
"to_ids": true,
|
|
"type": "sha1",
|
|
"uuid": "4b95071e-1075-4d2d-a837-d74cf4836fbd",
|
|
"value": "00397da69b8e748720aedfd80d78166573c33ec8"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": true,
|
|
"object_relation": "filename",
|
|
"timestamp": "1565607621",
|
|
"to_ids": true,
|
|
"type": "filename",
|
|
"uuid": "d6f7f073-f5d5-456c-9dcd-f85064acbfa0",
|
|
"value": "ders.exe"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "File object describing a file with meta-information",
|
|
"meta-category": "file",
|
|
"name": "file",
|
|
"template_uuid": "688c46fb-5edb-40a3-8273-1af7923e2215",
|
|
"template_version": "16",
|
|
"timestamp": "1565607621",
|
|
"uuid": "45b5ad6f-62d6-43e1-865e-f815a37fa34f",
|
|
"Attribute": [
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha1",
|
|
"timestamp": "1565607621",
|
|
"to_ids": true,
|
|
"type": "sha1",
|
|
"uuid": "39c0a371-0ee4-42d1-8e41-30bdc05d537b",
|
|
"value": "03929a5530639c1d9dbd395a298c59fd7eff1dec"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": true,
|
|
"object_relation": "filename",
|
|
"timestamp": "1565607621",
|
|
"to_ids": true,
|
|
"type": "filename",
|
|
"uuid": "870a2fc4-9a45-4602-a794-c9342c7c4268",
|
|
"value": "chrome.sfx.exe"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "File object describing a file with meta-information",
|
|
"meta-category": "file",
|
|
"name": "file",
|
|
"template_uuid": "688c46fb-5edb-40a3-8273-1af7923e2215",
|
|
"template_version": "16",
|
|
"timestamp": "1565607621",
|
|
"uuid": "a9f76724-fbcc-43a9-aad4-6737bb8a9ece",
|
|
"Attribute": [
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha1",
|
|
"timestamp": "1565607622",
|
|
"to_ids": true,
|
|
"type": "sha1",
|
|
"uuid": "e123da77-b36d-4be1-8267-e6568448d468",
|
|
"value": "0922defb82ff1140bbe3481bab27564bb966d50b"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": true,
|
|
"object_relation": "filename",
|
|
"timestamp": "1565607622",
|
|
"to_ids": true,
|
|
"type": "filename",
|
|
"uuid": "b39e6636-0eb0-40b7-b4b5-61afbadee398",
|
|
"value": "ChrOme_UpdAte.sfx.exe"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "File object describing a file with meta-information",
|
|
"meta-category": "file",
|
|
"name": "file",
|
|
"template_uuid": "688c46fb-5edb-40a3-8273-1af7923e2215",
|
|
"template_version": "16",
|
|
"timestamp": "1565607622",
|
|
"uuid": "0754c7c6-7a21-4a8a-be8d-32fa887c756b",
|
|
"Attribute": [
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha1",
|
|
"timestamp": "1565607622",
|
|
"to_ids": true,
|
|
"type": "sha1",
|
|
"uuid": "edc5d2b3-b58a-47ac-9080-e2d49aa45d5f",
|
|
"value": "0ac64e08e63601ad9d6a4ef019e5b374784af80a"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": true,
|
|
"object_relation": "filename",
|
|
"timestamp": "1565607622",
|
|
"to_ids": true,
|
|
"type": "filename",
|
|
"uuid": "e178420a-b9ea-41ca-8c3a-24de6e14bdb1",
|
|
"value": "chrome.sfx.exe"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "File object describing a file with meta-information",
|
|
"meta-category": "file",
|
|
"name": "file",
|
|
"template_uuid": "688c46fb-5edb-40a3-8273-1af7923e2215",
|
|
"template_version": "16",
|
|
"timestamp": "1565607622",
|
|
"uuid": "c51b58e9-416e-43d5-9ef0-651536573149",
|
|
"Attribute": [
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha1",
|
|
"timestamp": "1565607623",
|
|
"to_ids": true,
|
|
"type": "sha1",
|
|
"uuid": "c0e86eb4-3053-4af9-bbda-0d9ca35d7c76",
|
|
"value": "0ba5bce133b50ef80fd9241c3ea5cb9135ca4eb1"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": true,
|
|
"object_relation": "filename",
|
|
"timestamp": "1565607623",
|
|
"to_ids": true,
|
|
"type": "filename",
|
|
"uuid": "70385229-ddf0-4598-8000-debc63ef75e1",
|
|
"value": "ders.exe"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "File object describing a file with meta-information",
|
|
"meta-category": "file",
|
|
"name": "file",
|
|
"template_uuid": "688c46fb-5edb-40a3-8273-1af7923e2215",
|
|
"template_version": "16",
|
|
"timestamp": "1565607623",
|
|
"uuid": "a4be316a-1342-490b-935d-3cb667a02ad6",
|
|
"Attribute": [
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha1",
|
|
"timestamp": "1565607624",
|
|
"to_ids": true,
|
|
"type": "sha1",
|
|
"uuid": "a74dacf0-7978-460b-bd3a-9a58af3c20fa",
|
|
"value": "161629f63422ab34108854662313f87a278dd7f5"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": true,
|
|
"object_relation": "filename",
|
|
"timestamp": "1565607624",
|
|
"to_ids": true,
|
|
"type": "filename",
|
|
"uuid": "36c84f48-9cc1-4a71-af83-da50c342a5ac",
|
|
"value": "chrome.sfx.exe"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "File object describing a file with meta-information",
|
|
"meta-category": "file",
|
|
"name": "file",
|
|
"template_uuid": "688c46fb-5edb-40a3-8273-1af7923e2215",
|
|
"template_version": "16",
|
|
"timestamp": "1565607624",
|
|
"uuid": "588bbb6f-9390-42d4-9839-3b595d31de69",
|
|
"Attribute": [
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha1",
|
|
"timestamp": "1565607624",
|
|
"to_ids": true,
|
|
"type": "sha1",
|
|
"uuid": "0a59eb95-d545-420c-93a9-f7fca536a552",
|
|
"value": "24752dab28c3add4c31591f2ec480ce3ca83e0aa"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": true,
|
|
"object_relation": "filename",
|
|
"timestamp": "1565607624",
|
|
"to_ids": true,
|
|
"type": "filename",
|
|
"uuid": "ee93984e-2cd3-41c5-9821-61d73dfe3798",
|
|
"value": "python27.exe"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "File object describing a file with meta-information",
|
|
"meta-category": "file",
|
|
"name": "file",
|
|
"template_uuid": "688c46fb-5edb-40a3-8273-1af7923e2215",
|
|
"template_version": "16",
|
|
"timestamp": "1565607624",
|
|
"uuid": "962c51b9-615d-454d-8977-a22a1f583868",
|
|
"Attribute": [
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha1",
|
|
"timestamp": "1565607625",
|
|
"to_ids": true,
|
|
"type": "sha1",
|
|
"uuid": "62adb617-a96d-4c01-b7ec-486cb0775642",
|
|
"value": "341f2efa0fd11b4480d8503bfb81c62af667d72d"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": true,
|
|
"object_relation": "filename",
|
|
"timestamp": "1565607625",
|
|
"to_ids": true,
|
|
"type": "filename",
|
|
"uuid": "8d5a017a-04b8-42c6-8689-901f7353c2c4",
|
|
"value": "chrome_Up.sfx.exe"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "File object describing a file with meta-information",
|
|
"meta-category": "file",
|
|
"name": "file",
|
|
"template_uuid": "688c46fb-5edb-40a3-8273-1af7923e2215",
|
|
"template_version": "16",
|
|
"timestamp": "1565607625",
|
|
"uuid": "87939249-448c-4cb5-bf42-596cb88cb9ee",
|
|
"Attribute": [
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha1",
|
|
"timestamp": "1565607625",
|
|
"to_ids": true,
|
|
"type": "sha1",
|
|
"uuid": "d8957a69-9e23-483b-a28e-8c26c5c49b7b",
|
|
"value": "4c130aa110b290a0cf4ff1c099ea2a705081a9cb"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": true,
|
|
"object_relation": "filename",
|
|
"timestamp": "1565607625",
|
|
"to_ids": true,
|
|
"type": "filename",
|
|
"uuid": "31393418-0b1d-4fa0-bf9b-6aed97100501",
|
|
"value": "Chrome_Update.sfx.exe"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "File object describing a file with meta-information",
|
|
"meta-category": "file",
|
|
"name": "file",
|
|
"template_uuid": "688c46fb-5edb-40a3-8273-1af7923e2215",
|
|
"template_version": "16",
|
|
"timestamp": "1565607625",
|
|
"uuid": "aee6c86f-91c9-4ed9-8a11-841fa8d848d3",
|
|
"Attribute": [
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha1",
|
|
"timestamp": "1565607625",
|
|
"to_ids": true,
|
|
"type": "sha1",
|
|
"uuid": "1a7d3051-247d-4038-9542-6094d4e8f759",
|
|
"value": "50c23690c23ee070ad3a20fced7311bfdf098833"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": true,
|
|
"object_relation": "filename",
|
|
"timestamp": "1565607625",
|
|
"to_ids": true,
|
|
"type": "filename",
|
|
"uuid": "0a3b8691-846b-44d3-a0f1-3a99c585132c",
|
|
"value": "ders.exe"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "File object describing a file with meta-information",
|
|
"meta-category": "file",
|
|
"name": "file",
|
|
"template_uuid": "688c46fb-5edb-40a3-8273-1af7923e2215",
|
|
"template_version": "16",
|
|
"timestamp": "1565607626",
|
|
"uuid": "ddb03882-2048-41c3-bb11-8dff8b9aa4ac",
|
|
"Attribute": [
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha1",
|
|
"timestamp": "1565607626",
|
|
"to_ids": true,
|
|
"type": "sha1",
|
|
"uuid": "54c48bd6-6ae5-4c93-93e2-05d4fd04720d",
|
|
"value": "67ecbc1e9a66719c599e6dded33a85f70daca13e"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": true,
|
|
"object_relation": "filename",
|
|
"timestamp": "1565607626",
|
|
"to_ids": true,
|
|
"type": "filename",
|
|
"uuid": "29cc294e-ae2a-4334-8475-2ea0876c03f1",
|
|
"value": "chrome.sfx.exe"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "File object describing a file with meta-information",
|
|
"meta-category": "file",
|
|
"name": "file",
|
|
"template_uuid": "688c46fb-5edb-40a3-8273-1af7923e2215",
|
|
"template_version": "16",
|
|
"timestamp": "1565607626",
|
|
"uuid": "b7167cb2-4240-43fe-8821-80897f4087b3",
|
|
"Attribute": [
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha1",
|
|
"timestamp": "1565607626",
|
|
"to_ids": true,
|
|
"type": "sha1",
|
|
"uuid": "50091f94-a473-4bef-bd22-958543ae1eb9",
|
|
"value": "6a69a2a2d4a2f8690b71386f0f092b04ea5a647d"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": true,
|
|
"object_relation": "filename",
|
|
"timestamp": "1565607626",
|
|
"to_ids": true,
|
|
"type": "filename",
|
|
"uuid": "bda04143-19d6-4499-be4e-d81ac15168d8",
|
|
"value": "ders.exe"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "File object describing a file with meta-information",
|
|
"meta-category": "file",
|
|
"name": "file",
|
|
"template_uuid": "688c46fb-5edb-40a3-8273-1af7923e2215",
|
|
"template_version": "16",
|
|
"timestamp": "1565607627",
|
|
"uuid": "05e6b2ff-953c-4841-bd39-8ad0c2e69e65",
|
|
"Attribute": [
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha1",
|
|
"timestamp": "1565607627",
|
|
"to_ids": true,
|
|
"type": "sha1",
|
|
"uuid": "f4bc11eb-d203-472f-8e93-aa9326bb75f0",
|
|
"value": "92c56af6815597c0135c21ef5a35d41b0e2a460f"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": true,
|
|
"object_relation": "filename",
|
|
"timestamp": "1565607627",
|
|
"to_ids": true,
|
|
"type": "filename",
|
|
"uuid": "982221ae-d3a6-4078-8424-b51a4e5d975a",
|
|
"value": "Python_27.exe"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "File object describing a file with meta-information",
|
|
"meta-category": "file",
|
|
"name": "file",
|
|
"template_uuid": "688c46fb-5edb-40a3-8273-1af7923e2215",
|
|
"template_version": "16",
|
|
"timestamp": "1565607627",
|
|
"uuid": "d04d25ce-44a8-45dc-b7ed-a0d85596a811",
|
|
"Attribute": [
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha1",
|
|
"timestamp": "1565607627",
|
|
"to_ids": true,
|
|
"type": "sha1",
|
|
"uuid": "922ec4aa-592a-45d7-82e4-cb1942b74bd1",
|
|
"value": "9e52e1c015b97d4fb2cac888f8fc69d729af78f5"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": true,
|
|
"object_relation": "filename",
|
|
"timestamp": "1565607627",
|
|
"to_ids": true,
|
|
"type": "filename",
|
|
"uuid": "e2431fad-55e8-4926-ae2d-0f47ebe66544",
|
|
"value": "finaser.aes"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "File object describing a file with meta-information",
|
|
"meta-category": "file",
|
|
"name": "file",
|
|
"template_uuid": "688c46fb-5edb-40a3-8273-1af7923e2215",
|
|
"template_version": "16",
|
|
"timestamp": "1565607628",
|
|
"uuid": "aee23dbf-5457-415c-9594-4133bf65ea0c",
|
|
"Attribute": [
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha1",
|
|
"timestamp": "1565607628",
|
|
"to_ids": true,
|
|
"type": "sha1",
|
|
"uuid": "8758266f-a03f-4c14-934f-61160ce29b99",
|
|
"value": "a48a71b9d1c00a683397f97c02e0dbb3f4606863"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": true,
|
|
"object_relation": "filename",
|
|
"timestamp": "1565607628",
|
|
"to_ids": true,
|
|
"type": "filename",
|
|
"uuid": "9e65c1e6-9fd6-4c96-a8eb-74717da6c84e",
|
|
"value": "ders.exe"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "File object describing a file with meta-information",
|
|
"meta-category": "file",
|
|
"name": "file",
|
|
"template_uuid": "688c46fb-5edb-40a3-8273-1af7923e2215",
|
|
"template_version": "16",
|
|
"timestamp": "1565607629",
|
|
"uuid": "4bee8233-b6ac-45c5-881d-10c15a37a780",
|
|
"Attribute": [
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha1",
|
|
"timestamp": "1565607629",
|
|
"to_ids": true,
|
|
"type": "sha1",
|
|
"uuid": "10fb0efb-1ab5-44cd-bc28-88acec262d5f",
|
|
"value": "b6e436a0fff117a1c3d3d70947f62d4cac66c95e"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": true,
|
|
"object_relation": "filename",
|
|
"timestamp": "1565607629",
|
|
"to_ids": true,
|
|
"type": "filename",
|
|
"uuid": "3e17378b-b142-4640-b238-d0c5aacb4ba1",
|
|
"value": "ders.exe"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "File object describing a file with meta-information",
|
|
"meta-category": "file",
|
|
"name": "file",
|
|
"template_uuid": "688c46fb-5edb-40a3-8273-1af7923e2215",
|
|
"template_version": "16",
|
|
"timestamp": "1565607629",
|
|
"uuid": "579ad8ab-1805-4eee-aa81-d0ad072ec3a8",
|
|
"Attribute": [
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha1",
|
|
"timestamp": "1565607629",
|
|
"to_ids": true,
|
|
"type": "sha1",
|
|
"uuid": "9a3640c2-1368-433e-929c-532b8934bd78",
|
|
"value": "c4accf6071f51ade102190c6fa350435fc202654"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": true,
|
|
"object_relation": "filename",
|
|
"timestamp": "1565607629",
|
|
"to_ids": true,
|
|
"type": "filename",
|
|
"uuid": "91ed81ef-2355-4b7c-af51-a75258602073",
|
|
"value": "Python.27.exe"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "File object describing a file with meta-information",
|
|
"meta-category": "file",
|
|
"name": "file",
|
|
"template_uuid": "688c46fb-5edb-40a3-8273-1af7923e2215",
|
|
"template_version": "16",
|
|
"timestamp": "1565607630",
|
|
"uuid": "68862694-1745-4e74-b07d-61b8137c6bbf",
|
|
"Attribute": [
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha1",
|
|
"timestamp": "1565607630",
|
|
"to_ids": true,
|
|
"type": "sha1",
|
|
"uuid": "4bda6509-74d2-4a2d-9d84-df8b6466289a",
|
|
"value": "d5238cde036eefcc6d8d686b3a00247f27da894c"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": true,
|
|
"object_relation": "filename",
|
|
"timestamp": "1565607630",
|
|
"to_ids": true,
|
|
"type": "filename",
|
|
"uuid": "7349b8d0-0b40-40fb-a1e3-1bd280685386",
|
|
"value": "Python.27.exe"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "File object describing a file with meta-information",
|
|
"meta-category": "file",
|
|
"name": "file",
|
|
"template_uuid": "688c46fb-5edb-40a3-8273-1af7923e2215",
|
|
"template_version": "16",
|
|
"timestamp": "1565607630",
|
|
"uuid": "0f47af76-83e0-4020-b5a3-68754f9ef4af",
|
|
"Attribute": [
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha1",
|
|
"timestamp": "1565607630",
|
|
"to_ids": true,
|
|
"type": "sha1",
|
|
"uuid": "ed6b65c5-62a8-4fca-b313-f4e11f7020ae",
|
|
"value": "dda105d8d894f73b16518d546270e4f783cb5178"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": true,
|
|
"object_relation": "filename",
|
|
"timestamp": "1565607630",
|
|
"to_ids": true,
|
|
"type": "filename",
|
|
"uuid": "64d817d4-056e-4925-b08a-2161cbbdaf52",
|
|
"value": "python27.exe"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "File object describing a file with meta-information",
|
|
"meta-category": "file",
|
|
"name": "file",
|
|
"template_uuid": "688c46fb-5edb-40a3-8273-1af7923e2215",
|
|
"template_version": "16",
|
|
"timestamp": "1565607631",
|
|
"uuid": "39e99e19-f532-45f5-8224-c934bde72c32",
|
|
"Attribute": [
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha1",
|
|
"timestamp": "1565607631",
|
|
"to_ids": true,
|
|
"type": "sha1",
|
|
"uuid": "5c31f557-8a9d-412b-bc72-40461d0b8bc2",
|
|
"value": "e85c1ef38c39b6087ea9ac8171ddd1416b9a5306"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": true,
|
|
"object_relation": "filename",
|
|
"timestamp": "1565607631",
|
|
"to_ids": true,
|
|
"type": "filename",
|
|
"uuid": "11cfce90-cb53-4b21-b1be-6977f73f4c38",
|
|
"value": "python27.exe"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "File object describing a file with meta-information",
|
|
"meta-category": "file",
|
|
"name": "file",
|
|
"template_uuid": "688c46fb-5edb-40a3-8273-1af7923e2215",
|
|
"template_version": "16",
|
|
"timestamp": "1565607631",
|
|
"uuid": "6a2f26f5-deda-419e-bbfe-a330c3758928",
|
|
"Attribute": [
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha1",
|
|
"timestamp": "1565607632",
|
|
"to_ids": true,
|
|
"type": "sha1",
|
|
"uuid": "662133e9-92b0-4a1e-8b7d-9881e2722f27",
|
|
"value": "fd52b10e9d4e5d343e589627444a6766357d5e47"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": true,
|
|
"object_relation": "filename",
|
|
"timestamp": "1565607632",
|
|
"to_ids": true,
|
|
"type": "filename",
|
|
"uuid": "eeb92584-bb97-4fb7-b69c-68790c2f3b90",
|
|
"value": "Security.exe"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "File object describing a file with meta-information",
|
|
"meta-category": "file",
|
|
"name": "file",
|
|
"template_uuid": "688c46fb-5edb-40a3-8273-1af7923e2215",
|
|
"template_version": "16",
|
|
"timestamp": "1565607633",
|
|
"uuid": "cc82fda6-bc09-40fd-848a-45d0db504746",
|
|
"Attribute": [
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha1",
|
|
"timestamp": "1565607634",
|
|
"to_ids": true,
|
|
"type": "sha1",
|
|
"uuid": "e60a0f13-3efb-420e-b155-6ef8cea5639b",
|
|
"value": "69109287d41c002fa70bb3d6238c4056b2b24b2f"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": true,
|
|
"object_relation": "filename",
|
|
"timestamp": "1565607634",
|
|
"to_ids": true,
|
|
"type": "filename",
|
|
"uuid": "b282440b-bc0e-4fd0-bee3-e34322f5285f",
|
|
"value": "Mapa_monitoreo_WRF_ind02052018.scr"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "File object describing a file with meta-information",
|
|
"meta-category": "file",
|
|
"name": "file",
|
|
"template_uuid": "688c46fb-5edb-40a3-8273-1af7923e2215",
|
|
"template_version": "16",
|
|
"timestamp": "1565607634",
|
|
"uuid": "9830f7a9-07cc-49f8-8d97-dd0c94ba75d3",
|
|
"Attribute": [
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha1",
|
|
"timestamp": "1565607634",
|
|
"to_ids": true,
|
|
"type": "sha1",
|
|
"uuid": "34fc9a53-ba83-43bb-8753-45c43ae04e50",
|
|
"value": "89c0fdeed36a69099e935a590a103339b0cbe525"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": true,
|
|
"object_relation": "filename",
|
|
"timestamp": "1565607634",
|
|
"to_ids": true,
|
|
"type": "filename",
|
|
"uuid": "1ed43c3b-f0f3-4bc2-b30d-bc6db938d76a",
|
|
"value": "Mapa_monitoreo_WRF_ind02052018.scr"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "File object describing a file with meta-information",
|
|
"meta-category": "file",
|
|
"name": "file",
|
|
"template_uuid": "688c46fb-5edb-40a3-8273-1af7923e2215",
|
|
"template_version": "16",
|
|
"timestamp": "1565607634",
|
|
"uuid": "cba4d0e1-654f-4a15-81a0-e2c9945e97bb",
|
|
"Attribute": [
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha1",
|
|
"timestamp": "1565607635",
|
|
"to_ids": true,
|
|
"type": "sha1",
|
|
"uuid": "01ca25d3-02c2-464f-8657-d216aeb3e5f7",
|
|
"value": "9ea7832d83c74c839a49580b4211e627a24571be"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": true,
|
|
"object_relation": "filename",
|
|
"timestamp": "1565607635",
|
|
"to_ids": true,
|
|
"type": "filename",
|
|
"uuid": "63c1f5a9-803a-4543-895b-ee1c0b8aac36",
|
|
"value": "Programa Formacion en Contratacion Publica.scr"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "File object describing a file with meta-information",
|
|
"meta-category": "file",
|
|
"name": "file",
|
|
"template_uuid": "688c46fb-5edb-40a3-8273-1af7923e2215",
|
|
"template_version": "16",
|
|
"timestamp": "1565607635",
|
|
"uuid": "a62cf322-51d8-4052-a4d6-9ce43578c2f5",
|
|
"Attribute": [
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha1",
|
|
"timestamp": "1565607635",
|
|
"to_ids": true,
|
|
"type": "sha1",
|
|
"uuid": "4d8c3e6a-14b3-4263-98fe-9d0bfca33fcb",
|
|
"value": "bfd0cbef5b9c329792b38274474f04bd8109df66"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": true,
|
|
"object_relation": "filename",
|
|
"timestamp": "1565607635",
|
|
"to_ids": true,
|
|
"type": "filename",
|
|
"uuid": "57f62ee4-7019-4a80-8e14-3d86f52bfad5",
|
|
"value": "RGMA0_1_629.scr"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "File object describing a file with meta-information",
|
|
"meta-category": "file",
|
|
"name": "file",
|
|
"template_uuid": "688c46fb-5edb-40a3-8273-1af7923e2215",
|
|
"template_version": "16",
|
|
"timestamp": "1565607636",
|
|
"uuid": "8836295d-7d9e-4d50-a08b-b95b25c8b3c5",
|
|
"Attribute": [
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha1",
|
|
"timestamp": "1565607636",
|
|
"to_ids": true,
|
|
"type": "sha1",
|
|
"uuid": "58ce7d9a-8aa5-48d9-b271-4b7a7d9a22f1",
|
|
"value": "fde89fcec30fcaabb3d42ed87180843f3e760cd8"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": true,
|
|
"object_relation": "filename",
|
|
"timestamp": "1565607636",
|
|
"to_ids": true,
|
|
"type": "filename",
|
|
"uuid": "597f9620-c2f0-4660-babf-acd5f83cdfcf",
|
|
"value": "Mapa_monitoreo_WRF_ind02052018.scr"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "File object describing a file with meta-information",
|
|
"meta-category": "file",
|
|
"name": "file",
|
|
"template_uuid": "688c46fb-5edb-40a3-8273-1af7923e2215",
|
|
"template_version": "16",
|
|
"timestamp": "1565607636",
|
|
"uuid": "bc5d7cb4-8876-4e95-9dcd-e3a71c95396d",
|
|
"Attribute": [
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha1",
|
|
"timestamp": "1565607637",
|
|
"to_ids": true,
|
|
"type": "sha1",
|
|
"uuid": "0a852a29-768b-4c63-8e1a-d93b1765f58c",
|
|
"value": "52b680f472ae463436979da325db7ad64d5af1ef"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": true,
|
|
"object_relation": "filename",
|
|
"timestamp": "1565607637",
|
|
"to_ids": true,
|
|
"type": "filename",
|
|
"uuid": "cc03d805-135e-4320-9708-74ebc5781100",
|
|
"value": "Mapa_monitoreo_WRF_ind02052018.scr"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "File object describing a file with meta-information",
|
|
"meta-category": "file",
|
|
"name": "file",
|
|
"template_uuid": "688c46fb-5edb-40a3-8273-1af7923e2215",
|
|
"template_version": "16",
|
|
"timestamp": "1565607640",
|
|
"uuid": "b7706f37-e171-41a3-bc49-3fde53dc498f",
|
|
"Attribute": [
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha1",
|
|
"timestamp": "1565607640",
|
|
"to_ids": true,
|
|
"type": "sha1",
|
|
"uuid": "650415c6-6ba5-4b4a-bf24-cb0b47014173",
|
|
"value": "fb871aaca0ddcf2f009a2d11ecf672cfb61b7357"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": true,
|
|
"object_relation": "filename",
|
|
"timestamp": "1565607640",
|
|
"to_ids": true,
|
|
"type": "filename",
|
|
"uuid": "7cfaf983-b90f-476c-beae-0b1349196d21",
|
|
"value": "CALENDARIO_ACTIVIDADES_COLCO_EC.scr"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "File object describing a file with meta-information",
|
|
"meta-category": "file",
|
|
"name": "file",
|
|
"template_uuid": "688c46fb-5edb-40a3-8273-1af7923e2215",
|
|
"template_version": "16",
|
|
"timestamp": "1565607641",
|
|
"uuid": "a8fe9e04-bb0d-4131-9ad6-018ec7a0ca99",
|
|
"Attribute": [
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha1",
|
|
"timestamp": "1565607641",
|
|
"to_ids": true,
|
|
"type": "sha1",
|
|
"uuid": "06e60853-61c5-4d9c-97ad-5946322179d1",
|
|
"value": "9912bdbe08179122dc3797a2585d463573d1b5a5"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": true,
|
|
"object_relation": "filename",
|
|
"timestamp": "1565607641",
|
|
"to_ids": true,
|
|
"type": "filename",
|
|
"uuid": "18711c61-0fb1-4313-9aca-92360f07c4c4",
|
|
"value": "04Down.exe"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "File object describing a file with meta-information",
|
|
"meta-category": "file",
|
|
"name": "file",
|
|
"template_uuid": "688c46fb-5edb-40a3-8273-1af7923e2215",
|
|
"template_version": "16",
|
|
"timestamp": "1565607642",
|
|
"uuid": "434f775b-b36c-4fb2-8007-4e7b2e7aff88",
|
|
"Attribute": [
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha1",
|
|
"timestamp": "1565607642",
|
|
"to_ids": true,
|
|
"type": "sha1",
|
|
"uuid": "e0caced0-2554-4fe9-bea7-70a69c267956",
|
|
"value": "ab16808b5b4706b6265c5ff5fef8b8460c8a51f8"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": true,
|
|
"object_relation": "filename",
|
|
"timestamp": "1565607642",
|
|
"to_ids": true,
|
|
"type": "filename",
|
|
"uuid": "16cb3cad-4ca8-4253-969a-90695c0dabe1",
|
|
"value": "4Down.sfx.exe"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "File object describing a file with meta-information",
|
|
"meta-category": "file",
|
|
"name": "file",
|
|
"template_uuid": "688c46fb-5edb-40a3-8273-1af7923e2215",
|
|
"template_version": "16",
|
|
"timestamp": "1565607642",
|
|
"uuid": "dfa37ef0-abf3-46cd-88c0-a071db75f2c8",
|
|
"Attribute": [
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha1",
|
|
"timestamp": "1565607642",
|
|
"to_ids": true,
|
|
"type": "sha1",
|
|
"uuid": "30c8b2d1-d199-447d-8fa9-8044164b1207",
|
|
"value": "bdaab0b356ec9fe61fee1723e1dd52e39ddc6699"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": true,
|
|
"object_relation": "filename",
|
|
"timestamp": "1565607642",
|
|
"to_ids": true,
|
|
"type": "filename",
|
|
"uuid": "8a859e3b-d15a-480f-b200-c24c1d622759",
|
|
"value": "04Down.exe"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "File object describing a file with meta-information",
|
|
"meta-category": "file",
|
|
"name": "file",
|
|
"template_uuid": "688c46fb-5edb-40a3-8273-1af7923e2215",
|
|
"template_version": "16",
|
|
"timestamp": "1565607643",
|
|
"uuid": "e03bb791-42ae-4009-83a4-15fdb9e4a56a",
|
|
"Attribute": [
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha1",
|
|
"timestamp": "1565607643",
|
|
"to_ids": true,
|
|
"type": "sha1",
|
|
"uuid": "f88506b6-73cb-4d52-a9b6-ee56faff4661",
|
|
"value": "ded6509458df62d3ce60c68f3a2a87e59f1f96be"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": true,
|
|
"object_relation": "filename",
|
|
"timestamp": "1565607643",
|
|
"to_ids": true,
|
|
"type": "filename",
|
|
"uuid": "3bc05c35-65a7-4df8-b41e-6bb4b6666f9d",
|
|
"value": "Down.sfx.exe"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "File object describing a file with meta-information",
|
|
"meta-category": "file",
|
|
"name": "file",
|
|
"template_uuid": "688c46fb-5edb-40a3-8273-1af7923e2215",
|
|
"template_version": "16",
|
|
"timestamp": "1565607643",
|
|
"uuid": "68b09380-602b-460c-b512-affb7278bf17",
|
|
"Attribute": [
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha1",
|
|
"timestamp": "1565607644",
|
|
"to_ids": true,
|
|
"type": "sha1",
|
|
"uuid": "572b67d5-3121-46eb-bd8d-8b3cf12bed19",
|
|
"value": "2b7404f6b0075bc1192d61d4af135d521d5f08a3"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": true,
|
|
"object_relation": "filename",
|
|
"timestamp": "1565607644",
|
|
"to_ids": true,
|
|
"type": "filename",
|
|
"uuid": "1f13aaf4-e3e9-4c8d-b8b5-1688952b08ce",
|
|
"value": "RdrCEF.exe"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "File object describing a file with meta-information",
|
|
"meta-category": "file",
|
|
"name": "file",
|
|
"template_uuid": "688c46fb-5edb-40a3-8273-1af7923e2215",
|
|
"template_version": "16",
|
|
"timestamp": "1565607644",
|
|
"uuid": "003e685d-79fb-4e9d-aa32-aae946e9c2f2",
|
|
"Attribute": [
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha1",
|
|
"timestamp": "1565607644",
|
|
"to_ids": true,
|
|
"type": "sha1",
|
|
"uuid": "bea00cfe-f2ec-42ef-ac98-e0724aaede62",
|
|
"value": "53102e57b40feacb64566c26d101d9242dece77c"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": true,
|
|
"object_relation": "filename",
|
|
"timestamp": "1565607645",
|
|
"to_ids": true,
|
|
"type": "filename",
|
|
"uuid": "e96d4ec9-55a9-4a83-b7ad-c535f9cf1338",
|
|
"value": "Down.exe"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "File object describing a file with meta-information",
|
|
"meta-category": "file",
|
|
"name": "file",
|
|
"template_uuid": "688c46fb-5edb-40a3-8273-1af7923e2215",
|
|
"template_version": "16",
|
|
"timestamp": "1565607645",
|
|
"uuid": "8a3219fe-e008-4649-9f69-ec729c23436d",
|
|
"Attribute": [
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha1",
|
|
"timestamp": "1565607645",
|
|
"to_ids": true,
|
|
"type": "sha1",
|
|
"uuid": "ae1527a5-983e-4664-928a-82bb60359f3c",
|
|
"value": "56e8743e0773286a4b9e055147d96d53a43beca1"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": true,
|
|
"object_relation": "filename",
|
|
"timestamp": "1565607645",
|
|
"to_ids": true,
|
|
"type": "filename",
|
|
"uuid": "93563dbe-c1a6-483a-bc80-5ce0d4256b90",
|
|
"value": "Down.exe"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "File object describing a file with meta-information",
|
|
"meta-category": "file",
|
|
"name": "file",
|
|
"template_uuid": "688c46fb-5edb-40a3-8273-1af7923e2215",
|
|
"template_version": "16",
|
|
"timestamp": "1565607645",
|
|
"uuid": "12aea0bf-6d93-421b-a3bb-66bf707580e4",
|
|
"Attribute": [
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha1",
|
|
"timestamp": "1565607645",
|
|
"to_ids": true,
|
|
"type": "sha1",
|
|
"uuid": "e38015e5-4391-498c-a5e0-56ce0ed274ca",
|
|
"value": "71f69f04307c8f5675dcadeaa80b8c2b95691b01"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": true,
|
|
"object_relation": "filename",
|
|
"timestamp": "1565607645",
|
|
"to_ids": true,
|
|
"type": "filename",
|
|
"uuid": "1b84ebbe-6a15-4d0e-84b7-a0a83830e95b",
|
|
"value": "Down.exe"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "File object describing a file with meta-information",
|
|
"meta-category": "file",
|
|
"name": "file",
|
|
"template_uuid": "688c46fb-5edb-40a3-8273-1af7923e2215",
|
|
"template_version": "16",
|
|
"timestamp": "1565607646",
|
|
"uuid": "1970c2a4-9c10-4a8e-8d37-2e7df057cba7",
|
|
"Attribute": [
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha1",
|
|
"timestamp": "1565607646",
|
|
"to_ids": true,
|
|
"type": "sha1",
|
|
"uuid": "0ed98fb5-1c7b-40dc-93e1-d8d8e0812118",
|
|
"value": "904137b61f1ded66c8ca76ebf198dec1b638b5d4"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": true,
|
|
"object_relation": "filename",
|
|
"timestamp": "1565607646",
|
|
"to_ids": true,
|
|
"type": "filename",
|
|
"uuid": "39f30cdf-4b1d-4b6d-af1f-cc8a8ca1c9a6",
|
|
"value": "Down.exe"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "File object describing a file with meta-information",
|
|
"meta-category": "file",
|
|
"name": "file",
|
|
"template_uuid": "688c46fb-5edb-40a3-8273-1af7923e2215",
|
|
"template_version": "16",
|
|
"timestamp": "1565607646",
|
|
"uuid": "244d330e-4a9a-42a4-a98b-c324916fc138",
|
|
"Attribute": [
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha1",
|
|
"timestamp": "1565607646",
|
|
"to_ids": true,
|
|
"type": "sha1",
|
|
"uuid": "0217692b-2704-4f13-aabc-b1162ad1671d",
|
|
"value": "fbb485b40477f5a014e7096747b1b4a494ce50ef"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": true,
|
|
"object_relation": "filename",
|
|
"timestamp": "1565607646",
|
|
"to_ids": true,
|
|
"type": "filename",
|
|
"uuid": "edff78e0-a0d6-4c72-b4a0-34bff852c63a",
|
|
"value": "Down.exe"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "File object describing a file with meta-information",
|
|
"meta-category": "file",
|
|
"name": "file",
|
|
"template_uuid": "688c46fb-5edb-40a3-8273-1af7923e2215",
|
|
"template_version": "16",
|
|
"timestamp": "1565607647",
|
|
"uuid": "e9d12a70-06f1-46d0-b97c-3e2f8b93a3bc",
|
|
"Attribute": [
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha1",
|
|
"timestamp": "1565607647",
|
|
"to_ids": true,
|
|
"type": "sha1",
|
|
"uuid": "ec05bce5-ebc9-4e80-b4a6-3377817cffb4",
|
|
"value": "0468d3776435e527dba52b9da61d38c076dda09a"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": true,
|
|
"object_relation": "filename",
|
|
"timestamp": "1565607647",
|
|
"to_ids": true,
|
|
"type": "filename",
|
|
"uuid": "10ae8d6f-5e50-4ba5-85df-0d4f02c3969f",
|
|
"value": "FORMATO UNICO DE RENDIMIENTO OPERATIVO GNB 11JUNIO2019 CZGNB-13 xlsx.scr"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "File object describing a file with meta-information",
|
|
"meta-category": "file",
|
|
"name": "file",
|
|
"template_uuid": "688c46fb-5edb-40a3-8273-1af7923e2215",
|
|
"template_version": "16",
|
|
"timestamp": "1565607647",
|
|
"uuid": "5a90220f-2373-49bc-be7c-5b5d4734e51a",
|
|
"Attribute": [
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha1",
|
|
"timestamp": "1565607647",
|
|
"to_ids": true,
|
|
"type": "sha1",
|
|
"uuid": "787d7287-3282-4e4c-aa40-3d2656b91db8",
|
|
"value": "10eb152039cb0a379daab272151bc1baa8c6d4db"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": true,
|
|
"object_relation": "filename",
|
|
"timestamp": "1565607647",
|
|
"to_ids": true,
|
|
"type": "filename",
|
|
"uuid": "0a0d5bc4-c5fd-4d43-a0c6-804c09f85b31",
|
|
"value": "Radiograma 004026_pdf.scr"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "File object describing a file with meta-information",
|
|
"meta-category": "file",
|
|
"name": "file",
|
|
"template_uuid": "688c46fb-5edb-40a3-8273-1af7923e2215",
|
|
"template_version": "16",
|
|
"timestamp": "1565607647",
|
|
"uuid": "b3b62b88-c1f6-4f7d-9a09-1df9e947bc61",
|
|
"Attribute": [
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha1",
|
|
"timestamp": "1565607648",
|
|
"to_ids": true,
|
|
"type": "sha1",
|
|
"uuid": "d2fe395c-d3d6-40d5-8604-bbe5e53d084c",
|
|
"value": "173664de0a9a08218098abfb86d2c64f25b5ee37"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": true,
|
|
"object_relation": "filename",
|
|
"timestamp": "1565607648",
|
|
"to_ids": true,
|
|
"type": "filename",
|
|
"uuid": "18a05763-eb16-4d91-a565-65ae5d488653",
|
|
"value": "Dise\u00c3\u00b1o_pptx.scr"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "File object describing a file with meta-information",
|
|
"meta-category": "file",
|
|
"name": "file",
|
|
"template_uuid": "688c46fb-5edb-40a3-8273-1af7923e2215",
|
|
"template_version": "16",
|
|
"timestamp": "1565617838",
|
|
"uuid": "05981ed3-609f-46bb-b71a-df778d89535d",
|
|
"Attribute": [
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha1",
|
|
"timestamp": "1565617838",
|
|
"to_ids": true,
|
|
"type": "sha1",
|
|
"uuid": "b4ee1301-bb6e-419e-87cc-ebb0d2bf0a44",
|
|
"value": "29ea8a983e56229ac69fff9958319b66c006020b"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": true,
|
|
"object_relation": "filename",
|
|
"timestamp": "1565617838",
|
|
"to_ids": true,
|
|
"type": "filename",
|
|
"uuid": "5eacdee1-a049-4ec0-b16c-0b6a4b4cb517",
|
|
"value": "RDGMA 1101 001 jpg.scr"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "File object describing a file with meta-information",
|
|
"meta-category": "file",
|
|
"name": "file",
|
|
"template_uuid": "688c46fb-5edb-40a3-8273-1af7923e2215",
|
|
"template_version": "16",
|
|
"timestamp": "1565617838",
|
|
"uuid": "cceb870e-4117-48e0-8ce1-e1c440250917",
|
|
"Attribute": [
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha1",
|
|
"timestamp": "1565617839",
|
|
"to_ids": true,
|
|
"type": "sha1",
|
|
"uuid": "82ee6dee-ca25-4454-8715-d3e4dfb9f951",
|
|
"value": "3562cb8d37e68025787c31a0b4654a1ce209e62f"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": true,
|
|
"object_relation": "filename",
|
|
"timestamp": "1565617839",
|
|
"to_ids": true,
|
|
"type": "filename",
|
|
"uuid": "648f09e7-a1b2-4225-9713-b11e920ca322",
|
|
"value": "20190611101428 pdf.scr"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "File object describing a file with meta-information",
|
|
"meta-category": "file",
|
|
"name": "file",
|
|
"template_uuid": "688c46fb-5edb-40a3-8273-1af7923e2215",
|
|
"template_version": "16",
|
|
"timestamp": "1565617839",
|
|
"uuid": "93e52ad7-7f4c-47a5-99ae-8a4e6e567ec3",
|
|
"Attribute": [
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha1",
|
|
"timestamp": "1565617839",
|
|
"to_ids": true,
|
|
"type": "sha1",
|
|
"uuid": "c63579b0-7dcb-4304-af56-e33eadd96d93",
|
|
"value": "35e4ecb61f1fa09bec8a4528c592d982d33b6c6b"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": true,
|
|
"object_relation": "filename",
|
|
"timestamp": "1565617839",
|
|
"to_ids": true,
|
|
"type": "filename",
|
|
"uuid": "1557390d-69bd-4302-b193-77b16e259cdd",
|
|
"value": "INVITADOS_MEXICANOS.scr"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "File object describing a file with meta-information",
|
|
"meta-category": "file",
|
|
"name": "file",
|
|
"template_uuid": "688c46fb-5edb-40a3-8273-1af7923e2215",
|
|
"template_version": "16",
|
|
"timestamp": "1565617840",
|
|
"uuid": "638b2381-d20d-42a0-a652-375b1fa87686",
|
|
"Attribute": [
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha1",
|
|
"timestamp": "1565617840",
|
|
"to_ids": true,
|
|
"type": "sha1",
|
|
"uuid": "117470a7-b56f-4a26-915d-3a9e7bd119a7",
|
|
"value": "5c56ac14ca7159804a9d53fe037cfd0d99d45ab1"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": true,
|
|
"object_relation": "filename",
|
|
"timestamp": "1565617840",
|
|
"to_ids": true,
|
|
"type": "filename",
|
|
"uuid": "d602bdee-984e-4a57-bdb7-ec1ae95e8524",
|
|
"value": "JUNIO_19_PROPUESTA_CLARO_RENOVACION.scr"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "File object describing a file with meta-information",
|
|
"meta-category": "file",
|
|
"name": "file",
|
|
"template_uuid": "688c46fb-5edb-40a3-8273-1af7923e2215",
|
|
"template_version": "16",
|
|
"timestamp": "1565617840",
|
|
"uuid": "708dab6c-4d36-43f7-aeca-4e26adb0bb16",
|
|
"Attribute": [
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha1",
|
|
"timestamp": "1565617840",
|
|
"to_ids": true,
|
|
"type": "sha1",
|
|
"uuid": "d2288efa-8ae0-4bff-995d-f7401a9df8c0",
|
|
"value": "61de62436b3806a3a645c96677d7ad9d802e30a8"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": true,
|
|
"object_relation": "filename",
|
|
"timestamp": "1565617840",
|
|
"to_ids": true,
|
|
"type": "filename",
|
|
"uuid": "df4d0184-7839-4162-b436-d29ed9b4eb99",
|
|
"value": "FORMATO DE NOVEDADES PARA DC PERSONAL xls.scr"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "File object describing a file with meta-information",
|
|
"meta-category": "file",
|
|
"name": "file",
|
|
"template_uuid": "688c46fb-5edb-40a3-8273-1af7923e2215",
|
|
"template_version": "16",
|
|
"timestamp": "1565617841",
|
|
"uuid": "d6490a36-18cb-460b-b2b5-9a7619606148",
|
|
"Attribute": [
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha1",
|
|
"timestamp": "1565617841",
|
|
"to_ids": true,
|
|
"type": "sha1",
|
|
"uuid": "bb3a4bbe-ce6e-4700-a915-01ca6eeb4361",
|
|
"value": "62800d245a3726ca390d08b7bf17fe2c37f2b3cf"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": true,
|
|
"object_relation": "filename",
|
|
"timestamp": "1565617841",
|
|
"to_ids": true,
|
|
"type": "filename",
|
|
"uuid": "b2967aa4-885b-46cf-99be-7014aa72b0b2",
|
|
"value": "20190611101331.scr"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "File object describing a file with meta-information",
|
|
"meta-category": "file",
|
|
"name": "file",
|
|
"template_uuid": "688c46fb-5edb-40a3-8273-1af7923e2215",
|
|
"template_version": "16",
|
|
"timestamp": "1565617841",
|
|
"uuid": "b3e77c71-4406-4b96-b6e0-13ed5e4e30f4",
|
|
"Attribute": [
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha1",
|
|
"timestamp": "1565617841",
|
|
"to_ids": true,
|
|
"type": "sha1",
|
|
"uuid": "075c5288-b5a0-43c0-bf8e-0e4bce8192b3",
|
|
"value": "64f1322bf2a898278aa1e73803fdd500b6e5e7c7"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": true,
|
|
"object_relation": "filename",
|
|
"timestamp": "1565617842",
|
|
"to_ids": true,
|
|
"type": "filename",
|
|
"uuid": "b392df5b-9f6b-48c3-86e4-7b4ad8a31578",
|
|
"value": "RAD_N_0961_21MAY19.scr"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "File object describing a file with meta-information",
|
|
"meta-category": "file",
|
|
"name": "file",
|
|
"template_uuid": "688c46fb-5edb-40a3-8273-1af7923e2215",
|
|
"template_version": "16",
|
|
"timestamp": "1565617842",
|
|
"uuid": "90b99f0c-945a-46c6-9b0c-039cdab1dbed",
|
|
"Attribute": [
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha1",
|
|
"timestamp": "1565617842",
|
|
"to_ids": true,
|
|
"type": "sha1",
|
|
"uuid": "421b781e-f0e2-4647-86e2-6ea6cbc61f73",
|
|
"value": "79ac512389ef9e27a3598ca2968573db4f5fd58f"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": true,
|
|
"object_relation": "filename",
|
|
"timestamp": "1565617842",
|
|
"to_ids": true,
|
|
"type": "filename",
|
|
"uuid": "5f908857-093b-47fc-8479-1976c9136cec",
|
|
"value": "RAD OFL0120_jpg.scr"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "File object describing a file with meta-information",
|
|
"meta-category": "file",
|
|
"name": "file",
|
|
"template_uuid": "688c46fb-5edb-40a3-8273-1af7923e2215",
|
|
"template_version": "16",
|
|
"timestamp": "1565617842",
|
|
"uuid": "13f08889-deee-4943-b161-0187ef57d7e1",
|
|
"Attribute": [
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha1",
|
|
"timestamp": "1565617843",
|
|
"to_ids": true,
|
|
"type": "sha1",
|
|
"uuid": "9a1dd185-31f7-41f9-bba4-bf1eed5a731b",
|
|
"value": "7a1ad75a1aa73ec72ee21b213fcca55d57a0cd58"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": true,
|
|
"object_relation": "filename",
|
|
"timestamp": "1565617843",
|
|
"to_ids": true,
|
|
"type": "filename",
|
|
"uuid": "ac4f43a0-9d8e-485b-bdd4-319188212fdd",
|
|
"value": "S_E_ARLETTE_MARENCO_NOTA_INFORMANDO_TER-MINO_DE_MISION_001.scr"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "File object describing a file with meta-information",
|
|
"meta-category": "file",
|
|
"name": "file",
|
|
"template_uuid": "688c46fb-5edb-40a3-8273-1af7923e2215",
|
|
"template_version": "16",
|
|
"timestamp": "1565617843",
|
|
"uuid": "c366394b-76d5-4c9b-a560-081a5370446b",
|
|
"Attribute": [
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha1",
|
|
"timestamp": "1565617843",
|
|
"to_ids": true,
|
|
"type": "sha1",
|
|
"uuid": "fe5b0c71-9bb3-4144-bfd5-2ad2b8860282",
|
|
"value": "8e0ac29b8bd0c086b20c23b254cf047aa30a0529"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": true,
|
|
"object_relation": "filename",
|
|
"timestamp": "1565617843",
|
|
"to_ids": true,
|
|
"type": "filename",
|
|
"uuid": "ba44c475-837c-478a-8603-8fb1d28fe9da",
|
|
"value": "07_1379.scr"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "File object describing a file with meta-information",
|
|
"meta-category": "file",
|
|
"name": "file",
|
|
"template_uuid": "688c46fb-5edb-40a3-8273-1af7923e2215",
|
|
"template_version": "16",
|
|
"timestamp": "1565617843",
|
|
"uuid": "1a9b7f44-10e5-471c-8489-09d7096dc753",
|
|
"Attribute": [
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha1",
|
|
"timestamp": "1565617844",
|
|
"to_ids": true,
|
|
"type": "sha1",
|
|
"uuid": "4cc1d55b-a99f-43c3-be9a-a61a8396999d",
|
|
"value": "91f2c7eed2ee92d11bc6b8fd8d3cba0b02c8d074"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": true,
|
|
"object_relation": "filename",
|
|
"timestamp": "1565617844",
|
|
"to_ids": true,
|
|
"type": "filename",
|
|
"uuid": "cf37c3d1-8c8c-40c3-ae78-fb55eeef5134",
|
|
"value": "Blason.scr"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "File object describing a file with meta-information",
|
|
"meta-category": "file",
|
|
"name": "file",
|
|
"template_uuid": "688c46fb-5edb-40a3-8273-1af7923e2215",
|
|
"template_version": "16",
|
|
"timestamp": "1565617844",
|
|
"uuid": "6f54982a-7a31-4544-a758-9693169e1abf",
|
|
"Attribute": [
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha1",
|
|
"timestamp": "1565617845",
|
|
"to_ids": true,
|
|
"type": "sha1",
|
|
"uuid": "5b74e4cf-6be5-4d49-b4ff-6f724c05d6bd",
|
|
"value": "97edcdfd6e674591c1e809381c7e68f11dfa81fc"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": true,
|
|
"object_relation": "filename",
|
|
"timestamp": "1565617845",
|
|
"to_ids": true,
|
|
"type": "filename",
|
|
"uuid": "e5c80890-c672-49d7-ba65-adcdd415199e",
|
|
"value": "08_1159.scr"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "File object describing a file with meta-information",
|
|
"meta-category": "file",
|
|
"name": "file",
|
|
"template_uuid": "688c46fb-5edb-40a3-8273-1af7923e2215",
|
|
"template_version": "16",
|
|
"timestamp": "1565617845",
|
|
"uuid": "4fe3a100-4b92-4752-8e50-c5c19ee6a301",
|
|
"Attribute": [
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha1",
|
|
"timestamp": "1565617845",
|
|
"to_ids": true,
|
|
"type": "sha1",
|
|
"uuid": "6ac5a7fd-797b-4ef8-b183-ac8d907fcc00",
|
|
"value": "9d65b55168526161a79f4743a37b1a7358c67037"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": true,
|
|
"object_relation": "filename",
|
|
"timestamp": "1565617845",
|
|
"to_ids": true,
|
|
"type": "filename",
|
|
"uuid": "f0c5a124-1526-485f-b31b-53a55d9ad003",
|
|
"value": "INSTRUCCIONES DEL JSO 08JUN19 docx.scr"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "File object describing a file with meta-information",
|
|
"meta-category": "file",
|
|
"name": "file",
|
|
"template_uuid": "688c46fb-5edb-40a3-8273-1af7923e2215",
|
|
"template_version": "16",
|
|
"timestamp": "1565617846",
|
|
"uuid": "13128f4c-5532-4b72-8d01-57a76a4d07c3",
|
|
"Attribute": [
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha1",
|
|
"timestamp": "1565617846",
|
|
"to_ids": true,
|
|
"type": "sha1",
|
|
"uuid": "2069d861-6785-4192-a954-39b754ee965e",
|
|
"value": "a94916f9696d861fe040891634b3f2da09557f13"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": true,
|
|
"object_relation": "filename",
|
|
"timestamp": "1565617846",
|
|
"to_ids": true,
|
|
"type": "filename",
|
|
"uuid": "10428c64-ba83-4a23-b239-57fa2eb2baec",
|
|
"value": "REPORTE OPERACIONAL 10JUN19 pdf.scr"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "File object describing a file with meta-information",
|
|
"meta-category": "file",
|
|
"name": "file",
|
|
"template_uuid": "688c46fb-5edb-40a3-8273-1af7923e2215",
|
|
"template_version": "16",
|
|
"timestamp": "1565617846",
|
|
"uuid": "f63769dd-f98c-497e-a91f-99d8674be835",
|
|
"Attribute": [
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha1",
|
|
"timestamp": "1565617846",
|
|
"to_ids": true,
|
|
"type": "sha1",
|
|
"uuid": "e2346c8a-7790-4e17-b129-874821fdb085",
|
|
"value": "b451f623fe9f315eb886b83f27139fc236a07ec9"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": true,
|
|
"object_relation": "filename",
|
|
"timestamp": "1565617846",
|
|
"to_ids": true,
|
|
"type": "filename",
|
|
"uuid": "b2948c7f-c775-47e4-82c8-36d3acc65c9c",
|
|
"value": "20190611101428.scr"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "File object describing a file with meta-information",
|
|
"meta-category": "file",
|
|
"name": "file",
|
|
"template_uuid": "688c46fb-5edb-40a3-8273-1af7923e2215",
|
|
"template_version": "16",
|
|
"timestamp": "1565617847",
|
|
"uuid": "981f4ee3-dfc4-42ba-927f-6117c0001c8c",
|
|
"Attribute": [
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha1",
|
|
"timestamp": "1565617847",
|
|
"to_ids": true,
|
|
"type": "sha1",
|
|
"uuid": "352e92fc-da3d-4a03-ac24-2bea2c900816",
|
|
"value": "c39b9d966aed0372619b3989995ab9ad12f94d38"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": true,
|
|
"object_relation": "filename",
|
|
"timestamp": "1565617847",
|
|
"to_ids": true,
|
|
"type": "filename",
|
|
"uuid": "3d765af7-aaea-4270-a127-05f1e6fdc769",
|
|
"value": "NOTA_CICR_00079.scr"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "File object describing a file with meta-information",
|
|
"meta-category": "file",
|
|
"name": "file",
|
|
"template_uuid": "688c46fb-5edb-40a3-8273-1af7923e2215",
|
|
"template_version": "16",
|
|
"timestamp": "1565617847",
|
|
"uuid": "c58c0483-3472-4669-9d00-cae7a8fff636",
|
|
"Attribute": [
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha1",
|
|
"timestamp": "1565617847",
|
|
"to_ids": true,
|
|
"type": "sha1",
|
|
"uuid": "bec04a56-03c5-4335-919a-f2a6cb69878f",
|
|
"value": "cf10e0313177ff4c9c588232218078eb870c0079"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": true,
|
|
"object_relation": "filename",
|
|
"timestamp": "1565617848",
|
|
"to_ids": true,
|
|
"type": "filename",
|
|
"uuid": "56ddfb91-08e9-4919-91c3-135de9de256e",
|
|
"value": "BOLETA DE PERMISO NELSON GUERERE docx.scr"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "File object describing a file with meta-information",
|
|
"meta-category": "file",
|
|
"name": "file",
|
|
"template_uuid": "688c46fb-5edb-40a3-8273-1af7923e2215",
|
|
"template_version": "16",
|
|
"timestamp": "1565617848",
|
|
"uuid": "111cb2a8-af64-43a1-8afc-ec6a7c6a5c74",
|
|
"Attribute": [
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha1",
|
|
"timestamp": "1565617848",
|
|
"to_ids": true,
|
|
"type": "sha1",
|
|
"uuid": "41b5440a-7b70-4c3a-b875-53ec3c631fd7",
|
|
"value": "e8bbcb0f6538d1543bfa3f7a66f20155ebc2bcc8"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": true,
|
|
"object_relation": "filename",
|
|
"timestamp": "1565617848",
|
|
"to_ids": true,
|
|
"type": "filename",
|
|
"uuid": "3b60cb71-4e88-4114-af7e-bbaf8147b397",
|
|
"value": "JUNIO_27_PROPUESTA_CLARO_RENOVACION.scr"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "File object describing a file with meta-information",
|
|
"meta-category": "file",
|
|
"name": "file",
|
|
"template_uuid": "688c46fb-5edb-40a3-8273-1af7923e2215",
|
|
"template_version": "16",
|
|
"timestamp": "1565617849",
|
|
"uuid": "b875174e-4422-4899-83c8-98d0b805da24",
|
|
"Attribute": [
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha1",
|
|
"timestamp": "1565617849",
|
|
"to_ids": true,
|
|
"type": "sha1",
|
|
"uuid": "755680d5-a955-44a7-8363-3cf141b49ca2",
|
|
"value": "ea3d823df9f0e41ad1da2fd3492b418693bed8bd"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": true,
|
|
"object_relation": "filename",
|
|
"timestamp": "1565617849",
|
|
"to_ids": true,
|
|
"type": "filename",
|
|
"uuid": "a0585491-0298-43ee-918d-fda0fce73c8b",
|
|
"value": "20190611101331 pdf.scr"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "File object describing a file with meta-information",
|
|
"meta-category": "file",
|
|
"name": "file",
|
|
"template_uuid": "688c46fb-5edb-40a3-8273-1af7923e2215",
|
|
"template_version": "16",
|
|
"timestamp": "1565617849",
|
|
"uuid": "661c06e3-3f9d-4142-a37c-b516ec9721e6",
|
|
"Attribute": [
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha1",
|
|
"timestamp": "1565617850",
|
|
"to_ids": true,
|
|
"type": "sha1",
|
|
"uuid": "e12b074b-9301-4893-9bfd-99121a497119",
|
|
"value": "eb82401ce6b2497aeb1fc666697d7d9ce66e4d5b"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": true,
|
|
"object_relation": "filename",
|
|
"timestamp": "1565617850",
|
|
"to_ids": true,
|
|
"type": "filename",
|
|
"uuid": "0ecd550d-d9fc-46b5-ba1f-06c1a257c482",
|
|
"value": "Asimilacion.scr"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "File object describing a file with meta-information",
|
|
"meta-category": "file",
|
|
"name": "file",
|
|
"template_uuid": "688c46fb-5edb-40a3-8273-1af7923e2215",
|
|
"template_version": "16",
|
|
"timestamp": "1565617850",
|
|
"uuid": "d2030374-8a32-48dd-b565-da4f7e9de8eb",
|
|
"Attribute": [
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha1",
|
|
"timestamp": "1565617850",
|
|
"to_ids": true,
|
|
"type": "sha1",
|
|
"uuid": "40e9625d-cf6f-490f-91ec-96fba4370de1",
|
|
"value": "1b3723651e1d321d4f34f2a243d7751d17288257"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": true,
|
|
"object_relation": "filename",
|
|
"timestamp": "1565617850",
|
|
"to_ids": true,
|
|
"type": "filename",
|
|
"uuid": "9a88652b-f58b-4934-bc75-42b78b24a115",
|
|
"value": "_hashlbi.pyw"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "File object describing a file with meta-information",
|
|
"meta-category": "file",
|
|
"name": "file",
|
|
"template_uuid": "688c46fb-5edb-40a3-8273-1af7923e2215",
|
|
"template_version": "16",
|
|
"timestamp": "1565617850",
|
|
"uuid": "6dab62aa-030a-4e3b-a926-9820679ff41a",
|
|
"Attribute": [
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha1",
|
|
"timestamp": "1565617851",
|
|
"to_ids": true,
|
|
"type": "sha1",
|
|
"uuid": "69ddfaaf-da3e-47bb-88a4-1b095ca9cd2a",
|
|
"value": "7ffb9c7da20c536b694e78538b65726eacb1b055"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": true,
|
|
"object_relation": "filename",
|
|
"timestamp": "1565617851",
|
|
"to_ids": true,
|
|
"type": "filename",
|
|
"uuid": "7812f8ba-b4bc-431d-b67d-9ef9c83f779a",
|
|
"value": "_hashlbi.pyw"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "File object describing a file with meta-information",
|
|
"meta-category": "file",
|
|
"name": "file",
|
|
"template_uuid": "688c46fb-5edb-40a3-8273-1af7923e2215",
|
|
"template_version": "16",
|
|
"timestamp": "1565617851",
|
|
"uuid": "f0543d5a-af97-4bc8-8d0b-9101a0c05f34",
|
|
"Attribute": [
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha1",
|
|
"timestamp": "1565617851",
|
|
"to_ids": true,
|
|
"type": "sha1",
|
|
"uuid": "ad0ea58c-eb7c-44a0-9321-124769ab8b7f",
|
|
"value": "b1adf4b46350fb801ce54da9c93a4ef79674f3f5"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": true,
|
|
"object_relation": "filename",
|
|
"timestamp": "1565617851",
|
|
"to_ids": true,
|
|
"type": "filename",
|
|
"uuid": "8eb2e5ee-6b0e-4468-a3a1-55cf14a24347",
|
|
"value": "_hashlbi.pyw"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "File object describing a file with meta-information",
|
|
"meta-category": "file",
|
|
"name": "file",
|
|
"template_uuid": "688c46fb-5edb-40a3-8273-1af7923e2215",
|
|
"template_version": "16",
|
|
"timestamp": "1565617851",
|
|
"uuid": "dec8fd50-628a-4eb2-ba23-557d57eb9535",
|
|
"Attribute": [
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha1",
|
|
"timestamp": "1565617852",
|
|
"to_ids": true,
|
|
"type": "sha1",
|
|
"uuid": "6be79300-e5df-4685-87d3-9abb63df22cb",
|
|
"value": "0c33b75f6c4fc0413abdbcda1c5e18c907f13dc3"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": true,
|
|
"object_relation": "filename",
|
|
"timestamp": "1565617852",
|
|
"to_ids": true,
|
|
"type": "filename",
|
|
"uuid": "4b88f16f-8c57-4c66-9f64-5e83277b3873",
|
|
"value": "_bsdbd.pyw"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "File object describing a file with meta-information",
|
|
"meta-category": "file",
|
|
"name": "file",
|
|
"template_uuid": "688c46fb-5edb-40a3-8273-1af7923e2215",
|
|
"template_version": "16",
|
|
"timestamp": "1565617852",
|
|
"uuid": "6929d2e4-27f5-464a-8b4b-2ae80e9ea564",
|
|
"Attribute": [
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha1",
|
|
"timestamp": "1565617852",
|
|
"to_ids": true,
|
|
"type": "sha1",
|
|
"uuid": "48d91639-8fd1-4f68-ad21-9ca78059a54a",
|
|
"value": "314d9b4c25dd69453d86e4c7062dce6dedda0533"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": true,
|
|
"object_relation": "filename",
|
|
"timestamp": "1565617852",
|
|
"to_ids": true,
|
|
"type": "filename",
|
|
"uuid": "593edc9a-ebed-4557-af97-4c5a9b19c74f",
|
|
"value": "_bsdbd.pyw"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "File object describing a file with meta-information",
|
|
"meta-category": "file",
|
|
"name": "file",
|
|
"template_uuid": "688c46fb-5edb-40a3-8273-1af7923e2215",
|
|
"template_version": "16",
|
|
"timestamp": "1565617853",
|
|
"uuid": "1edaf6f6-1670-4f0b-aa3c-72c7a51e211b",
|
|
"Attribute": [
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha1",
|
|
"timestamp": "1565617853",
|
|
"to_ids": true,
|
|
"type": "sha1",
|
|
"uuid": "8b49bf5d-bb4c-48f5-bef4-5d79bfb6dfa8",
|
|
"value": "d4cf22f3db78bdc1ceb55431857d88166ce677d4"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": true,
|
|
"object_relation": "filename",
|
|
"timestamp": "1565617853",
|
|
"to_ids": true,
|
|
"type": "filename",
|
|
"uuid": "471240f6-cf98-4b66-b89f-346a92b54b7e",
|
|
"value": "_bsdbd.pyw"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "File object describing a file with meta-information",
|
|
"meta-category": "file",
|
|
"name": "file",
|
|
"template_uuid": "688c46fb-5edb-40a3-8273-1af7923e2215",
|
|
"template_version": "16",
|
|
"timestamp": "1565617853",
|
|
"uuid": "1a037ed0-53ea-42a7-8694-62f4a728a7cd",
|
|
"Attribute": [
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha1",
|
|
"timestamp": "1565617853",
|
|
"to_ids": true,
|
|
"type": "sha1",
|
|
"uuid": "f7c65e8b-0081-4235-bc01-e5e94366b2f0",
|
|
"value": "26fb301af7393b5e564b8c802f5795edebd7cecf"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": true,
|
|
"object_relation": "filename",
|
|
"timestamp": "1565617853",
|
|
"to_ids": true,
|
|
"type": "filename",
|
|
"uuid": "b2daf13e-e804-4305-ad1d-64a8fd0e5f40",
|
|
"value": "_clypes.pyw"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "File object describing a file with meta-information",
|
|
"meta-category": "file",
|
|
"name": "file",
|
|
"template_uuid": "688c46fb-5edb-40a3-8273-1af7923e2215",
|
|
"template_version": "16",
|
|
"timestamp": "1565617853",
|
|
"uuid": "7ac1b131-48fc-41b2-894c-c4c3c0852a4b",
|
|
"Attribute": [
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha1",
|
|
"timestamp": "1565617854",
|
|
"to_ids": true,
|
|
"type": "sha1",
|
|
"uuid": "82b699f4-78e4-4ce4-9743-292adc2dad8a",
|
|
"value": "979859b5a177650ef0549c81fd66d36e9dea8078"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": true,
|
|
"object_relation": "filename",
|
|
"timestamp": "1565617854",
|
|
"to_ids": true,
|
|
"type": "filename",
|
|
"uuid": "843df2a2-ee49-4266-bc70-7b9fedb7865a",
|
|
"value": "_clypes.pyw"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "File object describing a file with meta-information",
|
|
"meta-category": "file",
|
|
"name": "file",
|
|
"template_uuid": "688c46fb-5edb-40a3-8273-1af7923e2215",
|
|
"template_version": "16",
|
|
"timestamp": "1565617854",
|
|
"uuid": "14924a9c-5c0f-425d-9531-fa15c3f1c817",
|
|
"Attribute": [
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha1",
|
|
"timestamp": "1565617855",
|
|
"to_ids": true,
|
|
"type": "sha1",
|
|
"uuid": "bb6c8856-3936-4a47-b50a-60efac651e1d",
|
|
"value": "a07e38df9887ea7811369cd72c57fd6d44523cd6"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": true,
|
|
"object_relation": "filename",
|
|
"timestamp": "1565617855",
|
|
"to_ids": true,
|
|
"type": "filename",
|
|
"uuid": "bc9073e5-f458-4fd6-bb5d-6bcfcecd7721",
|
|
"value": "_clypes.pyw"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "File object describing a file with meta-information",
|
|
"meta-category": "file",
|
|
"name": "file",
|
|
"template_uuid": "688c46fb-5edb-40a3-8273-1af7923e2215",
|
|
"template_version": "16",
|
|
"timestamp": "1565617855",
|
|
"uuid": "8e9c45d9-800f-45f9-b6bf-bbde6f3649e4",
|
|
"Attribute": [
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha1",
|
|
"timestamp": "1565617855",
|
|
"to_ids": true,
|
|
"type": "sha1",
|
|
"uuid": "fc3bbe47-cf17-447d-b691-64adb57ceb60",
|
|
"value": "07e383e9ff04f587769845306dc4bfe75630baaa"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": true,
|
|
"object_relation": "filename",
|
|
"timestamp": "1565617856",
|
|
"to_ids": true,
|
|
"type": "filename",
|
|
"uuid": "2c70554d-7b31-42a1-bdd3-5f34c15f420f",
|
|
"value": "_elementree.pyw"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "File object describing a file with meta-information",
|
|
"meta-category": "file",
|
|
"name": "file",
|
|
"template_uuid": "688c46fb-5edb-40a3-8273-1af7923e2215",
|
|
"template_version": "16",
|
|
"timestamp": "1565617856",
|
|
"uuid": "55835c18-a3c4-456a-be2e-fafce0254df0",
|
|
"Attribute": [
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha1",
|
|
"timestamp": "1565617856",
|
|
"to_ids": true,
|
|
"type": "sha1",
|
|
"uuid": "95ad13df-0fc2-4b9f-b451-7191568eb700",
|
|
"value": "3b6f5cb20ff3ac0ee3813a68a937aae92ebc46d3"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": true,
|
|
"object_relation": "filename",
|
|
"timestamp": "1565617856",
|
|
"to_ids": true,
|
|
"type": "filename",
|
|
"uuid": "5eb11aa2-a481-45d1-b750-b58393c4730f",
|
|
"value": "_elementree.pyw"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "File object describing a file with meta-information",
|
|
"meta-category": "file",
|
|
"name": "file",
|
|
"template_uuid": "688c46fb-5edb-40a3-8273-1af7923e2215",
|
|
"template_version": "16",
|
|
"timestamp": "1565617856",
|
|
"uuid": "3e0f2078-e764-413e-98ff-5113ef415da8",
|
|
"Attribute": [
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha1",
|
|
"timestamp": "1565617856",
|
|
"to_ids": true,
|
|
"type": "sha1",
|
|
"uuid": "8964bcb9-83ec-4729-b07b-0f163ab18006",
|
|
"value": "56765b7511372a8e9be017f48a764d141f485474"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": true,
|
|
"object_relation": "filename",
|
|
"timestamp": "1565617856",
|
|
"to_ids": true,
|
|
"type": "filename",
|
|
"uuid": "b212dbed-b28a-4426-b9cc-b49597539f1b",
|
|
"value": "_elementree.pyw"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "File object describing a file with meta-information",
|
|
"meta-category": "file",
|
|
"name": "file",
|
|
"template_uuid": "688c46fb-5edb-40a3-8273-1af7923e2215",
|
|
"template_version": "16",
|
|
"timestamp": "1565617857",
|
|
"uuid": "31fe0063-09d0-4b0a-8188-d46e5bb46307",
|
|
"Attribute": [
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha1",
|
|
"timestamp": "1565617857",
|
|
"to_ids": true,
|
|
"type": "sha1",
|
|
"uuid": "e800f768-a9a7-4734-9155-0d76a3176dfa",
|
|
"value": "cf2dc40926d8747aec572dfd711bbfd766aadb10"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": true,
|
|
"object_relation": "filename",
|
|
"timestamp": "1565617857",
|
|
"to_ids": true,
|
|
"type": "filename",
|
|
"uuid": "7e988d02-a7ff-4515-9239-3152c7535333",
|
|
"value": "_elementree.pyw"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "File object describing a file with meta-information",
|
|
"meta-category": "file",
|
|
"name": "file",
|
|
"template_uuid": "688c46fb-5edb-40a3-8273-1af7923e2215",
|
|
"template_version": "16",
|
|
"timestamp": "1565617857",
|
|
"uuid": "1b8256fb-12f9-4029-9e33-68d895c4e754",
|
|
"Attribute": [
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha1",
|
|
"timestamp": "1565617857",
|
|
"to_ids": true,
|
|
"type": "sha1",
|
|
"uuid": "61b20448-75bc-48d8-aaab-f081b57e299f",
|
|
"value": "6b42091ca2f89a59f4e27e30acdacf32eb83f824"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": true,
|
|
"object_relation": "filename",
|
|
"timestamp": "1565617858",
|
|
"to_ids": true,
|
|
"type": "filename",
|
|
"uuid": "76bff873-5d33-4c69-9c92-c5c0ee0ef8b8",
|
|
"value": "_mssi.pyw"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "File object describing a file with meta-information",
|
|
"meta-category": "file",
|
|
"name": "file",
|
|
"template_uuid": "688c46fb-5edb-40a3-8273-1af7923e2215",
|
|
"template_version": "16",
|
|
"timestamp": "1565617858",
|
|
"uuid": "1c6174ac-7253-4918-9932-4c25d16b7fa9",
|
|
"Attribute": [
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha1",
|
|
"timestamp": "1565617858",
|
|
"to_ids": true,
|
|
"type": "sha1",
|
|
"uuid": "47b381b5-a1b2-48aa-b1f0-de7bd6eca2cd",
|
|
"value": "708f159f2cfe22ff0c4464f2fedaa0501868bdd8"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": true,
|
|
"object_relation": "filename",
|
|
"timestamp": "1565617858",
|
|
"to_ids": true,
|
|
"type": "filename",
|
|
"uuid": "31895189-5d7e-4b6b-a3df-cee841b402ac",
|
|
"value": "_mssi.pyw"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "File object describing a file with meta-information",
|
|
"meta-category": "file",
|
|
"name": "file",
|
|
"template_uuid": "688c46fb-5edb-40a3-8273-1af7923e2215",
|
|
"template_version": "16",
|
|
"timestamp": "1565617858",
|
|
"uuid": "94508ba6-a7b7-45a8-a02f-18b59d6f1774",
|
|
"Attribute": [
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha1",
|
|
"timestamp": "1565617859",
|
|
"to_ids": true,
|
|
"type": "sha1",
|
|
"uuid": "c8fd39d1-6cb8-428f-bfd4-8e5113daca76",
|
|
"value": "de639618b550dbe9071e999aaa5b4fc81f63a5a6"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": true,
|
|
"object_relation": "filename",
|
|
"timestamp": "1565617859",
|
|
"to_ids": true,
|
|
"type": "filename",
|
|
"uuid": "ac2958bb-ffda-4c6e-9f43-b7a340a50bb1",
|
|
"value": "_mssi.pyw"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "File object describing a file with meta-information",
|
|
"meta-category": "file",
|
|
"name": "file",
|
|
"template_uuid": "688c46fb-5edb-40a3-8273-1af7923e2215",
|
|
"template_version": "16",
|
|
"timestamp": "1565617859",
|
|
"uuid": "8ee128fd-b41e-4e8b-a333-0597b474be67",
|
|
"Attribute": [
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha1",
|
|
"timestamp": "1565617859",
|
|
"to_ids": true,
|
|
"type": "sha1",
|
|
"uuid": "846fa70d-960b-43a1-9ee0-6e68096d3b4a",
|
|
"value": "0b6f61af3e2c6551f15e0f888177eec91f20ba99"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": true,
|
|
"object_relation": "filename",
|
|
"timestamp": "1565617859",
|
|
"to_ids": true,
|
|
"type": "filename",
|
|
"uuid": "f9725948-18a9-473e-b4c4-5491df0f6ae1",
|
|
"value": "_multiproccessing.pyw"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "File object describing a file with meta-information",
|
|
"meta-category": "file",
|
|
"name": "file",
|
|
"template_uuid": "688c46fb-5edb-40a3-8273-1af7923e2215",
|
|
"template_version": "16",
|
|
"timestamp": "1565617860",
|
|
"uuid": "7935732e-59a4-4383-9fc9-546da0ea26f9",
|
|
"Attribute": [
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha1",
|
|
"timestamp": "1565617860",
|
|
"to_ids": true,
|
|
"type": "sha1",
|
|
"uuid": "e69cb341-3b77-40c6-a580-33d48f575a3e",
|
|
"value": "76aabc0af5d487a80bcba19555191b46766139fa"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": true,
|
|
"object_relation": "filename",
|
|
"timestamp": "1565617860",
|
|
"to_ids": true,
|
|
"type": "filename",
|
|
"uuid": "c4c15c58-ef74-41a3-8643-661eb26b9f78",
|
|
"value": "_multiproccessing.pyw"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "File object describing a file with meta-information",
|
|
"meta-category": "file",
|
|
"name": "file",
|
|
"template_uuid": "688c46fb-5edb-40a3-8273-1af7923e2215",
|
|
"template_version": "16",
|
|
"timestamp": "1565617860",
|
|
"uuid": "52156c2a-4c6a-450f-981c-433a42dfb7aa",
|
|
"Attribute": [
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha1",
|
|
"timestamp": "1565617860",
|
|
"to_ids": true,
|
|
"type": "sha1",
|
|
"uuid": "d6551e14-8975-4907-9557-68c908ca78fb",
|
|
"value": "7ff87649ca1d9178a02cd9942856d1b590652c6e"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": true,
|
|
"object_relation": "filename",
|
|
"timestamp": "1565617860",
|
|
"to_ids": true,
|
|
"type": "filename",
|
|
"uuid": "fdf29579-f824-44b2-ba4b-baa62fc7587a",
|
|
"value": "_multiproccessing.pyw"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "File object describing a file with meta-information",
|
|
"meta-category": "file",
|
|
"name": "file",
|
|
"template_uuid": "688c46fb-5edb-40a3-8273-1af7923e2215",
|
|
"template_version": "16",
|
|
"timestamp": "1565617861",
|
|
"uuid": "19082ad9-3e50-49f4-9018-78ff4f222c7f",
|
|
"Attribute": [
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha1",
|
|
"timestamp": "1565617861",
|
|
"to_ids": true,
|
|
"type": "sha1",
|
|
"uuid": "6e7e9954-22fa-42d4-815b-fd1cdd420088",
|
|
"value": "8692eb1e620f2bcddaf28f0cb726cec2aa1c230d"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": true,
|
|
"object_relation": "filename",
|
|
"timestamp": "1565617861",
|
|
"to_ids": true,
|
|
"type": "filename",
|
|
"uuid": "3717f5c3-d493-4dea-990b-65ff2d14293f",
|
|
"value": "_multiproccessing.pyw"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "File object describing a file with meta-information",
|
|
"meta-category": "file",
|
|
"name": "file",
|
|
"template_uuid": "688c46fb-5edb-40a3-8273-1af7923e2215",
|
|
"template_version": "16",
|
|
"timestamp": "1565617861",
|
|
"uuid": "683c399f-d3c8-4f32-8c8c-c3df2989c515",
|
|
"Attribute": [
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha1",
|
|
"timestamp": "1565617861",
|
|
"to_ids": true,
|
|
"type": "sha1",
|
|
"uuid": "2345afb3-0e80-4766-bc26-5603c727fec5",
|
|
"value": "8af19aa3f18cb35f12ee3966931e11799c3ac5a4"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": true,
|
|
"object_relation": "filename",
|
|
"timestamp": "1565617861",
|
|
"to_ids": true,
|
|
"type": "filename",
|
|
"uuid": "e4220036-8ed2-41c2-b540-bc223fbd22a3",
|
|
"value": "_multiproccessing.pyw"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "File object describing a file with meta-information",
|
|
"meta-category": "file",
|
|
"name": "file",
|
|
"template_uuid": "688c46fb-5edb-40a3-8273-1af7923e2215",
|
|
"template_version": "16",
|
|
"timestamp": "1565617861",
|
|
"uuid": "7647bee2-58a4-4293-94f5-1540cbe51994",
|
|
"Attribute": [
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha1",
|
|
"timestamp": "1565617862",
|
|
"to_ids": true,
|
|
"type": "sha1",
|
|
"uuid": "5e345cdf-3a2a-4ecc-a5f7-52ac25a683f9",
|
|
"value": "e1bc4ec7f82fa06924dc4b43fbbb485d8c86d9cd"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": true,
|
|
"object_relation": "filename",
|
|
"timestamp": "1565617862",
|
|
"to_ids": true,
|
|
"type": "filename",
|
|
"uuid": "a4653bfd-3386-4324-8cf7-c4d12f34f272",
|
|
"value": "_multiproccessing.pyw"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "File object describing a file with meta-information",
|
|
"meta-category": "file",
|
|
"name": "file",
|
|
"template_uuid": "688c46fb-5edb-40a3-8273-1af7923e2215",
|
|
"template_version": "16",
|
|
"timestamp": "1565619037",
|
|
"uuid": "a42282ff-d32e-48d7-afda-ca8056c40b2c",
|
|
"Attribute": [
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha1",
|
|
"timestamp": "1565619037",
|
|
"to_ids": true,
|
|
"type": "sha1",
|
|
"uuid": "3c097953-79a9-458a-ae6e-4fdaf6ef5736",
|
|
"value": "a19648a5576e0b9fc449d89addc569ba1350ecff"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "File object describing a file with meta-information",
|
|
"meta-category": "file",
|
|
"name": "file",
|
|
"template_uuid": "688c46fb-5edb-40a3-8273-1af7923e2215",
|
|
"template_version": "16",
|
|
"timestamp": "1565619038",
|
|
"uuid": "70f89732-c74b-4b50-860e-4fdcfbcab28b",
|
|
"Attribute": [
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha1",
|
|
"timestamp": "1565619038",
|
|
"to_ids": true,
|
|
"type": "sha1",
|
|
"uuid": "5fba5930-26ee-4abc-a48f-128b5cc4e427",
|
|
"value": "442e6cc28d118cfaf1a5482e2000c7dc00d9a7b9"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "File object describing a file with meta-information",
|
|
"meta-category": "file",
|
|
"name": "file",
|
|
"template_uuid": "688c46fb-5edb-40a3-8273-1af7923e2215",
|
|
"template_version": "16",
|
|
"timestamp": "1565619038",
|
|
"uuid": "cc71714f-98d6-4d0e-9047-fb16480a3d65",
|
|
"Attribute": [
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha1",
|
|
"timestamp": "1565619038",
|
|
"to_ids": true,
|
|
"type": "sha1",
|
|
"uuid": "66073204-9057-4966-8d47-b050276ebfac",
|
|
"value": "212f3697117d17ec3f299d037845cf3db20ce88a"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "File object describing a file with meta-information",
|
|
"meta-category": "file",
|
|
"name": "file",
|
|
"template_uuid": "688c46fb-5edb-40a3-8273-1af7923e2215",
|
|
"template_version": "17",
|
|
"timestamp": "1566552819",
|
|
"uuid": "5755a9b4-0b6d-4edb-b41d-1fa6eebf677b",
|
|
"ObjectReference": [
|
|
{
|
|
"comment": "",
|
|
"object_uuid": "5755a9b4-0b6d-4edb-b41d-1fa6eebf677b",
|
|
"referenced_uuid": "57e72629-e86a-4591-b071-dc72988a11dd",
|
|
"relationship_type": "analysed-with",
|
|
"timestamp": "1566552841",
|
|
"uuid": "5d5fb309-696c-4c35-ac58-4ed0950d210f"
|
|
}
|
|
],
|
|
"Attribute": [
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "md5",
|
|
"timestamp": "1565607619",
|
|
"to_ids": true,
|
|
"type": "md5",
|
|
"uuid": "66834ce4-6e80-413d-b875-5af7fac16fb4",
|
|
"value": "c8ca25bd428818277968ac3239cfc573"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha1",
|
|
"timestamp": "1565607619",
|
|
"to_ids": true,
|
|
"type": "sha1",
|
|
"uuid": "77cbf66d-39b6-4621-8ba3-6eccbd0947ea",
|
|
"value": "a42756280aa352f4612bed85aabf7f3267e676c2"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha256",
|
|
"timestamp": "1565607619",
|
|
"to_ids": true,
|
|
"type": "sha256",
|
|
"uuid": "5a4779dd-c184-4bfd-bb92-67ca5dbd4778",
|
|
"value": "3cf929b0a52e297d8d24af326f94f7114913a285f2f859ba7d4be38bd425fedd"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "VirusTotal report",
|
|
"meta-category": "misc",
|
|
"name": "virustotal-report",
|
|
"template_uuid": "d7dd0154-e04f-4c34-a2fb-79f3a3a52aa4",
|
|
"template_version": "2",
|
|
"timestamp": "1566552820",
|
|
"uuid": "57e72629-e86a-4591-b071-dc72988a11dd",
|
|
"Attribute": [
|
|
{
|
|
"category": "Other",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "last-submission",
|
|
"timestamp": "1565607619",
|
|
"to_ids": false,
|
|
"type": "datetime",
|
|
"uuid": "16e71265-a838-4f9e-99b4-48db8a7350d1",
|
|
"value": "2019-08-07T06:30:18"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "permalink",
|
|
"timestamp": "1565607619",
|
|
"to_ids": false,
|
|
"type": "link",
|
|
"uuid": "170d2949-1c3d-48ac-a9cc-77caa6912374",
|
|
"value": "https://www.virustotal.com/file/3cf929b0a52e297d8d24af326f94f7114913a285f2f859ba7d4be38bd425fedd/analysis/1565159418/"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": true,
|
|
"object_relation": "detection-ratio",
|
|
"timestamp": "1565607619",
|
|
"to_ids": false,
|
|
"type": "text",
|
|
"uuid": "8e373bd7-6180-42ba-b287-0f4813c31d2d",
|
|
"value": "8/67"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "File object describing a file with meta-information",
|
|
"meta-category": "file",
|
|
"name": "file",
|
|
"template_uuid": "688c46fb-5edb-40a3-8273-1af7923e2215",
|
|
"template_version": "17",
|
|
"timestamp": "1566552821",
|
|
"uuid": "90ba774e-2d3c-4681-aa3c-2f72306df89e",
|
|
"ObjectReference": [
|
|
{
|
|
"comment": "",
|
|
"object_uuid": "90ba774e-2d3c-4681-aa3c-2f72306df89e",
|
|
"referenced_uuid": "46245f77-2cae-4804-a5d1-c6c09bb69ef8",
|
|
"relationship_type": "analysed-with",
|
|
"timestamp": "1566552841",
|
|
"uuid": "5d5fb309-12a4-4c10-b827-4d33950d210f"
|
|
}
|
|
],
|
|
"Attribute": [
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "md5",
|
|
"timestamp": "1565607617",
|
|
"to_ids": true,
|
|
"type": "md5",
|
|
"uuid": "149872d2-aa7f-47c4-9181-bc4621a6f69f",
|
|
"value": "3239f2d8acee4742f9b4d919e61b8983"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha1",
|
|
"timestamp": "1565607617",
|
|
"to_ids": true,
|
|
"type": "sha1",
|
|
"uuid": "1491c232-3f1c-48a1-91a1-fd73064e4daa",
|
|
"value": "4899a2c2ceceb92d2cc4ed17d092d1d599379284"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha256",
|
|
"timestamp": "1565607617",
|
|
"to_ids": true,
|
|
"type": "sha256",
|
|
"uuid": "fb8ed01c-2198-4745-a91e-ec561112f9d6",
|
|
"value": "2e3dc1c6b6c5d9015a18d6ee3578381eeefffd5126abf87635f448006c63f58c"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "VirusTotal report",
|
|
"meta-category": "misc",
|
|
"name": "virustotal-report",
|
|
"template_uuid": "d7dd0154-e04f-4c34-a2fb-79f3a3a52aa4",
|
|
"template_version": "2",
|
|
"timestamp": "1566552821",
|
|
"uuid": "46245f77-2cae-4804-a5d1-c6c09bb69ef8",
|
|
"Attribute": [
|
|
{
|
|
"category": "Other",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "last-submission",
|
|
"timestamp": "1565607617",
|
|
"to_ids": false,
|
|
"type": "datetime",
|
|
"uuid": "8ac9b96c-780d-43c5-ab9a-e5d07d149620",
|
|
"value": "2019-08-09T16:22:18"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "permalink",
|
|
"timestamp": "1565607617",
|
|
"to_ids": false,
|
|
"type": "link",
|
|
"uuid": "a788f6e0-08f3-4844-aab6-a9b7c5e02386",
|
|
"value": "https://www.virustotal.com/file/2e3dc1c6b6c5d9015a18d6ee3578381eeefffd5126abf87635f448006c63f58c/analysis/1565367738/"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": true,
|
|
"object_relation": "detection-ratio",
|
|
"timestamp": "1565607617",
|
|
"to_ids": false,
|
|
"type": "text",
|
|
"uuid": "1e920924-74ad-4ecd-9964-8b93c3869666",
|
|
"value": "14/66"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "File object describing a file with meta-information",
|
|
"meta-category": "file",
|
|
"name": "file",
|
|
"template_uuid": "688c46fb-5edb-40a3-8273-1af7923e2215",
|
|
"template_version": "17",
|
|
"timestamp": "1566552821",
|
|
"uuid": "f23f0b2b-985e-4e21-80dc-e59c3c28c45f",
|
|
"ObjectReference": [
|
|
{
|
|
"comment": "",
|
|
"object_uuid": "f23f0b2b-985e-4e21-80dc-e59c3c28c45f",
|
|
"referenced_uuid": "0da0d94b-fd1a-48df-a95f-33f250100eb4",
|
|
"relationship_type": "analysed-with",
|
|
"timestamp": "1566552841",
|
|
"uuid": "5d5fb309-6d6c-44e1-a319-4c46950d210f"
|
|
}
|
|
],
|
|
"Attribute": [
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "md5",
|
|
"timestamp": "1565607620",
|
|
"to_ids": true,
|
|
"type": "md5",
|
|
"uuid": "80daa389-0b51-4f68-8640-04481da89db5",
|
|
"value": "4bfd79b34234060f9d4dc26bd23c67c9"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha1",
|
|
"timestamp": "1565607620",
|
|
"to_ids": true,
|
|
"type": "sha1",
|
|
"uuid": "33f5ee8e-4398-4d2c-a326-d8db2d139623",
|
|
"value": "a97cf05ad7f3102bde45e4b4947ed435efea1968"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha256",
|
|
"timestamp": "1565607620",
|
|
"to_ids": true,
|
|
"type": "sha256",
|
|
"uuid": "6dfd83f1-a49e-43ee-9d3f-f21310d1d0dd",
|
|
"value": "1b6926c9fcea7681c6ed4f62b404e8a1c332fbbc26e872ddb53afc6e818f1cd4"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "VirusTotal report",
|
|
"meta-category": "misc",
|
|
"name": "virustotal-report",
|
|
"template_uuid": "d7dd0154-e04f-4c34-a2fb-79f3a3a52aa4",
|
|
"template_version": "2",
|
|
"timestamp": "1566552821",
|
|
"uuid": "0da0d94b-fd1a-48df-a95f-33f250100eb4",
|
|
"Attribute": [
|
|
{
|
|
"category": "Other",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "last-submission",
|
|
"timestamp": "1565607620",
|
|
"to_ids": false,
|
|
"type": "datetime",
|
|
"uuid": "a54da0c4-02da-4ca0-8f17-bdb8ee6eea1d",
|
|
"value": "2019-08-06T00:39:40"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "permalink",
|
|
"timestamp": "1565607620",
|
|
"to_ids": false,
|
|
"type": "link",
|
|
"uuid": "889c7867-90a4-453f-9697-08f66acc5729",
|
|
"value": "https://www.virustotal.com/file/1b6926c9fcea7681c6ed4f62b404e8a1c332fbbc26e872ddb53afc6e818f1cd4/analysis/1565051980/"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": true,
|
|
"object_relation": "detection-ratio",
|
|
"timestamp": "1565607620",
|
|
"to_ids": false,
|
|
"type": "text",
|
|
"uuid": "255635cd-f3b4-4d57-a4df-462db4c66801",
|
|
"value": "5/73"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "File object describing a file with meta-information",
|
|
"meta-category": "file",
|
|
"name": "file",
|
|
"template_uuid": "688c46fb-5edb-40a3-8273-1af7923e2215",
|
|
"template_version": "17",
|
|
"timestamp": "1566552821",
|
|
"uuid": "b05ef68e-17cd-4a85-af71-414145036bba",
|
|
"ObjectReference": [
|
|
{
|
|
"comment": "",
|
|
"object_uuid": "b05ef68e-17cd-4a85-af71-414145036bba",
|
|
"referenced_uuid": "6847ec0c-770d-4bb0-b6b5-64286a072bb9",
|
|
"relationship_type": "analysed-with",
|
|
"timestamp": "1566552841",
|
|
"uuid": "5d5fb309-65d4-4172-a546-495a950d210f"
|
|
}
|
|
],
|
|
"Attribute": [
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "md5",
|
|
"timestamp": "1565617848",
|
|
"to_ids": true,
|
|
"type": "md5",
|
|
"uuid": "e6fcb64c-509f-4521-a03c-4f48352c0f43",
|
|
"value": "ca0bdef2b365c70733aa61ad2224475b"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha1",
|
|
"timestamp": "1565617848",
|
|
"to_ids": true,
|
|
"type": "sha1",
|
|
"uuid": "aebed401-c468-41c8-8fd3-b54dcbbfd48e",
|
|
"value": "e8bbcb0f6538d1543bfa3f7a66f20155ebc2bcc8"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha256",
|
|
"timestamp": "1565617848",
|
|
"to_ids": true,
|
|
"type": "sha256",
|
|
"uuid": "7e943e7e-e82f-4cbd-aa58-0656724c535c",
|
|
"value": "a2c938629dd6a1b3061603e212fbec11cd5a499b52acff25d93448c326d314f0"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "VirusTotal report",
|
|
"meta-category": "misc",
|
|
"name": "virustotal-report",
|
|
"template_uuid": "d7dd0154-e04f-4c34-a2fb-79f3a3a52aa4",
|
|
"template_version": "2",
|
|
"timestamp": "1566552821",
|
|
"uuid": "6847ec0c-770d-4bb0-b6b5-64286a072bb9",
|
|
"Attribute": [
|
|
{
|
|
"category": "Other",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "last-submission",
|
|
"timestamp": "1565617848",
|
|
"to_ids": false,
|
|
"type": "datetime",
|
|
"uuid": "78b95690-31cf-46e3-a7b1-09f0245658aa",
|
|
"value": "2019-08-06T12:02:11"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "permalink",
|
|
"timestamp": "1565617848",
|
|
"to_ids": false,
|
|
"type": "link",
|
|
"uuid": "f9d4f0e9-6bb1-49b3-b819-968be3b0ef79",
|
|
"value": "https://www.virustotal.com/file/a2c938629dd6a1b3061603e212fbec11cd5a499b52acff25d93448c326d314f0/analysis/1565092931/"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": true,
|
|
"object_relation": "detection-ratio",
|
|
"timestamp": "1565617848",
|
|
"to_ids": false,
|
|
"type": "text",
|
|
"uuid": "bf93c74b-63c5-4894-a6a4-b8e08f530058",
|
|
"value": "23/62"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "File object describing a file with meta-information",
|
|
"meta-category": "file",
|
|
"name": "file",
|
|
"template_uuid": "688c46fb-5edb-40a3-8273-1af7923e2215",
|
|
"template_version": "17",
|
|
"timestamp": "1566552822",
|
|
"uuid": "531a0491-51fb-4487-8d23-083a61d6749c",
|
|
"ObjectReference": [
|
|
{
|
|
"comment": "",
|
|
"object_uuid": "531a0491-51fb-4487-8d23-083a61d6749c",
|
|
"referenced_uuid": "b5567de3-b632-4c8e-a2b2-843367a3b89c",
|
|
"relationship_type": "analysed-with",
|
|
"timestamp": "1566552842",
|
|
"uuid": "5d5fb30a-2edc-473e-ba95-41e2950d210f"
|
|
}
|
|
],
|
|
"Attribute": [
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "md5",
|
|
"timestamp": "1565607626",
|
|
"to_ids": true,
|
|
"type": "md5",
|
|
"uuid": "0111fe02-1cf8-4d0b-b39b-b061af665471",
|
|
"value": "69e8e8258fbda29a140fb820c93afbcc"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha1",
|
|
"timestamp": "1565607626",
|
|
"to_ids": true,
|
|
"type": "sha1",
|
|
"uuid": "164b6b91-d1fa-47d9-8ef5-257e1f3d2fd0",
|
|
"value": "67ecbc1e9a66719c599e6dded33a85f70daca13e"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha256",
|
|
"timestamp": "1565607626",
|
|
"to_ids": true,
|
|
"type": "sha256",
|
|
"uuid": "bad091f0-003c-4b79-bb50-cba4617255a5",
|
|
"value": "e52516e6881c7b073d68903099db0c85ddf465c71054e9da639f66a62d0cc528"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "VirusTotal report",
|
|
"meta-category": "misc",
|
|
"name": "virustotal-report",
|
|
"template_uuid": "d7dd0154-e04f-4c34-a2fb-79f3a3a52aa4",
|
|
"template_version": "2",
|
|
"timestamp": "1566552822",
|
|
"uuid": "b5567de3-b632-4c8e-a2b2-843367a3b89c",
|
|
"Attribute": [
|
|
{
|
|
"category": "Other",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "last-submission",
|
|
"timestamp": "1565607626",
|
|
"to_ids": false,
|
|
"type": "datetime",
|
|
"uuid": "294a9cbf-196c-4886-a723-d133defb95cf",
|
|
"value": "2019-08-16T10:42:18"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "permalink",
|
|
"timestamp": "1565607626",
|
|
"to_ids": false,
|
|
"type": "link",
|
|
"uuid": "0c69ff89-5fc6-4a8a-83ff-2d9fe5f88468",
|
|
"value": "https://www.virustotal.com/file/e52516e6881c7b073d68903099db0c85ddf465c71054e9da639f66a62d0cc528/analysis/1565952138/"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": true,
|
|
"object_relation": "detection-ratio",
|
|
"timestamp": "1565607626",
|
|
"to_ids": false,
|
|
"type": "text",
|
|
"uuid": "19dc37b7-9d14-442e-8537-21aff19abb8f",
|
|
"value": "41/70"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "File object describing a file with meta-information",
|
|
"meta-category": "file",
|
|
"name": "file",
|
|
"template_uuid": "688c46fb-5edb-40a3-8273-1af7923e2215",
|
|
"template_version": "17",
|
|
"timestamp": "1566552822",
|
|
"uuid": "6bed7582-d749-4f0e-972a-704520e046dc",
|
|
"ObjectReference": [
|
|
{
|
|
"comment": "",
|
|
"object_uuid": "6bed7582-d749-4f0e-972a-704520e046dc",
|
|
"referenced_uuid": "fdd40616-8544-40b7-8f04-79ab0dd41097",
|
|
"relationship_type": "analysed-with",
|
|
"timestamp": "1566552842",
|
|
"uuid": "5d5fb30a-d0d0-470e-8d16-4b7c950d210f"
|
|
}
|
|
],
|
|
"Attribute": [
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "md5",
|
|
"timestamp": "1565617845",
|
|
"to_ids": true,
|
|
"type": "md5",
|
|
"uuid": "e8225c7f-b5b3-430f-a292-212ae6b1c4ef",
|
|
"value": "19b049ab19fd3e8c6f5b36c6a41024fe"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha1",
|
|
"timestamp": "1565617845",
|
|
"to_ids": true,
|
|
"type": "sha1",
|
|
"uuid": "8a32a3e7-e0ce-433e-a2aa-0ced50730930",
|
|
"value": "97edcdfd6e674591c1e809381c7e68f11dfa81fc"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha256",
|
|
"timestamp": "1565617845",
|
|
"to_ids": true,
|
|
"type": "sha256",
|
|
"uuid": "266da06b-8f21-46e1-b867-712ff16b58c2",
|
|
"value": "217c351a6b80b94b933c6429b27c205466381f72485398f452b18cdd6bb97cc7"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "VirusTotal report",
|
|
"meta-category": "misc",
|
|
"name": "virustotal-report",
|
|
"template_uuid": "d7dd0154-e04f-4c34-a2fb-79f3a3a52aa4",
|
|
"template_version": "2",
|
|
"timestamp": "1566552822",
|
|
"uuid": "fdd40616-8544-40b7-8f04-79ab0dd41097",
|
|
"Attribute": [
|
|
{
|
|
"category": "Other",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "last-submission",
|
|
"timestamp": "1565617845",
|
|
"to_ids": false,
|
|
"type": "datetime",
|
|
"uuid": "4a3be05f-8620-40c3-bfb1-be0cd9a14c99",
|
|
"value": "2019-08-20T15:42:21"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "permalink",
|
|
"timestamp": "1565617845",
|
|
"to_ids": false,
|
|
"type": "link",
|
|
"uuid": "da9d743d-d207-439e-9fef-2b9812a1f478",
|
|
"value": "https://www.virustotal.com/file/217c351a6b80b94b933c6429b27c205466381f72485398f452b18cdd6bb97cc7/analysis/1566315741/"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": true,
|
|
"object_relation": "detection-ratio",
|
|
"timestamp": "1565617845",
|
|
"to_ids": false,
|
|
"type": "text",
|
|
"uuid": "527111d0-8515-4364-9465-1cc4e24e2822",
|
|
"value": "33/69"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "File object describing a file with meta-information",
|
|
"meta-category": "file",
|
|
"name": "file",
|
|
"template_uuid": "688c46fb-5edb-40a3-8273-1af7923e2215",
|
|
"template_version": "17",
|
|
"timestamp": "1566552823",
|
|
"uuid": "fe215d82-4e07-46c1-8545-1d395fa890ce",
|
|
"ObjectReference": [
|
|
{
|
|
"comment": "",
|
|
"object_uuid": "fe215d82-4e07-46c1-8545-1d395fa890ce",
|
|
"referenced_uuid": "f4cd93cd-e5cd-42b3-8fe9-28685d552703",
|
|
"relationship_type": "analysed-with",
|
|
"timestamp": "1566552842",
|
|
"uuid": "5d5fb30a-8fac-4e7c-8597-468a950d210f"
|
|
}
|
|
],
|
|
"Attribute": [
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "md5",
|
|
"timestamp": "1565619037",
|
|
"to_ids": true,
|
|
"type": "md5",
|
|
"uuid": "9916f970-af00-4f8b-88e7-98893cfa3fe7",
|
|
"value": "f84f600384a857b583fa5d24de290de4"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha1",
|
|
"timestamp": "1565619037",
|
|
"to_ids": true,
|
|
"type": "sha1",
|
|
"uuid": "747da078-2ea7-49a4-aa4f-2441692397e6",
|
|
"value": "a19648a5576e0b9fc449d89addc569ba1350ecff"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha256",
|
|
"timestamp": "1565619037",
|
|
"to_ids": true,
|
|
"type": "sha256",
|
|
"uuid": "ed1b5237-f4b4-45fe-bc38-7a97b6171859",
|
|
"value": "9445e4f838103f8032646a37074cf8900c0165088d9f88438c8ea93f21576811"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "VirusTotal report",
|
|
"meta-category": "misc",
|
|
"name": "virustotal-report",
|
|
"template_uuid": "d7dd0154-e04f-4c34-a2fb-79f3a3a52aa4",
|
|
"template_version": "2",
|
|
"timestamp": "1566552823",
|
|
"uuid": "f4cd93cd-e5cd-42b3-8fe9-28685d552703",
|
|
"Attribute": [
|
|
{
|
|
"category": "Other",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "last-submission",
|
|
"timestamp": "1565619037",
|
|
"to_ids": false,
|
|
"type": "datetime",
|
|
"uuid": "ba5bab65-12eb-47dc-ad32-5435d5704253",
|
|
"value": "2019-08-20T15:42:17"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "permalink",
|
|
"timestamp": "1565619037",
|
|
"to_ids": false,
|
|
"type": "link",
|
|
"uuid": "877c5e64-aafb-4795-b634-911d36bbd8c5",
|
|
"value": "https://www.virustotal.com/file/9445e4f838103f8032646a37074cf8900c0165088d9f88438c8ea93f21576811/analysis/1566315737/"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": true,
|
|
"object_relation": "detection-ratio",
|
|
"timestamp": "1565619037",
|
|
"to_ids": false,
|
|
"type": "text",
|
|
"uuid": "bdaa0ade-94b4-42fa-aab5-a94291a17081",
|
|
"value": "39/69"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "File object describing a file with meta-information",
|
|
"meta-category": "file",
|
|
"name": "file",
|
|
"template_uuid": "688c46fb-5edb-40a3-8273-1af7923e2215",
|
|
"template_version": "17",
|
|
"timestamp": "1566552823",
|
|
"uuid": "7047fe89-3ddd-4bff-aa2a-11d986cde08b",
|
|
"ObjectReference": [
|
|
{
|
|
"comment": "",
|
|
"object_uuid": "7047fe89-3ddd-4bff-aa2a-11d986cde08b",
|
|
"referenced_uuid": "4cbc7e29-5a6c-4775-8002-cdba10392a10",
|
|
"relationship_type": "analysed-with",
|
|
"timestamp": "1566552842",
|
|
"uuid": "5d5fb30a-b4d8-4d39-bd92-4f8a950d210f"
|
|
}
|
|
],
|
|
"Attribute": [
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "md5",
|
|
"timestamp": "1565607630",
|
|
"to_ids": true,
|
|
"type": "md5",
|
|
"uuid": "205c0175-edb8-40bc-8f76-124f2e75a96c",
|
|
"value": "04fa52b44178bec611232d260ec18c03"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha1",
|
|
"timestamp": "1565607630",
|
|
"to_ids": true,
|
|
"type": "sha1",
|
|
"uuid": "b66d4132-0da0-435b-af9b-7b25a3d87c41",
|
|
"value": "dda105d8d894f73b16518d546270e4f783cb5178"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha256",
|
|
"timestamp": "1565607630",
|
|
"to_ids": true,
|
|
"type": "sha256",
|
|
"uuid": "dfdfb8e8-c1d7-412a-a450-7c99e0934dad",
|
|
"value": "2674fc7ac47f8a0b5ff07335a18fb9168c532ea3690d2ddacb0f9486711eeeb1"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "VirusTotal report",
|
|
"meta-category": "misc",
|
|
"name": "virustotal-report",
|
|
"template_uuid": "d7dd0154-e04f-4c34-a2fb-79f3a3a52aa4",
|
|
"template_version": "2",
|
|
"timestamp": "1566552823",
|
|
"uuid": "4cbc7e29-5a6c-4775-8002-cdba10392a10",
|
|
"Attribute": [
|
|
{
|
|
"category": "Other",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "last-submission",
|
|
"timestamp": "1565607630",
|
|
"to_ids": false,
|
|
"type": "datetime",
|
|
"uuid": "3a0c915a-3958-4817-824e-21c93a3e03af",
|
|
"value": "2019-08-20T15:42:17"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "permalink",
|
|
"timestamp": "1565607630",
|
|
"to_ids": false,
|
|
"type": "link",
|
|
"uuid": "5b1a2506-a2cb-4b11-ad1d-cb0a5bb8184b",
|
|
"value": "https://www.virustotal.com/file/2674fc7ac47f8a0b5ff07335a18fb9168c532ea3690d2ddacb0f9486711eeeb1/analysis/1566315737/"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": true,
|
|
"object_relation": "detection-ratio",
|
|
"timestamp": "1565607630",
|
|
"to_ids": false,
|
|
"type": "text",
|
|
"uuid": "c0c12f49-c195-43c7-83a6-9d0aa86e7201",
|
|
"value": "37/67"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "File object describing a file with meta-information",
|
|
"meta-category": "file",
|
|
"name": "file",
|
|
"template_uuid": "688c46fb-5edb-40a3-8273-1af7923e2215",
|
|
"template_version": "17",
|
|
"timestamp": "1566552824",
|
|
"uuid": "50fedb9b-0e14-43fb-8512-8f989ac34305",
|
|
"ObjectReference": [
|
|
{
|
|
"comment": "",
|
|
"object_uuid": "50fedb9b-0e14-43fb-8512-8f989ac34305",
|
|
"referenced_uuid": "5028f0e4-43d2-4832-a500-813be2f633b3",
|
|
"relationship_type": "analysed-with",
|
|
"timestamp": "1566552842",
|
|
"uuid": "5d5fb30a-a724-4d51-aec3-4f89950d210f"
|
|
}
|
|
],
|
|
"Attribute": [
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "md5",
|
|
"timestamp": "1565607635",
|
|
"to_ids": true,
|
|
"type": "md5",
|
|
"uuid": "23aadeec-8e6b-4987-a19a-dfea50fe71a6",
|
|
"value": "7163167a07b2ba31d6064297167cc19f"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha1",
|
|
"timestamp": "1565607635",
|
|
"to_ids": true,
|
|
"type": "sha1",
|
|
"uuid": "d0372e53-c378-4306-94f0-5c13b1254f9f",
|
|
"value": "bfd0cbef5b9c329792b38274474f04bd8109df66"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha256",
|
|
"timestamp": "1565607635",
|
|
"to_ids": true,
|
|
"type": "sha256",
|
|
"uuid": "a0b61b1c-7dd8-45c9-8404-edeca68aa831",
|
|
"value": "b4919db508e9d54c77ff101c0e1155a6ab4e12e61a16708810fdc5c2d23f3e43"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "VirusTotal report",
|
|
"meta-category": "misc",
|
|
"name": "virustotal-report",
|
|
"template_uuid": "d7dd0154-e04f-4c34-a2fb-79f3a3a52aa4",
|
|
"template_version": "2",
|
|
"timestamp": "1566552824",
|
|
"uuid": "5028f0e4-43d2-4832-a500-813be2f633b3",
|
|
"Attribute": [
|
|
{
|
|
"category": "Other",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "last-submission",
|
|
"timestamp": "1565607635",
|
|
"to_ids": false,
|
|
"type": "datetime",
|
|
"uuid": "a90202a3-93b9-4d67-9b6c-e06361e1d187",
|
|
"value": "2019-08-14T15:50:08"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "permalink",
|
|
"timestamp": "1565607635",
|
|
"to_ids": false,
|
|
"type": "link",
|
|
"uuid": "3b7e9886-4153-4c8a-adeb-f7ed1c68e48f",
|
|
"value": "https://www.virustotal.com/file/b4919db508e9d54c77ff101c0e1155a6ab4e12e61a16708810fdc5c2d23f3e43/analysis/1565797808/"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": true,
|
|
"object_relation": "detection-ratio",
|
|
"timestamp": "1565607635",
|
|
"to_ids": false,
|
|
"type": "text",
|
|
"uuid": "ee1a20eb-cc0b-4983-a26a-49b7379fd6a0",
|
|
"value": "38/66"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "File object describing a file with meta-information",
|
|
"meta-category": "file",
|
|
"name": "file",
|
|
"template_uuid": "688c46fb-5edb-40a3-8273-1af7923e2215",
|
|
"template_version": "17",
|
|
"timestamp": "1566552824",
|
|
"uuid": "51d2647f-b8ad-4664-a17d-7ae19f413a11",
|
|
"ObjectReference": [
|
|
{
|
|
"comment": "",
|
|
"object_uuid": "51d2647f-b8ad-4664-a17d-7ae19f413a11",
|
|
"referenced_uuid": "24acd52e-a969-4d69-bb88-e57c51a43e42",
|
|
"relationship_type": "analysed-with",
|
|
"timestamp": "1566552842",
|
|
"uuid": "5d5fb30a-e624-4a7b-8290-485c950d210f"
|
|
}
|
|
],
|
|
"Attribute": [
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "md5",
|
|
"timestamp": "1565255666",
|
|
"to_ids": true,
|
|
"type": "md5",
|
|
"uuid": "fccc9a95-12ae-4a5b-a40d-55e41216967c",
|
|
"value": "33aac948ba9f11ff8e8fba02127e2c34"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha1",
|
|
"timestamp": "1565255666",
|
|
"to_ids": true,
|
|
"type": "sha1",
|
|
"uuid": "16f4e715-af8d-4a2e-84d6-4ecf4e8e7f6c",
|
|
"value": "85bdd7d871108c737701ac30c14a2d343cbdef94"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha256",
|
|
"timestamp": "1565255666",
|
|
"to_ids": true,
|
|
"type": "sha256",
|
|
"uuid": "72ab3ed4-43a8-451a-b6e8-f5bb295ad9c5",
|
|
"value": "60c1c4fbeeb9629a0867e091c6012765507797e5f7f9eb42701bc41dcc2f811d"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "VirusTotal report",
|
|
"meta-category": "misc",
|
|
"name": "virustotal-report",
|
|
"template_uuid": "d7dd0154-e04f-4c34-a2fb-79f3a3a52aa4",
|
|
"template_version": "2",
|
|
"timestamp": "1566552824",
|
|
"uuid": "24acd52e-a969-4d69-bb88-e57c51a43e42",
|
|
"Attribute": [
|
|
{
|
|
"category": "Other",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "last-submission",
|
|
"timestamp": "1565255666",
|
|
"to_ids": false,
|
|
"type": "datetime",
|
|
"uuid": "219060ce-47cc-4ca5-9c7a-16d761b1299f",
|
|
"value": "2019-08-07T04:53:37"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "permalink",
|
|
"timestamp": "1565255666",
|
|
"to_ids": false,
|
|
"type": "link",
|
|
"uuid": "fe7003d9-62e1-4819-90d4-b4945ccdf90e",
|
|
"value": "https://www.virustotal.com/file/60c1c4fbeeb9629a0867e091c6012765507797e5f7f9eb42701bc41dcc2f811d/analysis/1565153617/"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": true,
|
|
"object_relation": "detection-ratio",
|
|
"timestamp": "1565255666",
|
|
"to_ids": false,
|
|
"type": "text",
|
|
"uuid": "7c17bc6d-f8dd-4585-b5fe-c90096f32550",
|
|
"value": "14/73"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "File object describing a file with meta-information",
|
|
"meta-category": "file",
|
|
"name": "file",
|
|
"template_uuid": "688c46fb-5edb-40a3-8273-1af7923e2215",
|
|
"template_version": "17",
|
|
"timestamp": "1566552824",
|
|
"uuid": "b6decb0d-6c64-4c13-a035-00e4867fb2dd",
|
|
"ObjectReference": [
|
|
{
|
|
"comment": "",
|
|
"object_uuid": "b6decb0d-6c64-4c13-a035-00e4867fb2dd",
|
|
"referenced_uuid": "7f0397a0-ca35-463e-ba29-48807fde401b",
|
|
"relationship_type": "analysed-with",
|
|
"timestamp": "1566552842",
|
|
"uuid": "5d5fb30a-73c8-4dca-b2ec-4deb950d210f"
|
|
}
|
|
],
|
|
"Attribute": [
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "md5",
|
|
"timestamp": "1565607625",
|
|
"to_ids": true,
|
|
"type": "md5",
|
|
"uuid": "c45eba08-a1be-40a1-8e8a-c52ae80d918b",
|
|
"value": "8d92e51008d4ec7530bb16b3caa63fbb"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha1",
|
|
"timestamp": "1565607625",
|
|
"to_ids": true,
|
|
"type": "sha1",
|
|
"uuid": "9241ce2a-4123-43b5-80e9-ae49ce1cf49a",
|
|
"value": "341f2efa0fd11b4480d8503bfb81c62af667d72d"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha256",
|
|
"timestamp": "1565607625",
|
|
"to_ids": true,
|
|
"type": "sha256",
|
|
"uuid": "ab915ea5-9dc4-48ee-9e3a-72bc591eed25",
|
|
"value": "8bd1d2d8b037df18c1f0345b092434e2055f2ac01c7a86decc2c0f35685227ef"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "VirusTotal report",
|
|
"meta-category": "misc",
|
|
"name": "virustotal-report",
|
|
"template_uuid": "d7dd0154-e04f-4c34-a2fb-79f3a3a52aa4",
|
|
"template_version": "2",
|
|
"timestamp": "1566552825",
|
|
"uuid": "7f0397a0-ca35-463e-ba29-48807fde401b",
|
|
"Attribute": [
|
|
{
|
|
"category": "Other",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "last-submission",
|
|
"timestamp": "1565607625",
|
|
"to_ids": false,
|
|
"type": "datetime",
|
|
"uuid": "83ebad06-2bae-4a9b-96d5-2bd4e40dd638",
|
|
"value": "2019-08-06T00:39:47"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "permalink",
|
|
"timestamp": "1565607625",
|
|
"to_ids": false,
|
|
"type": "link",
|
|
"uuid": "5bb822f7-3f6b-4881-a172-057784d4c6eb",
|
|
"value": "https://www.virustotal.com/file/8bd1d2d8b037df18c1f0345b092434e2055f2ac01c7a86decc2c0f35685227ef/analysis/1565051987/"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": true,
|
|
"object_relation": "detection-ratio",
|
|
"timestamp": "1565607625",
|
|
"to_ids": false,
|
|
"type": "text",
|
|
"uuid": "dbd8d2f0-9510-45c1-ab41-c62dbf5800ed",
|
|
"value": "28/71"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "File object describing a file with meta-information",
|
|
"meta-category": "file",
|
|
"name": "file",
|
|
"template_uuid": "688c46fb-5edb-40a3-8273-1af7923e2215",
|
|
"template_version": "17",
|
|
"timestamp": "1566552825",
|
|
"uuid": "68f1d019-274d-43e4-b014-ce9b23560d4e",
|
|
"ObjectReference": [
|
|
{
|
|
"comment": "",
|
|
"object_uuid": "68f1d019-274d-43e4-b014-ce9b23560d4e",
|
|
"referenced_uuid": "d006038d-e562-4505-aa6a-26272c6906c5",
|
|
"relationship_type": "analysed-with",
|
|
"timestamp": "1566552842",
|
|
"uuid": "5d5fb30a-6318-46bb-8f85-4f00950d210f"
|
|
}
|
|
],
|
|
"Attribute": [
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "md5",
|
|
"timestamp": "1565607229",
|
|
"to_ids": true,
|
|
"type": "md5",
|
|
"uuid": "e776fb42-a1a5-4e84-a3be-d5eea9667af2",
|
|
"value": "c312d1a4ac706d910c611ad8f600fe68"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha1",
|
|
"timestamp": "1565607229",
|
|
"to_ids": true,
|
|
"type": "sha1",
|
|
"uuid": "a11a7d04-47aa-439f-aeac-1e925ef13636",
|
|
"value": "984b9202a6dbd7d3dd696cae1220338a68092dc9"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha256",
|
|
"timestamp": "1565607229",
|
|
"to_ids": true,
|
|
"type": "sha256",
|
|
"uuid": "2f61abd1-6118-4f3f-a39b-bb5a95bd1b5f",
|
|
"value": "da31a5bfc103a47899171289ead4b53735b736766cb8501f5a5164097889a518"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "VirusTotal report",
|
|
"meta-category": "misc",
|
|
"name": "virustotal-report",
|
|
"template_uuid": "d7dd0154-e04f-4c34-a2fb-79f3a3a52aa4",
|
|
"template_version": "2",
|
|
"timestamp": "1566552825",
|
|
"uuid": "d006038d-e562-4505-aa6a-26272c6906c5",
|
|
"Attribute": [
|
|
{
|
|
"category": "Other",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "last-submission",
|
|
"timestamp": "1565607229",
|
|
"to_ids": false,
|
|
"type": "datetime",
|
|
"uuid": "53d53b85-9e84-44e4-969d-9e29438cf291",
|
|
"value": "2019-08-08T01:57:24"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "permalink",
|
|
"timestamp": "1565607229",
|
|
"to_ids": false,
|
|
"type": "link",
|
|
"uuid": "2bec80c0-cea9-452e-9617-0a94082f4eb8",
|
|
"value": "https://www.virustotal.com/file/da31a5bfc103a47899171289ead4b53735b736766cb8501f5a5164097889a518/analysis/1565229444/"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": true,
|
|
"object_relation": "detection-ratio",
|
|
"timestamp": "1565607229",
|
|
"to_ids": false,
|
|
"type": "text",
|
|
"uuid": "2774491e-f14f-4e59-b8d1-9768d3d9056a",
|
|
"value": "18/71"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "File object describing a file with meta-information",
|
|
"meta-category": "file",
|
|
"name": "file",
|
|
"template_uuid": "688c46fb-5edb-40a3-8273-1af7923e2215",
|
|
"template_version": "17",
|
|
"timestamp": "1566552825",
|
|
"uuid": "a5b82f72-0f15-4329-a3ae-a1443c7c20f9",
|
|
"ObjectReference": [
|
|
{
|
|
"comment": "",
|
|
"object_uuid": "a5b82f72-0f15-4329-a3ae-a1443c7c20f9",
|
|
"referenced_uuid": "ef7058b0-ee9a-42e7-84e4-571560201656",
|
|
"relationship_type": "analysed-with",
|
|
"timestamp": "1566552842",
|
|
"uuid": "5d5fb30a-06c0-4ca2-94d4-4993950d210f"
|
|
}
|
|
],
|
|
"Attribute": [
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "md5",
|
|
"timestamp": "1565617841",
|
|
"to_ids": true,
|
|
"type": "md5",
|
|
"uuid": "13f8c1e1-2b2a-40e6-86dd-7c1fc1591bff",
|
|
"value": "ec9e0092505743e000bd95c3e4677aff"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha1",
|
|
"timestamp": "1565617841",
|
|
"to_ids": true,
|
|
"type": "sha1",
|
|
"uuid": "b65b6bc6-3b13-4839-82da-76473873717b",
|
|
"value": "62800d245a3726ca390d08b7bf17fe2c37f2b3cf"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha256",
|
|
"timestamp": "1565617841",
|
|
"to_ids": true,
|
|
"type": "sha256",
|
|
"uuid": "3b32e9d7-d563-4ae9-b65d-28dc022a7312",
|
|
"value": "fdc8f48fcf98ce9eb4d9bc4633dec64a26019a6e3738641eefbbc087e32f4bd1"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "VirusTotal report",
|
|
"meta-category": "misc",
|
|
"name": "virustotal-report",
|
|
"template_uuid": "d7dd0154-e04f-4c34-a2fb-79f3a3a52aa4",
|
|
"template_version": "2",
|
|
"timestamp": "1566552826",
|
|
"uuid": "ef7058b0-ee9a-42e7-84e4-571560201656",
|
|
"Attribute": [
|
|
{
|
|
"category": "Other",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "last-submission",
|
|
"timestamp": "1565617841",
|
|
"to_ids": false,
|
|
"type": "datetime",
|
|
"uuid": "c6b26a28-5edd-40de-ad18-bb0c215ac34d",
|
|
"value": "2019-08-06T00:39:54"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "permalink",
|
|
"timestamp": "1565617841",
|
|
"to_ids": false,
|
|
"type": "link",
|
|
"uuid": "ed4fab8d-0c41-4b01-a8e7-2bf647460b0f",
|
|
"value": "https://www.virustotal.com/file/fdc8f48fcf98ce9eb4d9bc4633dec64a26019a6e3738641eefbbc087e32f4bd1/analysis/1565051994/"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": true,
|
|
"object_relation": "detection-ratio",
|
|
"timestamp": "1565617841",
|
|
"to_ids": false,
|
|
"type": "text",
|
|
"uuid": "30d2cff9-88a6-4ed3-abf4-96ab979282a8",
|
|
"value": "24/69"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "File object describing a file with meta-information",
|
|
"meta-category": "file",
|
|
"name": "file",
|
|
"template_uuid": "688c46fb-5edb-40a3-8273-1af7923e2215",
|
|
"template_version": "17",
|
|
"timestamp": "1566552826",
|
|
"uuid": "a7f25b8a-bc21-44ec-88e6-fe0d358f36b5",
|
|
"ObjectReference": [
|
|
{
|
|
"comment": "",
|
|
"object_uuid": "a7f25b8a-bc21-44ec-88e6-fe0d358f36b5",
|
|
"referenced_uuid": "a15e1912-b799-484e-8596-3a929eb5b849",
|
|
"relationship_type": "analysed-with",
|
|
"timestamp": "1566552842",
|
|
"uuid": "5d5fb30a-92f4-4a93-b992-436b950d210f"
|
|
}
|
|
],
|
|
"Attribute": [
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "md5",
|
|
"timestamp": "1565607646",
|
|
"to_ids": true,
|
|
"type": "md5",
|
|
"uuid": "bf74191b-f186-4596-9c8a-d4a6d6edd237",
|
|
"value": "624a23ea378b4422beb4189ac75a478d"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha1",
|
|
"timestamp": "1565607646",
|
|
"to_ids": true,
|
|
"type": "sha1",
|
|
"uuid": "8994e190-59d3-4d35-a3a5-d6245e3d4c4b",
|
|
"value": "904137b61f1ded66c8ca76ebf198dec1b638b5d4"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha256",
|
|
"timestamp": "1565607646",
|
|
"to_ids": true,
|
|
"type": "sha256",
|
|
"uuid": "3cfc9fa7-e2a0-46fb-a68a-051ed4a36325",
|
|
"value": "fdb55a207260a62b190f307fe6021158f45fd8342718e60018467129424b10d4"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "VirusTotal report",
|
|
"meta-category": "misc",
|
|
"name": "virustotal-report",
|
|
"template_uuid": "d7dd0154-e04f-4c34-a2fb-79f3a3a52aa4",
|
|
"template_version": "2",
|
|
"timestamp": "1566552826",
|
|
"uuid": "a15e1912-b799-484e-8596-3a929eb5b849",
|
|
"Attribute": [
|
|
{
|
|
"category": "Other",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "last-submission",
|
|
"timestamp": "1565607646",
|
|
"to_ids": false,
|
|
"type": "datetime",
|
|
"uuid": "fa27b39d-1e85-43ec-88d6-52a8038374f2",
|
|
"value": "2019-08-07T02:34:38"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "permalink",
|
|
"timestamp": "1565607646",
|
|
"to_ids": false,
|
|
"type": "link",
|
|
"uuid": "57752b95-4183-4d8c-bf10-6aab97c03a48",
|
|
"value": "https://www.virustotal.com/file/fdb55a207260a62b190f307fe6021158f45fd8342718e60018467129424b10d4/analysis/1565145278/"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": true,
|
|
"object_relation": "detection-ratio",
|
|
"timestamp": "1565607646",
|
|
"to_ids": false,
|
|
"type": "text",
|
|
"uuid": "a70a2829-6306-4be7-ad16-76e4b3ae29ca",
|
|
"value": "35/66"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "File object describing a file with meta-information",
|
|
"meta-category": "file",
|
|
"name": "file",
|
|
"template_uuid": "688c46fb-5edb-40a3-8273-1af7923e2215",
|
|
"template_version": "17",
|
|
"timestamp": "1566552826",
|
|
"uuid": "fbbe7063-4dc9-40d9-8a70-5e10d25ae1be",
|
|
"ObjectReference": [
|
|
{
|
|
"comment": "",
|
|
"object_uuid": "fbbe7063-4dc9-40d9-8a70-5e10d25ae1be",
|
|
"referenced_uuid": "3dccc6fd-ccf2-4995-8770-41075c7981c0",
|
|
"relationship_type": "analysed-with",
|
|
"timestamp": "1566552842",
|
|
"uuid": "5d5fb30a-6164-4c2c-a937-4b0b950d210f"
|
|
}
|
|
],
|
|
"Attribute": [
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "md5",
|
|
"timestamp": "1565607230",
|
|
"to_ids": true,
|
|
"type": "md5",
|
|
"uuid": "e881a0c8-f604-401f-8fc7-93a132d88d4d",
|
|
"value": "f76ee4d0e496fd22bc87e685653a296b"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha1",
|
|
"timestamp": "1565607230",
|
|
"to_ids": true,
|
|
"type": "sha1",
|
|
"uuid": "0e18edb3-06ac-400d-9729-ac74f9f3d6fe",
|
|
"value": "204a2850548e5994d4696e9002f90dfccbe2093a"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha256",
|
|
"timestamp": "1565607230",
|
|
"to_ids": true,
|
|
"type": "sha256",
|
|
"uuid": "0b43719f-6576-425b-aa76-42a0644aa154",
|
|
"value": "83a40a07de648eaeaac0d3675a692def343a32dbf03655befe2a91a7bf221257"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "VirusTotal report",
|
|
"meta-category": "misc",
|
|
"name": "virustotal-report",
|
|
"template_uuid": "d7dd0154-e04f-4c34-a2fb-79f3a3a52aa4",
|
|
"template_version": "2",
|
|
"timestamp": "1566552827",
|
|
"uuid": "3dccc6fd-ccf2-4995-8770-41075c7981c0",
|
|
"Attribute": [
|
|
{
|
|
"category": "Other",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "last-submission",
|
|
"timestamp": "1565607230",
|
|
"to_ids": false,
|
|
"type": "datetime",
|
|
"uuid": "70af704c-fbf7-47e7-b4a4-be254b7b4c8a",
|
|
"value": "2019-08-16T11:50:35"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "permalink",
|
|
"timestamp": "1565607230",
|
|
"to_ids": false,
|
|
"type": "link",
|
|
"uuid": "e10eaccb-73be-4264-a23f-724c4bea7914",
|
|
"value": "https://www.virustotal.com/file/83a40a07de648eaeaac0d3675a692def343a32dbf03655befe2a91a7bf221257/analysis/1565956235/"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": true,
|
|
"object_relation": "detection-ratio",
|
|
"timestamp": "1565607230",
|
|
"to_ids": false,
|
|
"type": "text",
|
|
"uuid": "ff2dac80-68f8-450a-bf65-3757bd5e77c0",
|
|
"value": "32/68"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "File object describing a file with meta-information",
|
|
"meta-category": "file",
|
|
"name": "file",
|
|
"template_uuid": "688c46fb-5edb-40a3-8273-1af7923e2215",
|
|
"template_version": "17",
|
|
"timestamp": "1566552827",
|
|
"uuid": "4671a7c1-3b72-427b-b486-a9076c743c39",
|
|
"ObjectReference": [
|
|
{
|
|
"comment": "",
|
|
"object_uuid": "4671a7c1-3b72-427b-b486-a9076c743c39",
|
|
"referenced_uuid": "601cbe62-0b1b-4765-9a08-23a989a76447",
|
|
"relationship_type": "analysed-with",
|
|
"timestamp": "1566552842",
|
|
"uuid": "5d5fb30a-3004-45ad-b9ea-48f3950d210f"
|
|
}
|
|
],
|
|
"Attribute": [
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "md5",
|
|
"timestamp": "1565607229",
|
|
"to_ids": true,
|
|
"type": "md5",
|
|
"uuid": "14d2ae84-d15b-4d9e-a2b6-e22880cc851b",
|
|
"value": "a3f35e1ec2a70df31296deef93129904"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha1",
|
|
"timestamp": "1565607229",
|
|
"to_ids": true,
|
|
"type": "sha1",
|
|
"uuid": "a6244801-55a0-4ef0-939d-cfacbc3ee832",
|
|
"value": "eabd45d0a86113f5ccff9fd292c1e482a5727815"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha256",
|
|
"timestamp": "1565607229",
|
|
"to_ids": true,
|
|
"type": "sha256",
|
|
"uuid": "b9a03ff3-9bc2-4f29-b1b0-512c4680ca5c",
|
|
"value": "470aaf51761c15d9942aa156a9a6cc07fde5b1be54e73692ec71567df8a387b6"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "VirusTotal report",
|
|
"meta-category": "misc",
|
|
"name": "virustotal-report",
|
|
"template_uuid": "d7dd0154-e04f-4c34-a2fb-79f3a3a52aa4",
|
|
"template_version": "2",
|
|
"timestamp": "1566552827",
|
|
"uuid": "601cbe62-0b1b-4765-9a08-23a989a76447",
|
|
"Attribute": [
|
|
{
|
|
"category": "Other",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "last-submission",
|
|
"timestamp": "1565607229",
|
|
"to_ids": false,
|
|
"type": "datetime",
|
|
"uuid": "0a76d50d-7732-4ca0-85ee-d66016d2fddd",
|
|
"value": "2019-08-06T00:39:44"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "permalink",
|
|
"timestamp": "1565607229",
|
|
"to_ids": false,
|
|
"type": "link",
|
|
"uuid": "130e74c3-5eb2-4057-826a-e755c8190225",
|
|
"value": "https://www.virustotal.com/file/470aaf51761c15d9942aa156a9a6cc07fde5b1be54e73692ec71567df8a387b6/analysis/1565051984/"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": true,
|
|
"object_relation": "detection-ratio",
|
|
"timestamp": "1565607229",
|
|
"to_ids": false,
|
|
"type": "text",
|
|
"uuid": "0bd98a79-8f30-4041-bc0d-dc6e6bc2beae",
|
|
"value": "7/71"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "File object describing a file with meta-information",
|
|
"meta-category": "file",
|
|
"name": "file",
|
|
"template_uuid": "688c46fb-5edb-40a3-8273-1af7923e2215",
|
|
"template_version": "17",
|
|
"timestamp": "1566552827",
|
|
"uuid": "b8629f7c-4f7b-403e-9b5e-8343238e99cf",
|
|
"ObjectReference": [
|
|
{
|
|
"comment": "",
|
|
"object_uuid": "b8629f7c-4f7b-403e-9b5e-8343238e99cf",
|
|
"referenced_uuid": "e400655d-93d4-46a7-9116-738530e06ea7",
|
|
"relationship_type": "analysed-with",
|
|
"timestamp": "1566552842",
|
|
"uuid": "5d5fb30b-6d98-44aa-ac13-48ce950d210f"
|
|
}
|
|
],
|
|
"Attribute": [
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "md5",
|
|
"timestamp": "1565619038",
|
|
"to_ids": true,
|
|
"type": "md5",
|
|
"uuid": "4fdf76df-c07a-49a4-b5df-2bf271c18f24",
|
|
"value": "95a9f742768e75c5ac4614ed0645c510"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha1",
|
|
"timestamp": "1565619038",
|
|
"to_ids": true,
|
|
"type": "sha1",
|
|
"uuid": "4b588e4e-694e-47cb-9bb9-94954d0c7f1a",
|
|
"value": "212f3697117d17ec3f299d037845cf3db20ce88a"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha256",
|
|
"timestamp": "1565619038",
|
|
"to_ids": true,
|
|
"type": "sha256",
|
|
"uuid": "57fda5fb-5605-418f-804a-7c627b294df3",
|
|
"value": "ce2eee86b841a8db264b93cd2e7a791102b05f7d6e2a0a2850cd02be86e7bb3c"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "VirusTotal report",
|
|
"meta-category": "misc",
|
|
"name": "virustotal-report",
|
|
"template_uuid": "d7dd0154-e04f-4c34-a2fb-79f3a3a52aa4",
|
|
"template_version": "2",
|
|
"timestamp": "1566552827",
|
|
"uuid": "e400655d-93d4-46a7-9116-738530e06ea7",
|
|
"Attribute": [
|
|
{
|
|
"category": "Other",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "last-submission",
|
|
"timestamp": "1565619038",
|
|
"to_ids": false,
|
|
"type": "datetime",
|
|
"uuid": "2c293c03-35c5-46fb-82c3-94527dc522bc",
|
|
"value": "2019-08-22T18:46:16"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "permalink",
|
|
"timestamp": "1565619038",
|
|
"to_ids": false,
|
|
"type": "link",
|
|
"uuid": "aa385878-0160-488b-b432-3611843e48db",
|
|
"value": "https://www.virustotal.com/file/ce2eee86b841a8db264b93cd2e7a791102b05f7d6e2a0a2850cd02be86e7bb3c/analysis/1566499576/"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": true,
|
|
"object_relation": "detection-ratio",
|
|
"timestamp": "1565619038",
|
|
"to_ids": false,
|
|
"type": "text",
|
|
"uuid": "dd913565-aaec-4b25-83fd-7ff0a49706bf",
|
|
"value": "31/69"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "File object describing a file with meta-information",
|
|
"meta-category": "file",
|
|
"name": "file",
|
|
"template_uuid": "688c46fb-5edb-40a3-8273-1af7923e2215",
|
|
"template_version": "17",
|
|
"timestamp": "1566552828",
|
|
"uuid": "e8a2c8f3-145e-47a6-83fe-139a0629e77c",
|
|
"ObjectReference": [
|
|
{
|
|
"comment": "",
|
|
"object_uuid": "e8a2c8f3-145e-47a6-83fe-139a0629e77c",
|
|
"referenced_uuid": "3cf7cf8e-f19a-4306-bd46-e65583216baa",
|
|
"relationship_type": "analysed-with",
|
|
"timestamp": "1566552843",
|
|
"uuid": "5d5fb30b-6b74-4316-81f2-493b950d210f"
|
|
}
|
|
],
|
|
"Attribute": [
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "md5",
|
|
"timestamp": "1565607643",
|
|
"to_ids": true,
|
|
"type": "md5",
|
|
"uuid": "3fa90019-3dd9-4e74-ac09-0cdca755b378",
|
|
"value": "dd4389198abe57219d74928d6e775f6b"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha1",
|
|
"timestamp": "1565607643",
|
|
"to_ids": true,
|
|
"type": "sha1",
|
|
"uuid": "709e4f16-831c-455d-a2c7-7d686ce51a38",
|
|
"value": "ded6509458df62d3ce60c68f3a2a87e59f1f96be"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha256",
|
|
"timestamp": "1565607643",
|
|
"to_ids": true,
|
|
"type": "sha256",
|
|
"uuid": "301f06e8-c458-4ff5-a943-8de55d8b1056",
|
|
"value": "82535c7c8c1d8d49ffefe1731c7a57b9e78fd96a864c39cdc4296b5d3afb5503"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "VirusTotal report",
|
|
"meta-category": "misc",
|
|
"name": "virustotal-report",
|
|
"template_uuid": "d7dd0154-e04f-4c34-a2fb-79f3a3a52aa4",
|
|
"template_version": "2",
|
|
"timestamp": "1566552828",
|
|
"uuid": "3cf7cf8e-f19a-4306-bd46-e65583216baa",
|
|
"Attribute": [
|
|
{
|
|
"category": "Other",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "last-submission",
|
|
"timestamp": "1565607643",
|
|
"to_ids": false,
|
|
"type": "datetime",
|
|
"uuid": "2e203312-afc1-41aa-8d9c-307a0bdfe179",
|
|
"value": "2019-08-22T08:12:24"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "permalink",
|
|
"timestamp": "1565607643",
|
|
"to_ids": false,
|
|
"type": "link",
|
|
"uuid": "d3b34e11-ebaa-4824-a540-bbf287bc401f",
|
|
"value": "https://www.virustotal.com/file/82535c7c8c1d8d49ffefe1731c7a57b9e78fd96a864c39cdc4296b5d3afb5503/analysis/1566461544/"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": true,
|
|
"object_relation": "detection-ratio",
|
|
"timestamp": "1565607643",
|
|
"to_ids": false,
|
|
"type": "text",
|
|
"uuid": "c02cb983-e0e4-4d5c-9938-aeb916fbd602",
|
|
"value": "38/67"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "File object describing a file with meta-information",
|
|
"meta-category": "file",
|
|
"name": "file",
|
|
"template_uuid": "688c46fb-5edb-40a3-8273-1af7923e2215",
|
|
"template_version": "17",
|
|
"timestamp": "1566552828",
|
|
"uuid": "cd784941-a6e5-4ff2-b4d2-8e0201d5fabd",
|
|
"ObjectReference": [
|
|
{
|
|
"comment": "",
|
|
"object_uuid": "cd784941-a6e5-4ff2-b4d2-8e0201d5fabd",
|
|
"referenced_uuid": "116175d9-f786-4417-91c1-e787621fc175",
|
|
"relationship_type": "analysed-with",
|
|
"timestamp": "1566552843",
|
|
"uuid": "5d5fb30b-1320-4ab5-83bc-4e96950d210f"
|
|
}
|
|
],
|
|
"Attribute": [
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "md5",
|
|
"timestamp": "1565607621",
|
|
"to_ids": true,
|
|
"type": "md5",
|
|
"uuid": "e49d9745-442a-4852-9330-514b2407f12d",
|
|
"value": "b9806b73c97d1eab5c4dde19fb20a403"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha1",
|
|
"timestamp": "1565607621",
|
|
"to_ids": true,
|
|
"type": "sha1",
|
|
"uuid": "3211b0b9-2f7b-4e10-bbd9-0826889dce3a",
|
|
"value": "03929a5530639c1d9dbd395a298c59fd7eff1dec"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha256",
|
|
"timestamp": "1565607621",
|
|
"to_ids": true,
|
|
"type": "sha256",
|
|
"uuid": "588bb427-de09-465a-a570-70283003fb2d",
|
|
"value": "14996a7f925bb15609d7d10a15813054ffbff083291925417ecaf257e38e5fa9"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "VirusTotal report",
|
|
"meta-category": "misc",
|
|
"name": "virustotal-report",
|
|
"template_uuid": "d7dd0154-e04f-4c34-a2fb-79f3a3a52aa4",
|
|
"template_version": "2",
|
|
"timestamp": "1566552828",
|
|
"uuid": "116175d9-f786-4417-91c1-e787621fc175",
|
|
"Attribute": [
|
|
{
|
|
"category": "Other",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "last-submission",
|
|
"timestamp": "1565607621",
|
|
"to_ids": false,
|
|
"type": "datetime",
|
|
"uuid": "b0318569-a903-42a8-93de-dca09af7e090",
|
|
"value": "2019-08-22T14:12:20"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "permalink",
|
|
"timestamp": "1565607621",
|
|
"to_ids": false,
|
|
"type": "link",
|
|
"uuid": "b799a68a-ee70-474a-a245-da4ede841dbf",
|
|
"value": "https://www.virustotal.com/file/14996a7f925bb15609d7d10a15813054ffbff083291925417ecaf257e38e5fa9/analysis/1566483140/"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": true,
|
|
"object_relation": "detection-ratio",
|
|
"timestamp": "1565607621",
|
|
"to_ids": false,
|
|
"type": "text",
|
|
"uuid": "e74ef843-3680-41d3-b7db-1b0b83d01166",
|
|
"value": "42/69"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "File object describing a file with meta-information",
|
|
"meta-category": "file",
|
|
"name": "file",
|
|
"template_uuid": "688c46fb-5edb-40a3-8273-1af7923e2215",
|
|
"template_version": "17",
|
|
"timestamp": "1566552829",
|
|
"uuid": "583f80b7-150f-43b8-984c-507183734547",
|
|
"ObjectReference": [
|
|
{
|
|
"comment": "",
|
|
"object_uuid": "583f80b7-150f-43b8-984c-507183734547",
|
|
"referenced_uuid": "7c9894ca-7a08-4157-a60a-2dbfdead61bb",
|
|
"relationship_type": "analysed-with",
|
|
"timestamp": "1566552843",
|
|
"uuid": "5d5fb30b-31f8-4bd4-a559-4908950d210f"
|
|
}
|
|
],
|
|
"Attribute": [
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "md5",
|
|
"timestamp": "1565607629",
|
|
"to_ids": true,
|
|
"type": "md5",
|
|
"uuid": "f2004488-9201-4563-b917-2ee0daed1f33",
|
|
"value": "fd301450a00094407729b9139c6c544a"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha1",
|
|
"timestamp": "1565607629",
|
|
"to_ids": true,
|
|
"type": "sha1",
|
|
"uuid": "e1b29b6f-646d-4d56-8b65-65a6ea5512fb",
|
|
"value": "b6e436a0fff117a1c3d3d70947f62d4cac66c95e"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha256",
|
|
"timestamp": "1565607629",
|
|
"to_ids": true,
|
|
"type": "sha256",
|
|
"uuid": "18f81b4b-d9f5-4bd7-88d1-ac55133984cb",
|
|
"value": "242a1b8f9253b678c03507f137ade7a369c43964a9e2ee21b88289feeb61d208"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "VirusTotal report",
|
|
"meta-category": "misc",
|
|
"name": "virustotal-report",
|
|
"template_uuid": "d7dd0154-e04f-4c34-a2fb-79f3a3a52aa4",
|
|
"template_version": "2",
|
|
"timestamp": "1566552831",
|
|
"uuid": "7c9894ca-7a08-4157-a60a-2dbfdead61bb",
|
|
"Attribute": [
|
|
{
|
|
"category": "Other",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "last-submission",
|
|
"timestamp": "1565607629",
|
|
"to_ids": false,
|
|
"type": "datetime",
|
|
"uuid": "97cc9c37-8a59-4b7b-a326-5bd60584ea2b",
|
|
"value": "2019-08-14T06:12:12"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "permalink",
|
|
"timestamp": "1565607629",
|
|
"to_ids": false,
|
|
"type": "link",
|
|
"uuid": "6cb2c50f-c405-48f2-a762-d671baef749a",
|
|
"value": "https://www.virustotal.com/file/242a1b8f9253b678c03507f137ade7a369c43964a9e2ee21b88289feeb61d208/analysis/1565763132/"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": true,
|
|
"object_relation": "detection-ratio",
|
|
"timestamp": "1565607629",
|
|
"to_ids": false,
|
|
"type": "text",
|
|
"uuid": "0bc7ec5f-3179-44d6-bdf4-725b3ff81715",
|
|
"value": "31/70"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "File object describing a file with meta-information",
|
|
"meta-category": "file",
|
|
"name": "file",
|
|
"template_uuid": "688c46fb-5edb-40a3-8273-1af7923e2215",
|
|
"template_version": "17",
|
|
"timestamp": "1566552832",
|
|
"uuid": "7e7268fb-a0fc-4c93-bc16-ba606b5e988b",
|
|
"ObjectReference": [
|
|
{
|
|
"comment": "",
|
|
"object_uuid": "7e7268fb-a0fc-4c93-bc16-ba606b5e988b",
|
|
"referenced_uuid": "8e631b4f-7877-4d15-8bae-4026529a128a",
|
|
"relationship_type": "analysed-with",
|
|
"timestamp": "1566552843",
|
|
"uuid": "5d5fb30b-b128-4e6c-acae-42bb950d210f"
|
|
}
|
|
],
|
|
"Attribute": [
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "md5",
|
|
"timestamp": "1565607622",
|
|
"to_ids": true,
|
|
"type": "md5",
|
|
"uuid": "89f276f4-1518-48d3-a5f2-eae89f165ca4",
|
|
"value": "4da12f54f0b7413d04f6832d26ee4633"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha1",
|
|
"timestamp": "1565607622",
|
|
"to_ids": true,
|
|
"type": "sha1",
|
|
"uuid": "ee702f21-ee58-4d86-9891-021545825292",
|
|
"value": "0ac64e08e63601ad9d6a4ef019e5b374784af80a"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha256",
|
|
"timestamp": "1565607622",
|
|
"to_ids": true,
|
|
"type": "sha256",
|
|
"uuid": "0da8e96a-8c31-4824-8267-fe1dda14db57",
|
|
"value": "86fca593acbcac34c59797cb38d5ca32986f66555875c79648cc57d3a443a46d"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "VirusTotal report",
|
|
"meta-category": "misc",
|
|
"name": "virustotal-report",
|
|
"template_uuid": "d7dd0154-e04f-4c34-a2fb-79f3a3a52aa4",
|
|
"template_version": "2",
|
|
"timestamp": "1566552832",
|
|
"uuid": "8e631b4f-7877-4d15-8bae-4026529a128a",
|
|
"Attribute": [
|
|
{
|
|
"category": "Other",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "last-submission",
|
|
"timestamp": "1565607622",
|
|
"to_ids": false,
|
|
"type": "datetime",
|
|
"uuid": "45d6a88e-cb2a-4a2a-bc10-acfdc2242299",
|
|
"value": "2019-08-14T06:10:43"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "permalink",
|
|
"timestamp": "1565607622",
|
|
"to_ids": false,
|
|
"type": "link",
|
|
"uuid": "33a390cf-e3e9-4759-9fbe-070928b8502e",
|
|
"value": "https://www.virustotal.com/file/86fca593acbcac34c59797cb38d5ca32986f66555875c79648cc57d3a443a46d/analysis/1565763043/"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": true,
|
|
"object_relation": "detection-ratio",
|
|
"timestamp": "1565607622",
|
|
"to_ids": false,
|
|
"type": "text",
|
|
"uuid": "634fb5ab-2337-4cf5-a1b8-0a94da62accc",
|
|
"value": "34/67"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "File object describing a file with meta-information",
|
|
"meta-category": "file",
|
|
"name": "file",
|
|
"template_uuid": "688c46fb-5edb-40a3-8273-1af7923e2215",
|
|
"template_version": "17",
|
|
"timestamp": "1566552832",
|
|
"uuid": "2b52403a-fe7b-4b5e-9b93-ca6d6eed3654",
|
|
"ObjectReference": [
|
|
{
|
|
"comment": "",
|
|
"object_uuid": "2b52403a-fe7b-4b5e-9b93-ca6d6eed3654",
|
|
"referenced_uuid": "73744f82-718a-484b-8057-e78bf0d1f92d",
|
|
"relationship_type": "analysed-with",
|
|
"timestamp": "1566552843",
|
|
"uuid": "5d5fb30b-e8f8-415f-b2f1-4cdb950d210f"
|
|
}
|
|
],
|
|
"Attribute": [
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "md5",
|
|
"timestamp": "1565607644",
|
|
"to_ids": true,
|
|
"type": "md5",
|
|
"uuid": "28c1d5ce-d212-44af-820b-476833a358b7",
|
|
"value": "9bc58a40aa36674fe4a44abfd938a8db"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha1",
|
|
"timestamp": "1565607644",
|
|
"to_ids": true,
|
|
"type": "sha1",
|
|
"uuid": "fb193bba-7ead-414a-a616-71751c32611e",
|
|
"value": "2b7404f6b0075bc1192d61d4af135d521d5f08a3"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha256",
|
|
"timestamp": "1565607644",
|
|
"to_ids": true,
|
|
"type": "sha256",
|
|
"uuid": "b987467d-e9bc-4386-957f-820badc9e9b8",
|
|
"value": "446b37b0b0ffcb59ae0df18cf9125f62e128d475eb8f5a9a2caa7a3c3448565d"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "VirusTotal report",
|
|
"meta-category": "misc",
|
|
"name": "virustotal-report",
|
|
"template_uuid": "d7dd0154-e04f-4c34-a2fb-79f3a3a52aa4",
|
|
"template_version": "2",
|
|
"timestamp": "1566552832",
|
|
"uuid": "73744f82-718a-484b-8057-e78bf0d1f92d",
|
|
"Attribute": [
|
|
{
|
|
"category": "Other",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "last-submission",
|
|
"timestamp": "1565607644",
|
|
"to_ids": false,
|
|
"type": "datetime",
|
|
"uuid": "0a3f9499-cb4c-4465-8a81-cf1449a787d2",
|
|
"value": "2019-08-06T00:39:44"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "permalink",
|
|
"timestamp": "1565607644",
|
|
"to_ids": false,
|
|
"type": "link",
|
|
"uuid": "2138e29b-82c9-416c-88bd-1a2e06ddf352",
|
|
"value": "https://www.virustotal.com/file/446b37b0b0ffcb59ae0df18cf9125f62e128d475eb8f5a9a2caa7a3c3448565d/analysis/1565051984/"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": true,
|
|
"object_relation": "detection-ratio",
|
|
"timestamp": "1565607644",
|
|
"to_ids": false,
|
|
"type": "text",
|
|
"uuid": "f87df041-8e64-402b-9fd2-90d3a7441ed9",
|
|
"value": "33/71"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "File object describing a file with meta-information",
|
|
"meta-category": "file",
|
|
"name": "file",
|
|
"template_uuid": "688c46fb-5edb-40a3-8273-1af7923e2215",
|
|
"template_version": "17",
|
|
"timestamp": "1566552833",
|
|
"uuid": "c7f78389-8821-43ca-8d46-687afc70fa6a",
|
|
"ObjectReference": [
|
|
{
|
|
"comment": "",
|
|
"object_uuid": "c7f78389-8821-43ca-8d46-687afc70fa6a",
|
|
"referenced_uuid": "b97cd856-8dae-4602-aa2f-db8daf1f1129",
|
|
"relationship_type": "analysed-with",
|
|
"timestamp": "1566552843",
|
|
"uuid": "5d5fb30b-732c-4cc6-836f-400f950d210f"
|
|
}
|
|
],
|
|
"Attribute": [
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "md5",
|
|
"timestamp": "1565607625",
|
|
"to_ids": true,
|
|
"type": "md5",
|
|
"uuid": "6d2bbe90-c0b0-4ea8-bd4e-026d373b1e1b",
|
|
"value": "33edc43992137c0d4b07a4c1ed389e1e"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha1",
|
|
"timestamp": "1565607625",
|
|
"to_ids": true,
|
|
"type": "sha1",
|
|
"uuid": "515dffa0-15d0-41be-8d0e-70b3f550d1f6",
|
|
"value": "4c130aa110b290a0cf4ff1c099ea2a705081a9cb"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha256",
|
|
"timestamp": "1565607625",
|
|
"to_ids": true,
|
|
"type": "sha256",
|
|
"uuid": "158735a2-bbea-47bf-8ab1-2627f37f5d9c",
|
|
"value": "590bfc6b7fbd89e629e551fa9d70f1cdc0773d73dfea503d204a05014a8f0191"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "VirusTotal report",
|
|
"meta-category": "misc",
|
|
"name": "virustotal-report",
|
|
"template_uuid": "d7dd0154-e04f-4c34-a2fb-79f3a3a52aa4",
|
|
"template_version": "2",
|
|
"timestamp": "1566552833",
|
|
"uuid": "b97cd856-8dae-4602-aa2f-db8daf1f1129",
|
|
"Attribute": [
|
|
{
|
|
"category": "Other",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "last-submission",
|
|
"timestamp": "1565607625",
|
|
"to_ids": false,
|
|
"type": "datetime",
|
|
"uuid": "c6f36377-9234-426a-8fca-68c4bcc1eb56",
|
|
"value": "2019-08-06T00:39:45"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "permalink",
|
|
"timestamp": "1565607625",
|
|
"to_ids": false,
|
|
"type": "link",
|
|
"uuid": "8c941c57-845a-4350-9a91-f53cc2b55ac4",
|
|
"value": "https://www.virustotal.com/file/590bfc6b7fbd89e629e551fa9d70f1cdc0773d73dfea503d204a05014a8f0191/analysis/1565051985/"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": true,
|
|
"object_relation": "detection-ratio",
|
|
"timestamp": "1565607625",
|
|
"to_ids": false,
|
|
"type": "text",
|
|
"uuid": "fa07a4cc-cc41-4975-bf41-8004cf0077c0",
|
|
"value": "25/69"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "File object describing a file with meta-information",
|
|
"meta-category": "file",
|
|
"name": "file",
|
|
"template_uuid": "688c46fb-5edb-40a3-8273-1af7923e2215",
|
|
"template_version": "17",
|
|
"timestamp": "1566552833",
|
|
"uuid": "477d1696-bc96-462f-afed-7aac5dac22e3",
|
|
"ObjectReference": [
|
|
{
|
|
"comment": "",
|
|
"object_uuid": "477d1696-bc96-462f-afed-7aac5dac22e3",
|
|
"referenced_uuid": "2d8d71da-d2e0-4004-9cc1-fc2b68fca4e3",
|
|
"relationship_type": "analysed-with",
|
|
"timestamp": "1566552843",
|
|
"uuid": "5d5fb30b-df28-4de5-93e5-4bec950d210f"
|
|
}
|
|
],
|
|
"Attribute": [
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "md5",
|
|
"timestamp": "1565619038",
|
|
"to_ids": true,
|
|
"type": "md5",
|
|
"uuid": "a92ca167-34f6-4285-9046-27c7f64bd08d",
|
|
"value": "22b2718408aa6dbbfb05066325838468"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha1",
|
|
"timestamp": "1565619038",
|
|
"to_ids": true,
|
|
"type": "sha1",
|
|
"uuid": "4b1d3a18-08c5-4624-b160-5ac99c0779a5",
|
|
"value": "442e6cc28d118cfaf1a5482e2000c7dc00d9a7b9"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha256",
|
|
"timestamp": "1565619038",
|
|
"to_ids": true,
|
|
"type": "sha256",
|
|
"uuid": "d18b00ae-167b-4692-8804-44ac8981b8d4",
|
|
"value": "1c0a896f8627e0974e113143fe0d9d7991ca170d250eec92359ec00b3296db82"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "VirusTotal report",
|
|
"meta-category": "misc",
|
|
"name": "virustotal-report",
|
|
"template_uuid": "d7dd0154-e04f-4c34-a2fb-79f3a3a52aa4",
|
|
"template_version": "2",
|
|
"timestamp": "1566552833",
|
|
"uuid": "2d8d71da-d2e0-4004-9cc1-fc2b68fca4e3",
|
|
"Attribute": [
|
|
{
|
|
"category": "Other",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "last-submission",
|
|
"timestamp": "1565619038",
|
|
"to_ids": false,
|
|
"type": "datetime",
|
|
"uuid": "ad9aed51-be2a-46dd-a742-c6a015593afe",
|
|
"value": "2019-08-06T00:39:40"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "permalink",
|
|
"timestamp": "1565619038",
|
|
"to_ids": false,
|
|
"type": "link",
|
|
"uuid": "463bca38-c5db-45cf-b071-3a5f94bfe081",
|
|
"value": "https://www.virustotal.com/file/1c0a896f8627e0974e113143fe0d9d7991ca170d250eec92359ec00b3296db82/analysis/1565051980/"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": true,
|
|
"object_relation": "detection-ratio",
|
|
"timestamp": "1565619038",
|
|
"to_ids": false,
|
|
"type": "text",
|
|
"uuid": "7c62ad0a-b7ac-422c-abce-155d4a93cfb2",
|
|
"value": "16/72"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "File object describing a file with meta-information",
|
|
"meta-category": "file",
|
|
"name": "file",
|
|
"template_uuid": "688c46fb-5edb-40a3-8273-1af7923e2215",
|
|
"template_version": "17",
|
|
"timestamp": "1566552833",
|
|
"uuid": "2c001844-70ba-431f-b9e2-c81f88058ed8",
|
|
"ObjectReference": [
|
|
{
|
|
"comment": "",
|
|
"object_uuid": "2c001844-70ba-431f-b9e2-c81f88058ed8",
|
|
"referenced_uuid": "8aa45243-df40-4d10-bf17-d3e2599fed0a",
|
|
"relationship_type": "analysed-with",
|
|
"timestamp": "1566552843",
|
|
"uuid": "5d5fb30b-38b8-488c-aac0-4d11950d210f"
|
|
}
|
|
],
|
|
"Attribute": [
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "md5",
|
|
"timestamp": "1565607227",
|
|
"to_ids": true,
|
|
"type": "md5",
|
|
"uuid": "641027a9-9538-4813-84cc-9b33f56ae6e7",
|
|
"value": "6370323a5960f06b77a61487b75aabe3"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha1",
|
|
"timestamp": "1565607227",
|
|
"to_ids": true,
|
|
"type": "sha1",
|
|
"uuid": "7e56f2c7-fa4d-470a-ad48-87baec4742f9",
|
|
"value": "3bb345032b6d0226d6771ba65fe4da0faf628631"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha256",
|
|
"timestamp": "1565607227",
|
|
"to_ids": true,
|
|
"type": "sha256",
|
|
"uuid": "fb5d7b29-c3c0-426e-a4b0-0c9556b74c9f",
|
|
"value": "cd43a176d2476cd717395a5d106cc4bc48aa4ca9b3a4e2047426c6f9aa045ea0"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "VirusTotal report",
|
|
"meta-category": "misc",
|
|
"name": "virustotal-report",
|
|
"template_uuid": "d7dd0154-e04f-4c34-a2fb-79f3a3a52aa4",
|
|
"template_version": "2",
|
|
"timestamp": "1566552834",
|
|
"uuid": "8aa45243-df40-4d10-bf17-d3e2599fed0a",
|
|
"Attribute": [
|
|
{
|
|
"category": "Other",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "last-submission",
|
|
"timestamp": "1565607227",
|
|
"to_ids": false,
|
|
"type": "datetime",
|
|
"uuid": "7c423234-eff8-4a80-837c-88b7c3d8e4b0",
|
|
"value": "2019-08-22T14:12:48"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "permalink",
|
|
"timestamp": "1565607227",
|
|
"to_ids": false,
|
|
"type": "link",
|
|
"uuid": "55977d96-b891-4b8c-a209-037aaf4a20d0",
|
|
"value": "https://www.virustotal.com/file/cd43a176d2476cd717395a5d106cc4bc48aa4ca9b3a4e2047426c6f9aa045ea0/analysis/1566483168/"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": true,
|
|
"object_relation": "detection-ratio",
|
|
"timestamp": "1565607227",
|
|
"to_ids": false,
|
|
"type": "text",
|
|
"uuid": "88b8201a-6590-44c4-8415-e0ed322698bc",
|
|
"value": "32/69"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "File object describing a file with meta-information",
|
|
"meta-category": "file",
|
|
"name": "file",
|
|
"template_uuid": "688c46fb-5edb-40a3-8273-1af7923e2215",
|
|
"template_version": "17",
|
|
"timestamp": "1566552834",
|
|
"uuid": "58281799-2547-4047-98cd-60e10f04c1bd",
|
|
"ObjectReference": [
|
|
{
|
|
"comment": "",
|
|
"object_uuid": "58281799-2547-4047-98cd-60e10f04c1bd",
|
|
"referenced_uuid": "87010e33-7b38-419d-8421-5eaa07cb8c4b",
|
|
"relationship_type": "analysed-with",
|
|
"timestamp": "1566552843",
|
|
"uuid": "5d5fb30b-b99c-43a2-9a26-405e950d210f"
|
|
}
|
|
],
|
|
"Attribute": [
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "md5",
|
|
"timestamp": "1565255667",
|
|
"to_ids": true,
|
|
"type": "md5",
|
|
"uuid": "0ef143b4-dda1-49c6-a19e-7ade1397fb95",
|
|
"value": "15e50c8efe8f72064d51fc04437bed26"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha1",
|
|
"timestamp": "1565255667",
|
|
"to_ids": true,
|
|
"type": "sha1",
|
|
"uuid": "38d115b3-0182-47ff-a16f-f1130f24e630",
|
|
"value": "8ed8cb784512f7dadd147347fc94e945faf16338"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha256",
|
|
"timestamp": "1565255667",
|
|
"to_ids": true,
|
|
"type": "sha256",
|
|
"uuid": "04f6b21e-c67e-4286-b455-29044f25179d",
|
|
"value": "337016b4f74c35030c825bffb7e5bfb56e61c8522183ce14a995ea9e032e7505"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "VirusTotal report",
|
|
"meta-category": "misc",
|
|
"name": "virustotal-report",
|
|
"template_uuid": "d7dd0154-e04f-4c34-a2fb-79f3a3a52aa4",
|
|
"template_version": "2",
|
|
"timestamp": "1566552834",
|
|
"uuid": "87010e33-7b38-419d-8421-5eaa07cb8c4b",
|
|
"Attribute": [
|
|
{
|
|
"category": "Other",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "last-submission",
|
|
"timestamp": "1565255667",
|
|
"to_ids": false,
|
|
"type": "datetime",
|
|
"uuid": "8e530b7b-d673-41d1-8fc0-31c2d6b98b6e",
|
|
"value": "2019-08-06T00:39:42"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "permalink",
|
|
"timestamp": "1565255667",
|
|
"to_ids": false,
|
|
"type": "link",
|
|
"uuid": "7cb2e7db-f8be-4f73-84bb-d4b9479ccede",
|
|
"value": "https://www.virustotal.com/file/337016b4f74c35030c825bffb7e5bfb56e61c8522183ce14a995ea9e032e7505/analysis/1565051982/"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": true,
|
|
"object_relation": "detection-ratio",
|
|
"timestamp": "1565255667",
|
|
"to_ids": false,
|
|
"type": "text",
|
|
"uuid": "7d9d1334-1e67-4587-89e4-fefc1747c19f",
|
|
"value": "4/72"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "File object describing a file with meta-information",
|
|
"meta-category": "file",
|
|
"name": "file",
|
|
"template_uuid": "688c46fb-5edb-40a3-8273-1af7923e2215",
|
|
"template_version": "17",
|
|
"timestamp": "1566552834",
|
|
"uuid": "ac105d47-7fab-4260-ad19-e2827a659096",
|
|
"ObjectReference": [
|
|
{
|
|
"comment": "",
|
|
"object_uuid": "ac105d47-7fab-4260-ad19-e2827a659096",
|
|
"referenced_uuid": "63dce8e1-33e9-48be-8523-b5db67038282",
|
|
"relationship_type": "analysed-with",
|
|
"timestamp": "1566552843",
|
|
"uuid": "5d5fb30b-4bd0-4694-9d09-4b57950d210f"
|
|
}
|
|
],
|
|
"Attribute": [
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "md5",
|
|
"timestamp": "1565607227",
|
|
"to_ids": true,
|
|
"type": "md5",
|
|
"uuid": "a2af5328-8592-4c0c-b345-88f949827056",
|
|
"value": "48e6c558a87577281a6b1f37e426f8ed"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha1",
|
|
"timestamp": "1565607227",
|
|
"to_ids": true,
|
|
"type": "sha1",
|
|
"uuid": "bf85aec5-2881-44c5-8d18-bb5ce261da5e",
|
|
"value": "946a24dfbd0ae94209ef7c284d3f462548566a3c"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha256",
|
|
"timestamp": "1565607227",
|
|
"to_ids": true,
|
|
"type": "sha256",
|
|
"uuid": "ead2a2d3-0821-4d5a-a1b7-d58262e26cd3",
|
|
"value": "3a4d8962e6deb2c0bf79b039695d25db85ac91f5b46e86397190b8c4a0ad95ef"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "VirusTotal report",
|
|
"meta-category": "misc",
|
|
"name": "virustotal-report",
|
|
"template_uuid": "d7dd0154-e04f-4c34-a2fb-79f3a3a52aa4",
|
|
"template_version": "2",
|
|
"timestamp": "1566552835",
|
|
"uuid": "63dce8e1-33e9-48be-8523-b5db67038282",
|
|
"Attribute": [
|
|
{
|
|
"category": "Other",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "last-submission",
|
|
"timestamp": "1565607227",
|
|
"to_ids": false,
|
|
"type": "datetime",
|
|
"uuid": "f153494c-3b6b-4b22-b71a-34646d965d1e",
|
|
"value": "2019-08-06T00:39:42"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "permalink",
|
|
"timestamp": "1565607227",
|
|
"to_ids": false,
|
|
"type": "link",
|
|
"uuid": "3ced7f8f-fcf5-4de2-96ed-d9edf0311de3",
|
|
"value": "https://www.virustotal.com/file/3a4d8962e6deb2c0bf79b039695d25db85ac91f5b46e86397190b8c4a0ad95ef/analysis/1565051982/"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": true,
|
|
"object_relation": "detection-ratio",
|
|
"timestamp": "1565607227",
|
|
"to_ids": false,
|
|
"type": "text",
|
|
"uuid": "d7483c8e-d038-4ba3-9e98-9cf015824ac9",
|
|
"value": "8/71"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "File object describing a file with meta-information",
|
|
"meta-category": "file",
|
|
"name": "file",
|
|
"template_uuid": "688c46fb-5edb-40a3-8273-1af7923e2215",
|
|
"template_version": "17",
|
|
"timestamp": "1566552835",
|
|
"uuid": "206578ce-144d-4490-b193-f64ae055a583",
|
|
"ObjectReference": [
|
|
{
|
|
"comment": "",
|
|
"object_uuid": "206578ce-144d-4490-b193-f64ae055a583",
|
|
"referenced_uuid": "0dc7048e-96ee-4e68-a2eb-403dd3883ae3",
|
|
"relationship_type": "analysed-with",
|
|
"timestamp": "1566552843",
|
|
"uuid": "5d5fb30b-61f0-46ab-a417-43d6950d210f"
|
|
}
|
|
],
|
|
"Attribute": [
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "md5",
|
|
"timestamp": "1565607230",
|
|
"to_ids": true,
|
|
"type": "md5",
|
|
"uuid": "6ba959fe-5c32-4f8a-9da2-2ca48e922d95",
|
|
"value": "396b6502c46b45d9f5efff728fa27055"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha1",
|
|
"timestamp": "1565607230",
|
|
"to_ids": true,
|
|
"type": "sha1",
|
|
"uuid": "033a7f23-db92-4261-87ef-9ab715358bf1",
|
|
"value": "f05bc018c90b560dc4932758956adffbc10588ce"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha256",
|
|
"timestamp": "1565607230",
|
|
"to_ids": true,
|
|
"type": "sha256",
|
|
"uuid": "a5a13877-8648-4623-bb46-4ce38281a578",
|
|
"value": "7980a1af165c711aaafcd1e60151cb66a58f4ccd3a0394fbecf2ba903ad50b55"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "VirusTotal report",
|
|
"meta-category": "misc",
|
|
"name": "virustotal-report",
|
|
"template_uuid": "d7dd0154-e04f-4c34-a2fb-79f3a3a52aa4",
|
|
"template_version": "2",
|
|
"timestamp": "1566552835",
|
|
"uuid": "0dc7048e-96ee-4e68-a2eb-403dd3883ae3",
|
|
"Attribute": [
|
|
{
|
|
"category": "Other",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "last-submission",
|
|
"timestamp": "1565607230",
|
|
"to_ids": false,
|
|
"type": "datetime",
|
|
"uuid": "4dd18883-857f-44f7-8f46-86510c0528ec",
|
|
"value": "2019-08-06T00:39:45"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "permalink",
|
|
"timestamp": "1565607230",
|
|
"to_ids": false,
|
|
"type": "link",
|
|
"uuid": "883d7cd4-16f2-4eb4-98a1-6ee7fdf566a3",
|
|
"value": "https://www.virustotal.com/file/7980a1af165c711aaafcd1e60151cb66a58f4ccd3a0394fbecf2ba903ad50b55/analysis/1565051985/"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": true,
|
|
"object_relation": "detection-ratio",
|
|
"timestamp": "1565607230",
|
|
"to_ids": false,
|
|
"type": "text",
|
|
"uuid": "35c1a363-34b0-4f3d-9e48-fb1e4be6a548",
|
|
"value": "4/71"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "File object describing a file with meta-information",
|
|
"meta-category": "file",
|
|
"name": "file",
|
|
"template_uuid": "688c46fb-5edb-40a3-8273-1af7923e2215",
|
|
"template_version": "17",
|
|
"timestamp": "1566552836",
|
|
"uuid": "928ffbe0-4d94-455a-97cf-8202e79d6626",
|
|
"ObjectReference": [
|
|
{
|
|
"comment": "",
|
|
"object_uuid": "928ffbe0-4d94-455a-97cf-8202e79d6626",
|
|
"referenced_uuid": "0a71b5ae-12ea-4aa3-bb82-6f031ff3765b",
|
|
"relationship_type": "analysed-with",
|
|
"timestamp": "1566552844",
|
|
"uuid": "5d5fb30c-bf58-49da-be4b-402d950d210f"
|
|
}
|
|
],
|
|
"Attribute": [
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "md5",
|
|
"timestamp": "1565255667",
|
|
"to_ids": true,
|
|
"type": "md5",
|
|
"uuid": "ca6aee5c-b0d2-43a6-ac83-75bf87ff565a",
|
|
"value": "1acc3b68da6b0a800cd58af30d47b01e"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha1",
|
|
"timestamp": "1565255667",
|
|
"to_ids": true,
|
|
"type": "sha1",
|
|
"uuid": "92184305-4f28-46e7-9b6f-4dc29047fe94",
|
|
"value": "9c413075aab7ef7876b8dc8d7b7c1b9b96842c6e"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha256",
|
|
"timestamp": "1565255667",
|
|
"to_ids": true,
|
|
"type": "sha256",
|
|
"uuid": "08d3ea9e-24a3-4bea-aec1-8517eba89cc8",
|
|
"value": "f1d4cc1e08d99497e19a29f9f915b813611b1f569a961bb7bd1ebc41a0b5af08"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "VirusTotal report",
|
|
"meta-category": "misc",
|
|
"name": "virustotal-report",
|
|
"template_uuid": "d7dd0154-e04f-4c34-a2fb-79f3a3a52aa4",
|
|
"template_version": "2",
|
|
"timestamp": "1566552837",
|
|
"uuid": "0a71b5ae-12ea-4aa3-bb82-6f031ff3765b",
|
|
"Attribute": [
|
|
{
|
|
"category": "Other",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "last-submission",
|
|
"timestamp": "1565255667",
|
|
"to_ids": false,
|
|
"type": "datetime",
|
|
"uuid": "197c6b8b-8408-4769-acbb-f4dfdcc9dac0",
|
|
"value": "2019-08-06T00:39:52"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "permalink",
|
|
"timestamp": "1565255667",
|
|
"to_ids": false,
|
|
"type": "link",
|
|
"uuid": "10aa9680-4f6f-4568-a5fc-274bf7e91101",
|
|
"value": "https://www.virustotal.com/file/f1d4cc1e08d99497e19a29f9f915b813611b1f569a961bb7bd1ebc41a0b5af08/analysis/1565051992/"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": true,
|
|
"object_relation": "detection-ratio",
|
|
"timestamp": "1565255667",
|
|
"to_ids": false,
|
|
"type": "text",
|
|
"uuid": "0c650060-f835-4d2f-a161-2836b9f2d7a0",
|
|
"value": "9/71"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "File object describing a file with meta-information",
|
|
"meta-category": "file",
|
|
"name": "file",
|
|
"template_uuid": "688c46fb-5edb-40a3-8273-1af7923e2215",
|
|
"template_version": "17",
|
|
"timestamp": "1566552837",
|
|
"uuid": "b2e3f716-6a47-4f4c-8d2d-f329559a4cad",
|
|
"ObjectReference": [
|
|
{
|
|
"comment": "",
|
|
"object_uuid": "b2e3f716-6a47-4f4c-8d2d-f329559a4cad",
|
|
"referenced_uuid": "56045c01-e584-420e-97ad-340f8364c026",
|
|
"relationship_type": "analysed-with",
|
|
"timestamp": "1566552844",
|
|
"uuid": "5d5fb30c-30bc-4030-b852-42cb950d210f"
|
|
}
|
|
],
|
|
"Attribute": [
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "md5",
|
|
"timestamp": "1565607622",
|
|
"to_ids": true,
|
|
"type": "md5",
|
|
"uuid": "8d4b5d1d-dfec-4705-bc1e-89aee8b13282",
|
|
"value": "b2975864ad694469b04165bd09277421"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha1",
|
|
"timestamp": "1565607622",
|
|
"to_ids": true,
|
|
"type": "sha1",
|
|
"uuid": "0fdd217a-d688-4e90-aeed-eede873be476",
|
|
"value": "0922defb82ff1140bbe3481bab27564bb966d50b"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha256",
|
|
"timestamp": "1565607622",
|
|
"to_ids": true,
|
|
"type": "sha256",
|
|
"uuid": "6731a75a-f5f2-4826-98ad-3e93f5d6558e",
|
|
"value": "0e0181499e50fb9ce8029767afdcf60ce21eea2819ce7ada1a3def4d8899c7dc"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "VirusTotal report",
|
|
"meta-category": "misc",
|
|
"name": "virustotal-report",
|
|
"template_uuid": "d7dd0154-e04f-4c34-a2fb-79f3a3a52aa4",
|
|
"template_version": "2",
|
|
"timestamp": "1566552837",
|
|
"uuid": "56045c01-e584-420e-97ad-340f8364c026",
|
|
"Attribute": [
|
|
{
|
|
"category": "Other",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "last-submission",
|
|
"timestamp": "1565607622",
|
|
"to_ids": false,
|
|
"type": "datetime",
|
|
"uuid": "962d2dae-deae-49fe-9bc2-23c4a3f46cad",
|
|
"value": "2019-08-06T00:39:41"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "permalink",
|
|
"timestamp": "1565607622",
|
|
"to_ids": false,
|
|
"type": "link",
|
|
"uuid": "6666edb2-556e-4e0c-aced-1f03fb89648f",
|
|
"value": "https://www.virustotal.com/file/0e0181499e50fb9ce8029767afdcf60ce21eea2819ce7ada1a3def4d8899c7dc/analysis/1565051981/"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": true,
|
|
"object_relation": "detection-ratio",
|
|
"timestamp": "1565607622",
|
|
"to_ids": false,
|
|
"type": "text",
|
|
"uuid": "78f14ca4-ded4-4fa4-afa8-a4ca6ea0fa4c",
|
|
"value": "21/71"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "File object describing a file with meta-information",
|
|
"meta-category": "file",
|
|
"name": "file",
|
|
"template_uuid": "688c46fb-5edb-40a3-8273-1af7923e2215",
|
|
"template_version": "17",
|
|
"timestamp": "1566552838",
|
|
"uuid": "2d52e790-2148-4c46-af5a-3a9cca5167c2",
|
|
"ObjectReference": [
|
|
{
|
|
"comment": "",
|
|
"object_uuid": "2d52e790-2148-4c46-af5a-3a9cca5167c2",
|
|
"referenced_uuid": "924cdf00-0662-44d7-9abe-db984b87a890",
|
|
"relationship_type": "analysed-with",
|
|
"timestamp": "1566552844",
|
|
"uuid": "5d5fb30c-1f68-469a-b2cd-4b1a950d210f"
|
|
}
|
|
],
|
|
"Attribute": [
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "md5",
|
|
"timestamp": "1565607645",
|
|
"to_ids": true,
|
|
"type": "md5",
|
|
"uuid": "5a4815dc-dff5-493c-98de-ffb7008e94ea",
|
|
"value": "5a46d793cf82822cb334b70609a9acd7"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha1",
|
|
"timestamp": "1565607645",
|
|
"to_ids": true,
|
|
"type": "sha1",
|
|
"uuid": "63bca74f-d2ff-4a2b-a6bc-c58a8037f891",
|
|
"value": "56e8743e0773286a4b9e055147d96d53a43beca1"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha256",
|
|
"timestamp": "1565607645",
|
|
"to_ids": true,
|
|
"type": "sha256",
|
|
"uuid": "a82d7ad3-52c4-4d99-8d66-3bd4c2c1c2c1",
|
|
"value": "cde4b654e9bb29d3ace2b3dcd3520039bf8b42f905ac8d9e77845d8b911846e8"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "VirusTotal report",
|
|
"meta-category": "misc",
|
|
"name": "virustotal-report",
|
|
"template_uuid": "d7dd0154-e04f-4c34-a2fb-79f3a3a52aa4",
|
|
"template_version": "2",
|
|
"timestamp": "1566552838",
|
|
"uuid": "924cdf00-0662-44d7-9abe-db984b87a890",
|
|
"Attribute": [
|
|
{
|
|
"category": "Other",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "last-submission",
|
|
"timestamp": "1565607645",
|
|
"to_ids": false,
|
|
"type": "datetime",
|
|
"uuid": "17dadadd-111e-46a8-92b3-1fe16369945a",
|
|
"value": "2019-08-06T00:39:50"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "permalink",
|
|
"timestamp": "1565607645",
|
|
"to_ids": false,
|
|
"type": "link",
|
|
"uuid": "baef6a31-bc30-4c2a-a6d8-e0539ef8dc11",
|
|
"value": "https://www.virustotal.com/file/cde4b654e9bb29d3ace2b3dcd3520039bf8b42f905ac8d9e77845d8b911846e8/analysis/1565051990/"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": true,
|
|
"object_relation": "detection-ratio",
|
|
"timestamp": "1565607645",
|
|
"to_ids": false,
|
|
"type": "text",
|
|
"uuid": "026e02d8-4c19-4f54-969d-6572c629dcff",
|
|
"value": "37/70"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "File object describing a file with meta-information",
|
|
"meta-category": "file",
|
|
"name": "file",
|
|
"template_uuid": "688c46fb-5edb-40a3-8273-1af7923e2215",
|
|
"template_version": "17",
|
|
"timestamp": "1566552838",
|
|
"uuid": "780ea6a4-143e-435e-80ce-a9d640727387",
|
|
"ObjectReference": [
|
|
{
|
|
"comment": "",
|
|
"object_uuid": "780ea6a4-143e-435e-80ce-a9d640727387",
|
|
"referenced_uuid": "171b844c-e483-40b1-9be6-3a72552cad24",
|
|
"relationship_type": "analysed-with",
|
|
"timestamp": "1566552844",
|
|
"uuid": "5d5fb30c-8258-4bc9-85ce-4245950d210f"
|
|
}
|
|
],
|
|
"Attribute": [
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "md5",
|
|
"timestamp": "1565607648",
|
|
"to_ids": true,
|
|
"type": "md5",
|
|
"uuid": "1e8fc87e-e175-4dbe-bb14-05f3048b3bfd",
|
|
"value": "2adb5b013ba4de9a20c7c9e185930675"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha1",
|
|
"timestamp": "1565607648",
|
|
"to_ids": true,
|
|
"type": "sha1",
|
|
"uuid": "5dc1f6e0-324a-49a8-9b5c-ed5c4f9179c1",
|
|
"value": "173664de0a9a08218098abfb86d2c64f25b5ee37"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha256",
|
|
"timestamp": "1565607648",
|
|
"to_ids": true,
|
|
"type": "sha256",
|
|
"uuid": "f513b148-4606-4a0a-998d-44534e9f5d84",
|
|
"value": "eecb72fdd8f19a6ec78b27f47aa978eefbaf0c80c85481292b91e8010da95bd0"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "VirusTotal report",
|
|
"meta-category": "misc",
|
|
"name": "virustotal-report",
|
|
"template_uuid": "d7dd0154-e04f-4c34-a2fb-79f3a3a52aa4",
|
|
"template_version": "2",
|
|
"timestamp": "1566552839",
|
|
"uuid": "171b844c-e483-40b1-9be6-3a72552cad24",
|
|
"Attribute": [
|
|
{
|
|
"category": "Other",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "last-submission",
|
|
"timestamp": "1565607648",
|
|
"to_ids": false,
|
|
"type": "datetime",
|
|
"uuid": "69c83f72-bdb7-4652-b926-6a2e851907a5",
|
|
"value": "2019-08-06T00:39:52"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "permalink",
|
|
"timestamp": "1565607648",
|
|
"to_ids": false,
|
|
"type": "link",
|
|
"uuid": "702ec67b-808d-45e2-aa3d-96bc5dc257fb",
|
|
"value": "https://www.virustotal.com/file/eecb72fdd8f19a6ec78b27f47aa978eefbaf0c80c85481292b91e8010da95bd0/analysis/1565051992/"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": true,
|
|
"object_relation": "detection-ratio",
|
|
"timestamp": "1565607648",
|
|
"to_ids": false,
|
|
"type": "text",
|
|
"uuid": "29ca6fa8-ca51-42c3-b074-5072810b5798",
|
|
"value": "17/71"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "File object describing a file with meta-information",
|
|
"meta-category": "file",
|
|
"name": "file",
|
|
"template_uuid": "688c46fb-5edb-40a3-8273-1af7923e2215",
|
|
"template_version": "17",
|
|
"timestamp": "1566552839",
|
|
"uuid": "e85ade4d-1b48-4843-919b-fbb40e56ea8e",
|
|
"ObjectReference": [
|
|
{
|
|
"comment": "",
|
|
"object_uuid": "e85ade4d-1b48-4843-919b-fbb40e56ea8e",
|
|
"referenced_uuid": "6d64d31b-f6d3-4aab-8422-536fb14900a9",
|
|
"relationship_type": "analysed-with",
|
|
"timestamp": "1566552844",
|
|
"uuid": "5d5fb30c-9e0c-4ef8-8439-4220950d210f"
|
|
}
|
|
],
|
|
"Attribute": [
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "md5",
|
|
"timestamp": "1565607645",
|
|
"to_ids": true,
|
|
"type": "md5",
|
|
"uuid": "1dc30fb6-4774-46eb-8bed-07a9da673fe3",
|
|
"value": "de8b61ae73f510eba526684f85b7cacb"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha1",
|
|
"timestamp": "1565607645",
|
|
"to_ids": true,
|
|
"type": "sha1",
|
|
"uuid": "10699834-854d-4a01-a31c-699926b78b3f",
|
|
"value": "71f69f04307c8f5675dcadeaa80b8c2b95691b01"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha256",
|
|
"timestamp": "1565607645",
|
|
"to_ids": true,
|
|
"type": "sha256",
|
|
"uuid": "bff421dd-17b3-4c00-9a0b-67080d1c5f0c",
|
|
"value": "433d0ca49bf2d80f3d61dcf97cd5af0ee52be83d5f8a070560cbf26ff840a676"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "VirusTotal report",
|
|
"meta-category": "misc",
|
|
"name": "virustotal-report",
|
|
"template_uuid": "d7dd0154-e04f-4c34-a2fb-79f3a3a52aa4",
|
|
"template_version": "2",
|
|
"timestamp": "1566552839",
|
|
"uuid": "6d64d31b-f6d3-4aab-8422-536fb14900a9",
|
|
"Attribute": [
|
|
{
|
|
"category": "Other",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "last-submission",
|
|
"timestamp": "1565607645",
|
|
"to_ids": false,
|
|
"type": "datetime",
|
|
"uuid": "a749b13e-1cfc-4d34-8a55-fbe15a6a1b0f",
|
|
"value": "2019-08-20T16:43:56"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "permalink",
|
|
"timestamp": "1565607645",
|
|
"to_ids": false,
|
|
"type": "link",
|
|
"uuid": "51849d9a-e13d-43e3-a26d-f0d4393471d5",
|
|
"value": "https://www.virustotal.com/file/433d0ca49bf2d80f3d61dcf97cd5af0ee52be83d5f8a070560cbf26ff840a676/analysis/1566319436/"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": true,
|
|
"object_relation": "detection-ratio",
|
|
"timestamp": "1565607645",
|
|
"to_ids": false,
|
|
"type": "text",
|
|
"uuid": "409c26da-bc69-40f8-adab-b2533fb55f6a",
|
|
"value": "37/69"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "File object describing a file with meta-information",
|
|
"meta-category": "file",
|
|
"name": "file",
|
|
"template_uuid": "688c46fb-5edb-40a3-8273-1af7923e2215",
|
|
"template_version": "17",
|
|
"timestamp": "1566552840",
|
|
"uuid": "0435b47e-3fda-4c7f-8c7d-300f6c81e5cc",
|
|
"ObjectReference": [
|
|
{
|
|
"comment": "",
|
|
"object_uuid": "0435b47e-3fda-4c7f-8c7d-300f6c81e5cc",
|
|
"referenced_uuid": "ef0ac1b1-06ab-4882-a73a-963968e5d9d5",
|
|
"relationship_type": "analysed-with",
|
|
"timestamp": "1566552844",
|
|
"uuid": "5d5fb30c-630c-44e4-963c-4cee950d210f"
|
|
}
|
|
],
|
|
"Attribute": [
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "md5",
|
|
"timestamp": "1565607646",
|
|
"to_ids": true,
|
|
"type": "md5",
|
|
"uuid": "7dccef67-6352-41aa-94a0-88a3154a2e1b",
|
|
"value": "bdede8c167b85250401c7605d81d05f2"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha1",
|
|
"timestamp": "1565607646",
|
|
"to_ids": true,
|
|
"type": "sha1",
|
|
"uuid": "201a3374-633e-45cc-8887-cfab8920d25f",
|
|
"value": "fbb485b40477f5a014e7096747b1b4a494ce50ef"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha256",
|
|
"timestamp": "1565607646",
|
|
"to_ids": true,
|
|
"type": "sha256",
|
|
"uuid": "4b63a282-54cd-41b5-bc73-0b4f684c8278",
|
|
"value": "57566f1261b6b05e14aa9b579a7f5cbc2feb361baf897600eaa07da863532eb6"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "VirusTotal report",
|
|
"meta-category": "misc",
|
|
"name": "virustotal-report",
|
|
"template_uuid": "d7dd0154-e04f-4c34-a2fb-79f3a3a52aa4",
|
|
"template_version": "2",
|
|
"timestamp": "1566552840",
|
|
"uuid": "ef0ac1b1-06ab-4882-a73a-963968e5d9d5",
|
|
"Attribute": [
|
|
{
|
|
"category": "Other",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "last-submission",
|
|
"timestamp": "1565607646",
|
|
"to_ids": false,
|
|
"type": "datetime",
|
|
"uuid": "94762121-aaee-40e3-9e1c-53a94ef7f108",
|
|
"value": "2019-08-06T00:39:45"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "permalink",
|
|
"timestamp": "1565607646",
|
|
"to_ids": false,
|
|
"type": "link",
|
|
"uuid": "baf99690-03f5-49a4-8f2b-6448cd8e0c31",
|
|
"value": "https://www.virustotal.com/file/57566f1261b6b05e14aa9b579a7f5cbc2feb361baf897600eaa07da863532eb6/analysis/1565051985/"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": true,
|
|
"object_relation": "detection-ratio",
|
|
"timestamp": "1565607646",
|
|
"to_ids": false,
|
|
"type": "text",
|
|
"uuid": "b6cfd9ef-a7c3-4d1f-9ce0-c8a4de6257d1",
|
|
"value": "32/71"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "File object describing a file with meta-information",
|
|
"meta-category": "file",
|
|
"name": "file",
|
|
"template_uuid": "688c46fb-5edb-40a3-8273-1af7923e2215",
|
|
"template_version": "17",
|
|
"timestamp": "1566552840",
|
|
"uuid": "fa6162c5-05ef-48dc-9617-96c574f6f8ee",
|
|
"ObjectReference": [
|
|
{
|
|
"comment": "",
|
|
"object_uuid": "fa6162c5-05ef-48dc-9617-96c574f6f8ee",
|
|
"referenced_uuid": "30af6744-2ff9-4462-a0fa-be7dfcd5e537",
|
|
"relationship_type": "analysed-with",
|
|
"timestamp": "1566552844",
|
|
"uuid": "5d5fb30c-a5b4-4850-bf90-4261950d210f"
|
|
}
|
|
],
|
|
"Attribute": [
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "md5",
|
|
"timestamp": "1565607644",
|
|
"to_ids": true,
|
|
"type": "md5",
|
|
"uuid": "975c2920-7ef4-4e93-8372-24c64504e92f",
|
|
"value": "a23d27688c57fb8d1b4979c4643c7dbc"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha1",
|
|
"timestamp": "1565607644",
|
|
"to_ids": true,
|
|
"type": "sha1",
|
|
"uuid": "d4514e46-067b-4103-87cc-2e4144d03ce6",
|
|
"value": "53102e57b40feacb64566c26d101d9242dece77c"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha256",
|
|
"timestamp": "1565607644",
|
|
"to_ids": true,
|
|
"type": "sha256",
|
|
"uuid": "35fb2930-ecb4-45ef-ba4d-a3d35fb59d52",
|
|
"value": "d945cca810a8eb7c3e778515c28ceabae296378e5558bc40b125a8df3d4d6fa5"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "VirusTotal report",
|
|
"meta-category": "misc",
|
|
"name": "virustotal-report",
|
|
"template_uuid": "d7dd0154-e04f-4c34-a2fb-79f3a3a52aa4",
|
|
"template_version": "2",
|
|
"timestamp": "1566552840",
|
|
"uuid": "30af6744-2ff9-4462-a0fa-be7dfcd5e537",
|
|
"Attribute": [
|
|
{
|
|
"category": "Other",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "last-submission",
|
|
"timestamp": "1565607644",
|
|
"to_ids": false,
|
|
"type": "datetime",
|
|
"uuid": "356119c2-4238-44fd-85a9-44e7a88bf048",
|
|
"value": "2019-08-06T12:02:06"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "permalink",
|
|
"timestamp": "1565607644",
|
|
"to_ids": false,
|
|
"type": "link",
|
|
"uuid": "5ee8ca89-dbc7-425e-968e-7f9a4073d9ba",
|
|
"value": "https://www.virustotal.com/file/d945cca810a8eb7c3e778515c28ceabae296378e5558bc40b125a8df3d4d6fa5/analysis/1565092926/"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": true,
|
|
"object_relation": "detection-ratio",
|
|
"timestamp": "1565607644",
|
|
"to_ids": false,
|
|
"type": "text",
|
|
"uuid": "784cb14b-2405-4a42-90cd-513689cb429b",
|
|
"value": "37/66"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "File object describing a file with meta-information",
|
|
"meta-category": "file",
|
|
"name": "file",
|
|
"template_uuid": "688c46fb-5edb-40a3-8273-1af7923e2215",
|
|
"template_version": "17",
|
|
"timestamp": "1566552840",
|
|
"uuid": "41e8c744-0833-4720-abf8-e40fd4b0a6ec",
|
|
"ObjectReference": [
|
|
{
|
|
"comment": "",
|
|
"object_uuid": "41e8c744-0833-4720-abf8-e40fd4b0a6ec",
|
|
"referenced_uuid": "debdafab-84f5-4c5f-8f4a-3d873d95895c",
|
|
"relationship_type": "analysed-with",
|
|
"timestamp": "1566552844",
|
|
"uuid": "5d5fb30c-fd10-4b0c-8287-467a950d210f"
|
|
}
|
|
],
|
|
"Attribute": [
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "md5",
|
|
"timestamp": "1565255665",
|
|
"to_ids": true,
|
|
"type": "md5",
|
|
"uuid": "41343ff3-2ebf-4469-a77f-5f483c4f8b90",
|
|
"value": "84d0eb92a62f095271fd7a22352144d4"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha1",
|
|
"timestamp": "1565255665",
|
|
"to_ids": true,
|
|
"type": "sha1",
|
|
"uuid": "d01057e5-b7b6-470a-9e0e-2a39b2fc4edd",
|
|
"value": "048c40eb606da3def08c9f6997c1948afbbc959b"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha256",
|
|
"timestamp": "1565255665",
|
|
"to_ids": true,
|
|
"type": "sha256",
|
|
"uuid": "b1a9a6e1-7ece-436c-9b8e-94cc4979859d",
|
|
"value": "5aa84aa5c90ec34b7f7d75eb350349ae3aa5060f3ad6dd0520e851626e9f8354"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "VirusTotal report",
|
|
"meta-category": "misc",
|
|
"name": "virustotal-report",
|
|
"template_uuid": "d7dd0154-e04f-4c34-a2fb-79f3a3a52aa4",
|
|
"template_version": "2",
|
|
"timestamp": "1566552841",
|
|
"uuid": "debdafab-84f5-4c5f-8f4a-3d873d95895c",
|
|
"Attribute": [
|
|
{
|
|
"category": "Other",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "last-submission",
|
|
"timestamp": "1565255665",
|
|
"to_ids": false,
|
|
"type": "datetime",
|
|
"uuid": "4dcdd982-7bae-4fa3-aab4-a7bba1a08e35",
|
|
"value": "2019-08-13T12:22:09"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "permalink",
|
|
"timestamp": "1565255665",
|
|
"to_ids": false,
|
|
"type": "link",
|
|
"uuid": "e3705fc2-0b09-44d9-aae2-674202792f4a",
|
|
"value": "https://www.virustotal.com/file/5aa84aa5c90ec34b7f7d75eb350349ae3aa5060f3ad6dd0520e851626e9f8354/analysis/1565698929/"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": true,
|
|
"object_relation": "detection-ratio",
|
|
"timestamp": "1565255665",
|
|
"to_ids": false,
|
|
"type": "text",
|
|
"uuid": "1f05cf26-dc13-4a0f-ac1e-8b8e7bd557fc",
|
|
"value": "37/70"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "File object describing a file with meta-information",
|
|
"meta-category": "file",
|
|
"name": "file",
|
|
"template_uuid": "688c46fb-5edb-40a3-8273-1af7923e2215",
|
|
"template_version": "17",
|
|
"timestamp": "1566552841",
|
|
"uuid": "6a1850ce-88ff-4602-b863-1c5a8eb3e7d5",
|
|
"ObjectReference": [
|
|
{
|
|
"comment": "",
|
|
"object_uuid": "6a1850ce-88ff-4602-b863-1c5a8eb3e7d5",
|
|
"referenced_uuid": "e39a8261-d7fc-4e65-a763-eb2d49bdcf6b",
|
|
"relationship_type": "analysed-with",
|
|
"timestamp": "1566552844",
|
|
"uuid": "5d5fb30c-6e34-4ec8-aa6d-4450950d210f"
|
|
}
|
|
],
|
|
"Attribute": [
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "md5",
|
|
"timestamp": "1565617842",
|
|
"to_ids": true,
|
|
"type": "md5",
|
|
"uuid": "e6bbcfeb-4c35-4f93-92fd-26536adbab2d",
|
|
"value": "9eb9af0f63644fee49d083c1c330226b"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha1",
|
|
"timestamp": "1565617842",
|
|
"to_ids": true,
|
|
"type": "sha1",
|
|
"uuid": "5dc9878c-4531-497c-bcba-24a71efa5047",
|
|
"value": "79ac512389ef9e27a3598ca2968573db4f5fd58f"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "sha256",
|
|
"timestamp": "1565617842",
|
|
"to_ids": true,
|
|
"type": "sha256",
|
|
"uuid": "d0843bb5-4608-44da-a4f1-14dcf3fb7087",
|
|
"value": "defebfcc7affc31a00400e387b1994baf1d75704aa682803584e2c87ad154ec1"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"comment": "",
|
|
"deleted": false,
|
|
"description": "VirusTotal report",
|
|
"meta-category": "misc",
|
|
"name": "virustotal-report",
|
|
"template_uuid": "d7dd0154-e04f-4c34-a2fb-79f3a3a52aa4",
|
|
"template_version": "2",
|
|
"timestamp": "1566552841",
|
|
"uuid": "e39a8261-d7fc-4e65-a763-eb2d49bdcf6b",
|
|
"Attribute": [
|
|
{
|
|
"category": "Other",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "last-submission",
|
|
"timestamp": "1565617842",
|
|
"to_ids": false,
|
|
"type": "datetime",
|
|
"uuid": "7fd29b15-6b70-40b6-8308-816eee3a7113",
|
|
"value": "2019-08-06T00:39:51"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": false,
|
|
"object_relation": "permalink",
|
|
"timestamp": "1565617842",
|
|
"to_ids": false,
|
|
"type": "link",
|
|
"uuid": "86fb6e82-743e-41fa-8f4b-b06cc7c61b88",
|
|
"value": "https://www.virustotal.com/file/defebfcc7affc31a00400e387b1994baf1d75704aa682803584e2c87ad154ec1/analysis/1565051991/"
|
|
},
|
|
{
|
|
"category": "Payload delivery",
|
|
"comment": "",
|
|
"deleted": false,
|
|
"disable_correlation": true,
|
|
"object_relation": "detection-ratio",
|
|
"timestamp": "1565617842",
|
|
"to_ids": false,
|
|
"type": "text",
|
|
"uuid": "4e46ad7a-a5d9-46fc-bf0d-7efc850aa1dc",
|
|
"value": "31/69"
|
|
}
|
|
]
|
|
}
|
|
]
|
|
}
|
|
} |