misp-circl-feed/feeds/circl/stix-2.1/57e0c08d-4330-42c0-9c8f-4c8d950d210f.json

1471 lines
No EOL
59 KiB
JSON

{
"type": "bundle",
"id": "bundle--57e0c08d-4330-42c0-9c8f-4c8d950d210f",
"objects": [
{
"type": "identity",
"spec_version": "2.1",
"id": "identity--55f6ea5e-2c60-40e5-964f-47a8950d210f",
"created": "2016-09-20T04:54:45.000Z",
"modified": "2016-09-20T04:54:45.000Z",
"name": "CIRCL",
"identity_class": "organization"
},
{
"type": "report",
"spec_version": "2.1",
"id": "report--57e0c08d-4330-42c0-9c8f-4c8d950d210f",
"created_by_ref": "identity--55f6ea5e-2c60-40e5-964f-47a8950d210f",
"created": "2016-09-20T04:54:45.000Z",
"modified": "2016-09-20T04:54:45.000Z",
"name": "Malspam 2016-09-20 (.hta in .zip) - campaign: \"<no subject>\"",
"published": "2016-09-20T05:04:36Z",
"object_refs": [
"indicator--57e0c108-17a8-4064-ab4a-42c9950d210f",
"indicator--57e0c109-1fcc-4b56-82cd-4e95950d210f",
"indicator--57e0c109-c91c-4cbf-9062-4a6a950d210f",
"indicator--57e0c109-bb28-4bac-a7e2-448b950d210f",
"indicator--57e0c109-2f98-4fd8-9baf-4e2a950d210f",
"indicator--57e0c109-204c-4b2d-8e56-4ec0950d210f",
"indicator--57e0c10a-0914-405e-ba80-4d82950d210f",
"indicator--57e0c10a-084c-42e9-9af5-4d52950d210f",
"indicator--57e0c10a-ce2c-41de-92e3-482b950d210f",
"indicator--57e0c10a-32d4-4e9d-a80d-4ec7950d210f",
"indicator--57e0c10b-5a4c-4850-97da-4a8c950d210f",
"indicator--57e0c10b-cffc-4be4-a7a7-4d36950d210f",
"indicator--57e0c10b-3958-4fae-b387-4be8950d210f",
"indicator--57e0c10b-55d4-4fcb-9dba-4bf3950d210f",
"indicator--57e0c10c-cc20-445f-9309-40fc950d210f",
"indicator--57e0c10c-3f64-4b84-a1b0-4dc9950d210f",
"indicator--57e0c10c-8180-4666-8014-4efa950d210f",
"indicator--57e0c10c-c12c-4f10-b788-4a36950d210f",
"indicator--57e0c10d-2c60-4225-9c9f-4fde950d210f",
"indicator--57e0c10d-f678-4ed6-b0ca-4fbd950d210f",
"indicator--57e0c10d-f13c-44d5-9615-4e3a950d210f",
"indicator--57e0c10d-1440-411c-b2af-4283950d210f",
"indicator--57e0c10d-9ea4-4ce6-96f3-49f3950d210f",
"indicator--57e0c10e-707c-408a-ba0a-4daa950d210f",
"indicator--57e0c10e-e3a0-4115-a7fc-4988950d210f",
"indicator--57e0c10e-c57c-41c5-bf22-4c69950d210f",
"indicator--57e0c10e-6118-4962-bf40-479e950d210f",
"indicator--57e0c10e-53a4-4a78-b59e-4f61950d210f",
"indicator--57e0c10f-c78c-41b7-a3ad-42ea950d210f",
"indicator--57e0c10f-7b08-416d-bc3a-45b3950d210f",
"indicator--57e0c10f-d654-4c03-886f-42a4950d210f",
"indicator--57e0c10f-af3c-4f02-8f55-45d6950d210f",
"indicator--57e0c110-ae8c-404f-9da5-4f6e950d210f",
"indicator--57e0c110-645c-4426-a3b7-4511950d210f",
"indicator--57e0c110-66ac-4640-8369-4acd950d210f",
"indicator--57e0c110-b99c-4f3d-8e53-4243950d210f",
"indicator--57e0c111-f214-43da-88ad-4ecd950d210f",
"indicator--57e0c111-b404-4144-95f9-432d950d210f",
"indicator--57e0c111-9068-4cd8-8cbc-4456950d210f",
"indicator--57e0c111-cfe0-4dbc-82b7-49e7950d210f",
"indicator--57e0c111-4b68-445c-bdcd-4e2d950d210f",
"indicator--57e0c112-da70-4b20-8414-4c21950d210f",
"indicator--57e0c112-738c-48e1-ab07-40a7950d210f",
"indicator--57e0c112-b46c-4c0d-b26d-40fc950d210f",
"indicator--57e0c112-4cd0-456c-ae66-459d950d210f",
"indicator--57e0c112-8550-403d-a4ec-4a24950d210f",
"indicator--57e0c113-4c48-4dd2-9220-4d8e950d210f",
"indicator--57e0c113-6f04-4c34-94ee-42cc950d210f",
"indicator--57e0c113-5530-4f78-b1cb-4d3c950d210f",
"indicator--57e0c113-8340-4d27-aea2-4dec950d210f",
"indicator--57e0c114-74d0-468b-b56e-4730950d210f",
"indicator--57e0c114-5f98-494b-8174-44de950d210f",
"indicator--57e0c114-8768-4564-bca8-41e1950d210f",
"indicator--57e0c114-95a0-4332-ace3-4e53950d210f",
"indicator--57e0c115-fdc8-4301-9f13-4e62950d210f",
"indicator--57e0c115-1870-466a-803a-4de2950d210f",
"indicator--57e0c115-9e70-42d6-a969-40ad950d210f"
],
"labels": [
"Threat-Report",
"misp:tool=\"MISP-STIX-Converter\"",
"circl:incident-classification=\"malware\""
],
"object_marking_refs": [
"marking-definition--613f2e26-407d-48c7-9eca-b8e91df99dc9"
]
},
{
"type": "indicator",
"spec_version": "2.1",
"id": "indicator--57e0c108-17a8-4064-ab4a-42c9950d210f",
"created_by_ref": "identity--55f6ea5e-2c60-40e5-964f-47a8950d210f",
"created": "2016-09-20T04:54:32.000Z",
"modified": "2016-09-20T04:54:32.000Z",
"description": "download location",
"pattern": "[network-traffic:dst_ref.type = 'ipv4-addr' AND network-traffic:dst_ref.value = '103.254.148.134']",
"pattern_type": "stix",
"pattern_version": "2.1",
"valid_from": "2016-09-20T04:54:32Z",
"kill_chain_phases": [
{
"kill_chain_name": "misp-category",
"phase_name": "Network activity"
}
],
"labels": [
"misp:type=\"ip-dst\"",
"misp:category=\"Network activity\"",
"misp:to_ids=\"True\""
]
},
{
"type": "indicator",
"spec_version": "2.1",
"id": "indicator--57e0c109-1fcc-4b56-82cd-4e95950d210f",
"created_by_ref": "identity--55f6ea5e-2c60-40e5-964f-47a8950d210f",
"created": "2016-09-20T04:54:33.000Z",
"modified": "2016-09-20T04:54:33.000Z",
"description": "download location",
"pattern": "[network-traffic:dst_ref.type = 'ipv4-addr' AND network-traffic:dst_ref.value = '119.59.103.81']",
"pattern_type": "stix",
"pattern_version": "2.1",
"valid_from": "2016-09-20T04:54:33Z",
"kill_chain_phases": [
{
"kill_chain_name": "misp-category",
"phase_name": "Network activity"
}
],
"labels": [
"misp:type=\"ip-dst\"",
"misp:category=\"Network activity\"",
"misp:to_ids=\"True\""
]
},
{
"type": "indicator",
"spec_version": "2.1",
"id": "indicator--57e0c109-c91c-4cbf-9062-4a6a950d210f",
"created_by_ref": "identity--55f6ea5e-2c60-40e5-964f-47a8950d210f",
"created": "2016-09-20T04:54:33.000Z",
"modified": "2016-09-20T04:54:33.000Z",
"description": "download location",
"pattern": "[network-traffic:dst_ref.type = 'ipv4-addr' AND network-traffic:dst_ref.value = '123.30.210.74']",
"pattern_type": "stix",
"pattern_version": "2.1",
"valid_from": "2016-09-20T04:54:33Z",
"kill_chain_phases": [
{
"kill_chain_name": "misp-category",
"phase_name": "Network activity"
}
],
"labels": [
"misp:type=\"ip-dst\"",
"misp:category=\"Network activity\"",
"misp:to_ids=\"True\""
]
},
{
"type": "indicator",
"spec_version": "2.1",
"id": "indicator--57e0c109-bb28-4bac-a7e2-448b950d210f",
"created_by_ref": "identity--55f6ea5e-2c60-40e5-964f-47a8950d210f",
"created": "2016-09-20T04:54:33.000Z",
"modified": "2016-09-20T04:54:33.000Z",
"description": "download location",
"pattern": "[network-traffic:dst_ref.type = 'ipv4-addr' AND network-traffic:dst_ref.value = '143.95.246.211']",
"pattern_type": "stix",
"pattern_version": "2.1",
"valid_from": "2016-09-20T04:54:33Z",
"kill_chain_phases": [
{
"kill_chain_name": "misp-category",
"phase_name": "Network activity"
}
],
"labels": [
"misp:type=\"ip-dst\"",
"misp:category=\"Network activity\"",
"misp:to_ids=\"True\""
]
},
{
"type": "indicator",
"spec_version": "2.1",
"id": "indicator--57e0c109-2f98-4fd8-9baf-4e2a950d210f",
"created_by_ref": "identity--55f6ea5e-2c60-40e5-964f-47a8950d210f",
"created": "2016-09-20T04:54:33.000Z",
"modified": "2016-09-20T04:54:33.000Z",
"description": "download location",
"pattern": "[network-traffic:dst_ref.type = 'ipv4-addr' AND network-traffic:dst_ref.value = '148.251.99.148']",
"pattern_type": "stix",
"pattern_version": "2.1",
"valid_from": "2016-09-20T04:54:33Z",
"kill_chain_phases": [
{
"kill_chain_name": "misp-category",
"phase_name": "Network activity"
}
],
"labels": [
"misp:type=\"ip-dst\"",
"misp:category=\"Network activity\"",
"misp:to_ids=\"True\""
]
},
{
"type": "indicator",
"spec_version": "2.1",
"id": "indicator--57e0c109-204c-4b2d-8e56-4ec0950d210f",
"created_by_ref": "identity--55f6ea5e-2c60-40e5-964f-47a8950d210f",
"created": "2016-09-20T04:54:33.000Z",
"modified": "2016-09-20T04:54:33.000Z",
"description": "download location",
"pattern": "[network-traffic:dst_ref.type = 'ipv4-addr' AND network-traffic:dst_ref.value = '173.236.105.50']",
"pattern_type": "stix",
"pattern_version": "2.1",
"valid_from": "2016-09-20T04:54:33Z",
"kill_chain_phases": [
{
"kill_chain_name": "misp-category",
"phase_name": "Network activity"
}
],
"labels": [
"misp:type=\"ip-dst\"",
"misp:category=\"Network activity\"",
"misp:to_ids=\"True\""
]
},
{
"type": "indicator",
"spec_version": "2.1",
"id": "indicator--57e0c10a-0914-405e-ba80-4d82950d210f",
"created_by_ref": "identity--55f6ea5e-2c60-40e5-964f-47a8950d210f",
"created": "2016-09-20T04:54:34.000Z",
"modified": "2016-09-20T04:54:34.000Z",
"description": "download location",
"pattern": "[network-traffic:dst_ref.type = 'ipv4-addr' AND network-traffic:dst_ref.value = '173.254.28.14']",
"pattern_type": "stix",
"pattern_version": "2.1",
"valid_from": "2016-09-20T04:54:34Z",
"kill_chain_phases": [
{
"kill_chain_name": "misp-category",
"phase_name": "Network activity"
}
],
"labels": [
"misp:type=\"ip-dst\"",
"misp:category=\"Network activity\"",
"misp:to_ids=\"True\""
]
},
{
"type": "indicator",
"spec_version": "2.1",
"id": "indicator--57e0c10a-084c-42e9-9af5-4d52950d210f",
"created_by_ref": "identity--55f6ea5e-2c60-40e5-964f-47a8950d210f",
"created": "2016-09-20T04:54:34.000Z",
"modified": "2016-09-20T04:54:34.000Z",
"description": "download location",
"pattern": "[network-traffic:dst_ref.type = 'ipv4-addr' AND network-traffic:dst_ref.value = '185.119.173.182']",
"pattern_type": "stix",
"pattern_version": "2.1",
"valid_from": "2016-09-20T04:54:34Z",
"kill_chain_phases": [
{
"kill_chain_name": "misp-category",
"phase_name": "Network activity"
}
],
"labels": [
"misp:type=\"ip-dst\"",
"misp:category=\"Network activity\"",
"misp:to_ids=\"True\""
]
},
{
"type": "indicator",
"spec_version": "2.1",
"id": "indicator--57e0c10a-ce2c-41de-92e3-482b950d210f",
"created_by_ref": "identity--55f6ea5e-2c60-40e5-964f-47a8950d210f",
"created": "2016-09-20T04:54:34.000Z",
"modified": "2016-09-20T04:54:34.000Z",
"description": "download location",
"pattern": "[network-traffic:dst_ref.type = 'ipv4-addr' AND network-traffic:dst_ref.value = '185.96.93.154']",
"pattern_type": "stix",
"pattern_version": "2.1",
"valid_from": "2016-09-20T04:54:34Z",
"kill_chain_phases": [
{
"kill_chain_name": "misp-category",
"phase_name": "Network activity"
}
],
"labels": [
"misp:type=\"ip-dst\"",
"misp:category=\"Network activity\"",
"misp:to_ids=\"True\""
]
},
{
"type": "indicator",
"spec_version": "2.1",
"id": "indicator--57e0c10a-32d4-4e9d-a80d-4ec7950d210f",
"created_by_ref": "identity--55f6ea5e-2c60-40e5-964f-47a8950d210f",
"created": "2016-09-20T04:54:34.000Z",
"modified": "2016-09-20T04:54:34.000Z",
"description": "download location",
"pattern": "[network-traffic:dst_ref.type = 'ipv4-addr' AND network-traffic:dst_ref.value = '198.46.82.242']",
"pattern_type": "stix",
"pattern_version": "2.1",
"valid_from": "2016-09-20T04:54:34Z",
"kill_chain_phases": [
{
"kill_chain_name": "misp-category",
"phase_name": "Network activity"
}
],
"labels": [
"misp:type=\"ip-dst\"",
"misp:category=\"Network activity\"",
"misp:to_ids=\"True\""
]
},
{
"type": "indicator",
"spec_version": "2.1",
"id": "indicator--57e0c10b-5a4c-4850-97da-4a8c950d210f",
"created_by_ref": "identity--55f6ea5e-2c60-40e5-964f-47a8950d210f",
"created": "2016-09-20T04:54:35.000Z",
"modified": "2016-09-20T04:54:35.000Z",
"description": "download location",
"pattern": "[network-traffic:dst_ref.type = 'ipv4-addr' AND network-traffic:dst_ref.value = '207.179.106.94']",
"pattern_type": "stix",
"pattern_version": "2.1",
"valid_from": "2016-09-20T04:54:35Z",
"kill_chain_phases": [
{
"kill_chain_name": "misp-category",
"phase_name": "Network activity"
}
],
"labels": [
"misp:type=\"ip-dst\"",
"misp:category=\"Network activity\"",
"misp:to_ids=\"True\""
]
},
{
"type": "indicator",
"spec_version": "2.1",
"id": "indicator--57e0c10b-cffc-4be4-a7a7-4d36950d210f",
"created_by_ref": "identity--55f6ea5e-2c60-40e5-964f-47a8950d210f",
"created": "2016-09-20T04:54:35.000Z",
"modified": "2016-09-20T04:54:35.000Z",
"description": "download location",
"pattern": "[network-traffic:dst_ref.type = 'ipv4-addr' AND network-traffic:dst_ref.value = '207.204.33.199']",
"pattern_type": "stix",
"pattern_version": "2.1",
"valid_from": "2016-09-20T04:54:35Z",
"kill_chain_phases": [
{
"kill_chain_name": "misp-category",
"phase_name": "Network activity"
}
],
"labels": [
"misp:type=\"ip-dst\"",
"misp:category=\"Network activity\"",
"misp:to_ids=\"True\""
]
},
{
"type": "indicator",
"spec_version": "2.1",
"id": "indicator--57e0c10b-3958-4fae-b387-4be8950d210f",
"created_by_ref": "identity--55f6ea5e-2c60-40e5-964f-47a8950d210f",
"created": "2016-09-20T04:54:35.000Z",
"modified": "2016-09-20T04:54:35.000Z",
"description": "download location",
"pattern": "[network-traffic:dst_ref.type = 'ipv4-addr' AND network-traffic:dst_ref.value = '45.55.141.237']",
"pattern_type": "stix",
"pattern_version": "2.1",
"valid_from": "2016-09-20T04:54:35Z",
"kill_chain_phases": [
{
"kill_chain_name": "misp-category",
"phase_name": "Network activity"
}
],
"labels": [
"misp:type=\"ip-dst\"",
"misp:category=\"Network activity\"",
"misp:to_ids=\"True\""
]
},
{
"type": "indicator",
"spec_version": "2.1",
"id": "indicator--57e0c10b-55d4-4fcb-9dba-4bf3950d210f",
"created_by_ref": "identity--55f6ea5e-2c60-40e5-964f-47a8950d210f",
"created": "2016-09-20T04:54:35.000Z",
"modified": "2016-09-20T04:54:35.000Z",
"description": "download location",
"pattern": "[network-traffic:dst_ref.type = 'ipv4-addr' AND network-traffic:dst_ref.value = '64.119.182.93']",
"pattern_type": "stix",
"pattern_version": "2.1",
"valid_from": "2016-09-20T04:54:35Z",
"kill_chain_phases": [
{
"kill_chain_name": "misp-category",
"phase_name": "Network activity"
}
],
"labels": [
"misp:type=\"ip-dst\"",
"misp:category=\"Network activity\"",
"misp:to_ids=\"True\""
]
},
{
"type": "indicator",
"spec_version": "2.1",
"id": "indicator--57e0c10c-cc20-445f-9309-40fc950d210f",
"created_by_ref": "identity--55f6ea5e-2c60-40e5-964f-47a8950d210f",
"created": "2016-09-20T04:54:36.000Z",
"modified": "2016-09-20T04:54:36.000Z",
"description": "download location",
"pattern": "[network-traffic:dst_ref.type = 'ipv4-addr' AND network-traffic:dst_ref.value = '69.89.31.79']",
"pattern_type": "stix",
"pattern_version": "2.1",
"valid_from": "2016-09-20T04:54:36Z",
"kill_chain_phases": [
{
"kill_chain_name": "misp-category",
"phase_name": "Network activity"
}
],
"labels": [
"misp:type=\"ip-dst\"",
"misp:category=\"Network activity\"",
"misp:to_ids=\"True\""
]
},
{
"type": "indicator",
"spec_version": "2.1",
"id": "indicator--57e0c10c-3f64-4b84-a1b0-4dc9950d210f",
"created_by_ref": "identity--55f6ea5e-2c60-40e5-964f-47a8950d210f",
"created": "2016-09-20T04:54:36.000Z",
"modified": "2016-09-20T04:54:36.000Z",
"description": "download location",
"pattern": "[network-traffic:dst_ref.type = 'ipv4-addr' AND network-traffic:dst_ref.value = '70.39.235.94']",
"pattern_type": "stix",
"pattern_version": "2.1",
"valid_from": "2016-09-20T04:54:36Z",
"kill_chain_phases": [
{
"kill_chain_name": "misp-category",
"phase_name": "Network activity"
}
],
"labels": [
"misp:type=\"ip-dst\"",
"misp:category=\"Network activity\"",
"misp:to_ids=\"True\""
]
},
{
"type": "indicator",
"spec_version": "2.1",
"id": "indicator--57e0c10c-8180-4666-8014-4efa950d210f",
"created_by_ref": "identity--55f6ea5e-2c60-40e5-964f-47a8950d210f",
"created": "2016-09-20T04:54:36.000Z",
"modified": "2016-09-20T04:54:36.000Z",
"description": "download location",
"pattern": "[network-traffic:dst_ref.type = 'ipv4-addr' AND network-traffic:dst_ref.value = '80.179.92.187']",
"pattern_type": "stix",
"pattern_version": "2.1",
"valid_from": "2016-09-20T04:54:36Z",
"kill_chain_phases": [
{
"kill_chain_name": "misp-category",
"phase_name": "Network activity"
}
],
"labels": [
"misp:type=\"ip-dst\"",
"misp:category=\"Network activity\"",
"misp:to_ids=\"True\""
]
},
{
"type": "indicator",
"spec_version": "2.1",
"id": "indicator--57e0c10c-c12c-4f10-b788-4a36950d210f",
"created_by_ref": "identity--55f6ea5e-2c60-40e5-964f-47a8950d210f",
"created": "2016-09-20T04:54:36.000Z",
"modified": "2016-09-20T04:54:36.000Z",
"description": "download location",
"pattern": "[network-traffic:dst_ref.type = 'ipv4-addr' AND network-traffic:dst_ref.value = '94.136.40.103']",
"pattern_type": "stix",
"pattern_version": "2.1",
"valid_from": "2016-09-20T04:54:36Z",
"kill_chain_phases": [
{
"kill_chain_name": "misp-category",
"phase_name": "Network activity"
}
],
"labels": [
"misp:type=\"ip-dst\"",
"misp:category=\"Network activity\"",
"misp:to_ids=\"True\""
]
},
{
"type": "indicator",
"spec_version": "2.1",
"id": "indicator--57e0c10d-2c60-4225-9c9f-4fde950d210f",
"created_by_ref": "identity--55f6ea5e-2c60-40e5-964f-47a8950d210f",
"created": "2016-09-20T04:54:37.000Z",
"modified": "2016-09-20T04:54:37.000Z",
"description": "download location",
"pattern": "[network-traffic:dst_ref.type = 'ipv4-addr' AND network-traffic:dst_ref.value = '94.73.150.110']",
"pattern_type": "stix",
"pattern_version": "2.1",
"valid_from": "2016-09-20T04:54:37Z",
"kill_chain_phases": [
{
"kill_chain_name": "misp-category",
"phase_name": "Network activity"
}
],
"labels": [
"misp:type=\"ip-dst\"",
"misp:category=\"Network activity\"",
"misp:to_ids=\"True\""
]
},
{
"type": "indicator",
"spec_version": "2.1",
"id": "indicator--57e0c10d-f678-4ed6-b0ca-4fbd950d210f",
"created_by_ref": "identity--55f6ea5e-2c60-40e5-964f-47a8950d210f",
"created": "2016-09-20T04:54:37.000Z",
"modified": "2016-09-20T04:54:37.000Z",
"description": "download location",
"pattern": "[domain-name:value = 'binhminh-group.com']",
"pattern_type": "stix",
"pattern_version": "2.1",
"valid_from": "2016-09-20T04:54:37Z",
"kill_chain_phases": [
{
"kill_chain_name": "misp-category",
"phase_name": "Network activity"
}
],
"labels": [
"misp:type=\"domain\"",
"misp:category=\"Network activity\"",
"misp:to_ids=\"True\""
]
},
{
"type": "indicator",
"spec_version": "2.1",
"id": "indicator--57e0c10d-f13c-44d5-9615-4e3a950d210f",
"created_by_ref": "identity--55f6ea5e-2c60-40e5-964f-47a8950d210f",
"created": "2016-09-20T04:54:37.000Z",
"modified": "2016-09-20T04:54:37.000Z",
"description": "download location",
"pattern": "[domain-name:value = 'dealza.com']",
"pattern_type": "stix",
"pattern_version": "2.1",
"valid_from": "2016-09-20T04:54:37Z",
"kill_chain_phases": [
{
"kill_chain_name": "misp-category",
"phase_name": "Network activity"
}
],
"labels": [
"misp:type=\"domain\"",
"misp:category=\"Network activity\"",
"misp:to_ids=\"True\""
]
},
{
"type": "indicator",
"spec_version": "2.1",
"id": "indicator--57e0c10d-1440-411c-b2af-4283950d210f",
"created_by_ref": "identity--55f6ea5e-2c60-40e5-964f-47a8950d210f",
"created": "2016-09-20T04:54:37.000Z",
"modified": "2016-09-20T04:54:37.000Z",
"description": "download location",
"pattern": "[domain-name:value = 'elsoccer.org']",
"pattern_type": "stix",
"pattern_version": "2.1",
"valid_from": "2016-09-20T04:54:37Z",
"kill_chain_phases": [
{
"kill_chain_name": "misp-category",
"phase_name": "Network activity"
}
],
"labels": [
"misp:type=\"domain\"",
"misp:category=\"Network activity\"",
"misp:to_ids=\"True\""
]
},
{
"type": "indicator",
"spec_version": "2.1",
"id": "indicator--57e0c10d-9ea4-4ce6-96f3-49f3950d210f",
"created_by_ref": "identity--55f6ea5e-2c60-40e5-964f-47a8950d210f",
"created": "2016-09-20T04:54:37.000Z",
"modified": "2016-09-20T04:54:37.000Z",
"description": "download location",
"pattern": "[domain-name:value = 'gelecekdiyarbakirsigorta.com']",
"pattern_type": "stix",
"pattern_version": "2.1",
"valid_from": "2016-09-20T04:54:37Z",
"kill_chain_phases": [
{
"kill_chain_name": "misp-category",
"phase_name": "Network activity"
}
],
"labels": [
"misp:type=\"domain\"",
"misp:category=\"Network activity\"",
"misp:to_ids=\"True\""
]
},
{
"type": "indicator",
"spec_version": "2.1",
"id": "indicator--57e0c10e-707c-408a-ba0a-4daa950d210f",
"created_by_ref": "identity--55f6ea5e-2c60-40e5-964f-47a8950d210f",
"created": "2016-09-20T04:54:38.000Z",
"modified": "2016-09-20T04:54:38.000Z",
"description": "download location",
"pattern": "[url:value = 'http://binhminh-group.com/56f2gsu782desf']",
"pattern_type": "stix",
"pattern_version": "2.1",
"valid_from": "2016-09-20T04:54:38Z",
"kill_chain_phases": [
{
"kill_chain_name": "misp-category",
"phase_name": "Network activity"
}
],
"labels": [
"misp:type=\"url\"",
"misp:category=\"Network activity\"",
"misp:to_ids=\"True\""
]
},
{
"type": "indicator",
"spec_version": "2.1",
"id": "indicator--57e0c10e-e3a0-4115-a7fc-4988950d210f",
"created_by_ref": "identity--55f6ea5e-2c60-40e5-964f-47a8950d210f",
"created": "2016-09-20T04:54:38.000Z",
"modified": "2016-09-20T04:54:38.000Z",
"description": "download location",
"pattern": "[url:value = 'http://dealza.com/56f2gsu782desf']",
"pattern_type": "stix",
"pattern_version": "2.1",
"valid_from": "2016-09-20T04:54:38Z",
"kill_chain_phases": [
{
"kill_chain_name": "misp-category",
"phase_name": "Network activity"
}
],
"labels": [
"misp:type=\"url\"",
"misp:category=\"Network activity\"",
"misp:to_ids=\"True\""
]
},
{
"type": "indicator",
"spec_version": "2.1",
"id": "indicator--57e0c10e-c57c-41c5-bf22-4c69950d210f",
"created_by_ref": "identity--55f6ea5e-2c60-40e5-964f-47a8950d210f",
"created": "2016-09-20T04:54:38.000Z",
"modified": "2016-09-20T04:54:38.000Z",
"description": "download location",
"pattern": "[url:value = 'http://elsoccer.org/56f2gsu782desf']",
"pattern_type": "stix",
"pattern_version": "2.1",
"valid_from": "2016-09-20T04:54:38Z",
"kill_chain_phases": [
{
"kill_chain_name": "misp-category",
"phase_name": "Network activity"
}
],
"labels": [
"misp:type=\"url\"",
"misp:category=\"Network activity\"",
"misp:to_ids=\"True\""
]
},
{
"type": "indicator",
"spec_version": "2.1",
"id": "indicator--57e0c10e-6118-4962-bf40-479e950d210f",
"created_by_ref": "identity--55f6ea5e-2c60-40e5-964f-47a8950d210f",
"created": "2016-09-20T04:54:38.000Z",
"modified": "2016-09-20T04:54:38.000Z",
"description": "download location",
"pattern": "[url:value = 'http://gelecekdiyarbakirsigorta.com/56f2gsu782desf']",
"pattern_type": "stix",
"pattern_version": "2.1",
"valid_from": "2016-09-20T04:54:38Z",
"kill_chain_phases": [
{
"kill_chain_name": "misp-category",
"phase_name": "Network activity"
}
],
"labels": [
"misp:type=\"url\"",
"misp:category=\"Network activity\"",
"misp:to_ids=\"True\""
]
},
{
"type": "indicator",
"spec_version": "2.1",
"id": "indicator--57e0c10e-53a4-4a78-b59e-4f61950d210f",
"created_by_ref": "identity--55f6ea5e-2c60-40e5-964f-47a8950d210f",
"created": "2016-09-20T04:54:38.000Z",
"modified": "2016-09-20T04:54:38.000Z",
"description": "download location",
"pattern": "[url:value = 'http://hunt-magazine.com/56f2gsu782desf']",
"pattern_type": "stix",
"pattern_version": "2.1",
"valid_from": "2016-09-20T04:54:38Z",
"kill_chain_phases": [
{
"kill_chain_name": "misp-category",
"phase_name": "Network activity"
}
],
"labels": [
"misp:type=\"url\"",
"misp:category=\"Network activity\"",
"misp:to_ids=\"True\""
]
},
{
"type": "indicator",
"spec_version": "2.1",
"id": "indicator--57e0c10f-c78c-41b7-a3ad-42ea950d210f",
"created_by_ref": "identity--55f6ea5e-2c60-40e5-964f-47a8950d210f",
"created": "2016-09-20T04:54:39.000Z",
"modified": "2016-09-20T04:54:39.000Z",
"description": "download location",
"pattern": "[url:value = 'http://isusip.com/56f2gsu782desf']",
"pattern_type": "stix",
"pattern_version": "2.1",
"valid_from": "2016-09-20T04:54:39Z",
"kill_chain_phases": [
{
"kill_chain_name": "misp-category",
"phase_name": "Network activity"
}
],
"labels": [
"misp:type=\"url\"",
"misp:category=\"Network activity\"",
"misp:to_ids=\"True\""
]
},
{
"type": "indicator",
"spec_version": "2.1",
"id": "indicator--57e0c10f-7b08-416d-bc3a-45b3950d210f",
"created_by_ref": "identity--55f6ea5e-2c60-40e5-964f-47a8950d210f",
"created": "2016-09-20T04:54:39.000Z",
"modified": "2016-09-20T04:54:39.000Z",
"description": "download location",
"pattern": "[url:value = 'http://oilandgasukwireless.net/56f2gsu782desf']",
"pattern_type": "stix",
"pattern_version": "2.1",
"valid_from": "2016-09-20T04:54:39Z",
"kill_chain_phases": [
{
"kill_chain_name": "misp-category",
"phase_name": "Network activity"
}
],
"labels": [
"misp:type=\"url\"",
"misp:category=\"Network activity\"",
"misp:to_ids=\"True\""
]
},
{
"type": "indicator",
"spec_version": "2.1",
"id": "indicator--57e0c10f-d654-4c03-886f-42a4950d210f",
"created_by_ref": "identity--55f6ea5e-2c60-40e5-964f-47a8950d210f",
"created": "2016-09-20T04:54:39.000Z",
"modified": "2016-09-20T04:54:39.000Z",
"description": "download location",
"pattern": "[url:value = 'http://rancho.org/56f2gsu782desf']",
"pattern_type": "stix",
"pattern_version": "2.1",
"valid_from": "2016-09-20T04:54:39Z",
"kill_chain_phases": [
{
"kill_chain_name": "misp-category",
"phase_name": "Network activity"
}
],
"labels": [
"misp:type=\"url\"",
"misp:category=\"Network activity\"",
"misp:to_ids=\"True\""
]
},
{
"type": "indicator",
"spec_version": "2.1",
"id": "indicator--57e0c10f-af3c-4f02-8f55-45d6950d210f",
"created_by_ref": "identity--55f6ea5e-2c60-40e5-964f-47a8950d210f",
"created": "2016-09-20T04:54:39.000Z",
"modified": "2016-09-20T04:54:39.000Z",
"description": "download location",
"pattern": "[url:value = 'http://rennie-mackintosh-jewellery.co.uk/56f2gsu782desf']",
"pattern_type": "stix",
"pattern_version": "2.1",
"valid_from": "2016-09-20T04:54:39Z",
"kill_chain_phases": [
{
"kill_chain_name": "misp-category",
"phase_name": "Network activity"
}
],
"labels": [
"misp:type=\"url\"",
"misp:category=\"Network activity\"",
"misp:to_ids=\"True\""
]
},
{
"type": "indicator",
"spec_version": "2.1",
"id": "indicator--57e0c110-ae8c-404f-9da5-4f6e950d210f",
"created_by_ref": "identity--55f6ea5e-2c60-40e5-964f-47a8950d210f",
"created": "2016-09-20T04:54:40.000Z",
"modified": "2016-09-20T04:54:40.000Z",
"description": "download location",
"pattern": "[url:value = 'http://roberttrocina.com/56f2gsu782desf']",
"pattern_type": "stix",
"pattern_version": "2.1",
"valid_from": "2016-09-20T04:54:40Z",
"kill_chain_phases": [
{
"kill_chain_name": "misp-category",
"phase_name": "Network activity"
}
],
"labels": [
"misp:type=\"url\"",
"misp:category=\"Network activity\"",
"misp:to_ids=\"True\""
]
},
{
"type": "indicator",
"spec_version": "2.1",
"id": "indicator--57e0c110-645c-4426-a3b7-4511950d210f",
"created_by_ref": "identity--55f6ea5e-2c60-40e5-964f-47a8950d210f",
"created": "2016-09-20T04:54:40.000Z",
"modified": "2016-09-20T04:54:40.000Z",
"description": "download location",
"pattern": "[url:value = 'http://sbbsinfotech.com/56f2gsu782desf']",
"pattern_type": "stix",
"pattern_version": "2.1",
"valid_from": "2016-09-20T04:54:40Z",
"kill_chain_phases": [
{
"kill_chain_name": "misp-category",
"phase_name": "Network activity"
}
],
"labels": [
"misp:type=\"url\"",
"misp:category=\"Network activity\"",
"misp:to_ids=\"True\""
]
},
{
"type": "indicator",
"spec_version": "2.1",
"id": "indicator--57e0c110-66ac-4640-8369-4acd950d210f",
"created_by_ref": "identity--55f6ea5e-2c60-40e5-964f-47a8950d210f",
"created": "2016-09-20T04:54:40.000Z",
"modified": "2016-09-20T04:54:40.000Z",
"description": "download location",
"pattern": "[url:value = 'http://schneebett.com/56f2gsu782desf']",
"pattern_type": "stix",
"pattern_version": "2.1",
"valid_from": "2016-09-20T04:54:40Z",
"kill_chain_phases": [
{
"kill_chain_name": "misp-category",
"phase_name": "Network activity"
}
],
"labels": [
"misp:type=\"url\"",
"misp:category=\"Network activity\"",
"misp:to_ids=\"True\""
]
},
{
"type": "indicator",
"spec_version": "2.1",
"id": "indicator--57e0c110-b99c-4f3d-8e53-4243950d210f",
"created_by_ref": "identity--55f6ea5e-2c60-40e5-964f-47a8950d210f",
"created": "2016-09-20T04:54:40.000Z",
"modified": "2016-09-20T04:54:40.000Z",
"description": "download location",
"pattern": "[url:value = 'http://stirlingblack.com/56f2gsu782desf']",
"pattern_type": "stix",
"pattern_version": "2.1",
"valid_from": "2016-09-20T04:54:40Z",
"kill_chain_phases": [
{
"kill_chain_name": "misp-category",
"phase_name": "Network activity"
}
],
"labels": [
"misp:type=\"url\"",
"misp:category=\"Network activity\"",
"misp:to_ids=\"True\""
]
},
{
"type": "indicator",
"spec_version": "2.1",
"id": "indicator--57e0c111-f214-43da-88ad-4ecd950d210f",
"created_by_ref": "identity--55f6ea5e-2c60-40e5-964f-47a8950d210f",
"created": "2016-09-20T04:54:41.000Z",
"modified": "2016-09-20T04:54:41.000Z",
"description": "download location",
"pattern": "[url:value = 'http://teknidataconsultores.com/56f2gsu782desf']",
"pattern_type": "stix",
"pattern_version": "2.1",
"valid_from": "2016-09-20T04:54:41Z",
"kill_chain_phases": [
{
"kill_chain_name": "misp-category",
"phase_name": "Network activity"
}
],
"labels": [
"misp:type=\"url\"",
"misp:category=\"Network activity\"",
"misp:to_ids=\"True\""
]
},
{
"type": "indicator",
"spec_version": "2.1",
"id": "indicator--57e0c111-b404-4144-95f9-432d950d210f",
"created_by_ref": "identity--55f6ea5e-2c60-40e5-964f-47a8950d210f",
"created": "2016-09-20T04:54:41.000Z",
"modified": "2016-09-20T04:54:41.000Z",
"description": "download location",
"pattern": "[url:value = 'http://thomasduncanwatt.com/56f2gsu782desf']",
"pattern_type": "stix",
"pattern_version": "2.1",
"valid_from": "2016-09-20T04:54:41Z",
"kill_chain_phases": [
{
"kill_chain_name": "misp-category",
"phase_name": "Network activity"
}
],
"labels": [
"misp:type=\"url\"",
"misp:category=\"Network activity\"",
"misp:to_ids=\"True\""
]
},
{
"type": "indicator",
"spec_version": "2.1",
"id": "indicator--57e0c111-9068-4cd8-8cbc-4456950d210f",
"created_by_ref": "identity--55f6ea5e-2c60-40e5-964f-47a8950d210f",
"created": "2016-09-20T04:54:41.000Z",
"modified": "2016-09-20T04:54:41.000Z",
"description": "download location",
"pattern": "[url:value = 'http://trenddatainc.com/56f2gsu782desf']",
"pattern_type": "stix",
"pattern_version": "2.1",
"valid_from": "2016-09-20T04:54:41Z",
"kill_chain_phases": [
{
"kill_chain_name": "misp-category",
"phase_name": "Network activity"
}
],
"labels": [
"misp:type=\"url\"",
"misp:category=\"Network activity\"",
"misp:to_ids=\"True\""
]
},
{
"type": "indicator",
"spec_version": "2.1",
"id": "indicator--57e0c111-cfe0-4dbc-82b7-49e7950d210f",
"created_by_ref": "identity--55f6ea5e-2c60-40e5-964f-47a8950d210f",
"created": "2016-09-20T04:54:41.000Z",
"modified": "2016-09-20T04:54:41.000Z",
"description": "download location",
"pattern": "[url:value = 'http://worldpennyjar.com/56f2gsu782desf']",
"pattern_type": "stix",
"pattern_version": "2.1",
"valid_from": "2016-09-20T04:54:41Z",
"kill_chain_phases": [
{
"kill_chain_name": "misp-category",
"phase_name": "Network activity"
}
],
"labels": [
"misp:type=\"url\"",
"misp:category=\"Network activity\"",
"misp:to_ids=\"True\""
]
},
{
"type": "indicator",
"spec_version": "2.1",
"id": "indicator--57e0c111-4b68-445c-bdcd-4e2d950d210f",
"created_by_ref": "identity--55f6ea5e-2c60-40e5-964f-47a8950d210f",
"created": "2016-09-20T04:54:41.000Z",
"modified": "2016-09-20T04:54:41.000Z",
"description": "download location",
"pattern": "[url:value = 'http://xn--41a.xn----8sbivjiocsggj.xn--p1ai/56f2gsu782desf']",
"pattern_type": "stix",
"pattern_version": "2.1",
"valid_from": "2016-09-20T04:54:41Z",
"kill_chain_phases": [
{
"kill_chain_name": "misp-category",
"phase_name": "Network activity"
}
],
"labels": [
"misp:type=\"url\"",
"misp:category=\"Network activity\"",
"misp:to_ids=\"True\""
]
},
{
"type": "indicator",
"spec_version": "2.1",
"id": "indicator--57e0c112-da70-4b20-8414-4c21950d210f",
"created_by_ref": "identity--55f6ea5e-2c60-40e5-964f-47a8950d210f",
"created": "2016-09-20T04:54:42.000Z",
"modified": "2016-09-20T04:54:42.000Z",
"description": "download location",
"pattern": "[url:value = 'http://yesman.me/56f2gsu782desf']",
"pattern_type": "stix",
"pattern_version": "2.1",
"valid_from": "2016-09-20T04:54:42Z",
"kill_chain_phases": [
{
"kill_chain_name": "misp-category",
"phase_name": "Network activity"
}
],
"labels": [
"misp:type=\"url\"",
"misp:category=\"Network activity\"",
"misp:to_ids=\"True\""
]
},
{
"type": "indicator",
"spec_version": "2.1",
"id": "indicator--57e0c112-738c-48e1-ab07-40a7950d210f",
"created_by_ref": "identity--55f6ea5e-2c60-40e5-964f-47a8950d210f",
"created": "2016-09-20T04:54:42.000Z",
"modified": "2016-09-20T04:54:42.000Z",
"description": "download location",
"pattern": "[domain-name:value = 'hunt-magazine.com']",
"pattern_type": "stix",
"pattern_version": "2.1",
"valid_from": "2016-09-20T04:54:42Z",
"kill_chain_phases": [
{
"kill_chain_name": "misp-category",
"phase_name": "Network activity"
}
],
"labels": [
"misp:type=\"domain\"",
"misp:category=\"Network activity\"",
"misp:to_ids=\"True\""
]
},
{
"type": "indicator",
"spec_version": "2.1",
"id": "indicator--57e0c112-b46c-4c0d-b26d-40fc950d210f",
"created_by_ref": "identity--55f6ea5e-2c60-40e5-964f-47a8950d210f",
"created": "2016-09-20T04:54:42.000Z",
"modified": "2016-09-20T04:54:42.000Z",
"description": "download location",
"pattern": "[domain-name:value = 'isusip.com']",
"pattern_type": "stix",
"pattern_version": "2.1",
"valid_from": "2016-09-20T04:54:42Z",
"kill_chain_phases": [
{
"kill_chain_name": "misp-category",
"phase_name": "Network activity"
}
],
"labels": [
"misp:type=\"domain\"",
"misp:category=\"Network activity\"",
"misp:to_ids=\"True\""
]
},
{
"type": "indicator",
"spec_version": "2.1",
"id": "indicator--57e0c112-4cd0-456c-ae66-459d950d210f",
"created_by_ref": "identity--55f6ea5e-2c60-40e5-964f-47a8950d210f",
"created": "2016-09-20T04:54:42.000Z",
"modified": "2016-09-20T04:54:42.000Z",
"description": "download location",
"pattern": "[domain-name:value = 'oilandgasukwireless.net']",
"pattern_type": "stix",
"pattern_version": "2.1",
"valid_from": "2016-09-20T04:54:42Z",
"kill_chain_phases": [
{
"kill_chain_name": "misp-category",
"phase_name": "Network activity"
}
],
"labels": [
"misp:type=\"domain\"",
"misp:category=\"Network activity\"",
"misp:to_ids=\"True\""
]
},
{
"type": "indicator",
"spec_version": "2.1",
"id": "indicator--57e0c112-8550-403d-a4ec-4a24950d210f",
"created_by_ref": "identity--55f6ea5e-2c60-40e5-964f-47a8950d210f",
"created": "2016-09-20T04:54:42.000Z",
"modified": "2016-09-20T04:54:42.000Z",
"description": "download location",
"pattern": "[domain-name:value = 'rancho.org']",
"pattern_type": "stix",
"pattern_version": "2.1",
"valid_from": "2016-09-20T04:54:42Z",
"kill_chain_phases": [
{
"kill_chain_name": "misp-category",
"phase_name": "Network activity"
}
],
"labels": [
"misp:type=\"domain\"",
"misp:category=\"Network activity\"",
"misp:to_ids=\"True\""
]
},
{
"type": "indicator",
"spec_version": "2.1",
"id": "indicator--57e0c113-4c48-4dd2-9220-4d8e950d210f",
"created_by_ref": "identity--55f6ea5e-2c60-40e5-964f-47a8950d210f",
"created": "2016-09-20T04:54:43.000Z",
"modified": "2016-09-20T04:54:43.000Z",
"description": "download location",
"pattern": "[domain-name:value = 'rennie-mackintosh-jewellery.co.uk']",
"pattern_type": "stix",
"pattern_version": "2.1",
"valid_from": "2016-09-20T04:54:43Z",
"kill_chain_phases": [
{
"kill_chain_name": "misp-category",
"phase_name": "Network activity"
}
],
"labels": [
"misp:type=\"hostname\"",
"misp:category=\"Network activity\"",
"misp:to_ids=\"True\""
]
},
{
"type": "indicator",
"spec_version": "2.1",
"id": "indicator--57e0c113-6f04-4c34-94ee-42cc950d210f",
"created_by_ref": "identity--55f6ea5e-2c60-40e5-964f-47a8950d210f",
"created": "2016-09-20T04:54:43.000Z",
"modified": "2016-09-20T04:54:43.000Z",
"description": "download location",
"pattern": "[domain-name:value = 'roberttrocina.com']",
"pattern_type": "stix",
"pattern_version": "2.1",
"valid_from": "2016-09-20T04:54:43Z",
"kill_chain_phases": [
{
"kill_chain_name": "misp-category",
"phase_name": "Network activity"
}
],
"labels": [
"misp:type=\"domain\"",
"misp:category=\"Network activity\"",
"misp:to_ids=\"True\""
]
},
{
"type": "indicator",
"spec_version": "2.1",
"id": "indicator--57e0c113-5530-4f78-b1cb-4d3c950d210f",
"created_by_ref": "identity--55f6ea5e-2c60-40e5-964f-47a8950d210f",
"created": "2016-09-20T04:54:43.000Z",
"modified": "2016-09-20T04:54:43.000Z",
"description": "download location",
"pattern": "[domain-name:value = 'sbbsinfotech.com']",
"pattern_type": "stix",
"pattern_version": "2.1",
"valid_from": "2016-09-20T04:54:43Z",
"kill_chain_phases": [
{
"kill_chain_name": "misp-category",
"phase_name": "Network activity"
}
],
"labels": [
"misp:type=\"domain\"",
"misp:category=\"Network activity\"",
"misp:to_ids=\"True\""
]
},
{
"type": "indicator",
"spec_version": "2.1",
"id": "indicator--57e0c113-8340-4d27-aea2-4dec950d210f",
"created_by_ref": "identity--55f6ea5e-2c60-40e5-964f-47a8950d210f",
"created": "2016-09-20T04:54:43.000Z",
"modified": "2016-09-20T04:54:43.000Z",
"description": "download location",
"pattern": "[domain-name:value = 'schneebett.com']",
"pattern_type": "stix",
"pattern_version": "2.1",
"valid_from": "2016-09-20T04:54:43Z",
"kill_chain_phases": [
{
"kill_chain_name": "misp-category",
"phase_name": "Network activity"
}
],
"labels": [
"misp:type=\"domain\"",
"misp:category=\"Network activity\"",
"misp:to_ids=\"True\""
]
},
{
"type": "indicator",
"spec_version": "2.1",
"id": "indicator--57e0c114-74d0-468b-b56e-4730950d210f",
"created_by_ref": "identity--55f6ea5e-2c60-40e5-964f-47a8950d210f",
"created": "2016-09-20T04:54:44.000Z",
"modified": "2016-09-20T04:54:44.000Z",
"description": "download location",
"pattern": "[domain-name:value = 'stirlingblack.com']",
"pattern_type": "stix",
"pattern_version": "2.1",
"valid_from": "2016-09-20T04:54:44Z",
"kill_chain_phases": [
{
"kill_chain_name": "misp-category",
"phase_name": "Network activity"
}
],
"labels": [
"misp:type=\"domain\"",
"misp:category=\"Network activity\"",
"misp:to_ids=\"True\""
]
},
{
"type": "indicator",
"spec_version": "2.1",
"id": "indicator--57e0c114-5f98-494b-8174-44de950d210f",
"created_by_ref": "identity--55f6ea5e-2c60-40e5-964f-47a8950d210f",
"created": "2016-09-20T04:54:44.000Z",
"modified": "2016-09-20T04:54:44.000Z",
"description": "download location",
"pattern": "[domain-name:value = 'teknidataconsultores.com']",
"pattern_type": "stix",
"pattern_version": "2.1",
"valid_from": "2016-09-20T04:54:44Z",
"kill_chain_phases": [
{
"kill_chain_name": "misp-category",
"phase_name": "Network activity"
}
],
"labels": [
"misp:type=\"domain\"",
"misp:category=\"Network activity\"",
"misp:to_ids=\"True\""
]
},
{
"type": "indicator",
"spec_version": "2.1",
"id": "indicator--57e0c114-8768-4564-bca8-41e1950d210f",
"created_by_ref": "identity--55f6ea5e-2c60-40e5-964f-47a8950d210f",
"created": "2016-09-20T04:54:44.000Z",
"modified": "2016-09-20T04:54:44.000Z",
"description": "download location",
"pattern": "[domain-name:value = 'thomasduncanwatt.com']",
"pattern_type": "stix",
"pattern_version": "2.1",
"valid_from": "2016-09-20T04:54:44Z",
"kill_chain_phases": [
{
"kill_chain_name": "misp-category",
"phase_name": "Network activity"
}
],
"labels": [
"misp:type=\"domain\"",
"misp:category=\"Network activity\"",
"misp:to_ids=\"True\""
]
},
{
"type": "indicator",
"spec_version": "2.1",
"id": "indicator--57e0c114-95a0-4332-ace3-4e53950d210f",
"created_by_ref": "identity--55f6ea5e-2c60-40e5-964f-47a8950d210f",
"created": "2016-09-20T04:54:44.000Z",
"modified": "2016-09-20T04:54:44.000Z",
"description": "download location",
"pattern": "[domain-name:value = 'trenddatainc.com']",
"pattern_type": "stix",
"pattern_version": "2.1",
"valid_from": "2016-09-20T04:54:44Z",
"kill_chain_phases": [
{
"kill_chain_name": "misp-category",
"phase_name": "Network activity"
}
],
"labels": [
"misp:type=\"domain\"",
"misp:category=\"Network activity\"",
"misp:to_ids=\"True\""
]
},
{
"type": "indicator",
"spec_version": "2.1",
"id": "indicator--57e0c115-fdc8-4301-9f13-4e62950d210f",
"created_by_ref": "identity--55f6ea5e-2c60-40e5-964f-47a8950d210f",
"created": "2016-09-20T04:54:45.000Z",
"modified": "2016-09-20T04:54:45.000Z",
"description": "download location",
"pattern": "[domain-name:value = 'worldpennyjar.com']",
"pattern_type": "stix",
"pattern_version": "2.1",
"valid_from": "2016-09-20T04:54:45Z",
"kill_chain_phases": [
{
"kill_chain_name": "misp-category",
"phase_name": "Network activity"
}
],
"labels": [
"misp:type=\"domain\"",
"misp:category=\"Network activity\"",
"misp:to_ids=\"True\""
]
},
{
"type": "indicator",
"spec_version": "2.1",
"id": "indicator--57e0c115-1870-466a-803a-4de2950d210f",
"created_by_ref": "identity--55f6ea5e-2c60-40e5-964f-47a8950d210f",
"created": "2016-09-20T04:54:45.000Z",
"modified": "2016-09-20T04:54:45.000Z",
"description": "download location",
"pattern": "[file:name = 'xn--41a.xn----8sbivjiocsggj.xn--p1ai']",
"pattern_type": "stix",
"pattern_version": "2.1",
"valid_from": "2016-09-20T04:54:45Z",
"kill_chain_phases": [
{
"kill_chain_name": "misp-category",
"phase_name": "Payload delivery"
}
],
"labels": [
"misp:type=\"filename\"",
"misp:category=\"Payload delivery\"",
"misp:to_ids=\"True\""
]
},
{
"type": "indicator",
"spec_version": "2.1",
"id": "indicator--57e0c115-9e70-42d6-a969-40ad950d210f",
"created_by_ref": "identity--55f6ea5e-2c60-40e5-964f-47a8950d210f",
"created": "2016-09-20T04:54:45.000Z",
"modified": "2016-09-20T04:54:45.000Z",
"description": "download location",
"pattern": "[domain-name:value = 'yesman.me']",
"pattern_type": "stix",
"pattern_version": "2.1",
"valid_from": "2016-09-20T04:54:45Z",
"kill_chain_phases": [
{
"kill_chain_name": "misp-category",
"phase_name": "Network activity"
}
],
"labels": [
"misp:type=\"domain\"",
"misp:category=\"Network activity\"",
"misp:to_ids=\"True\""
]
},
{
"type": "marking-definition",
"spec_version": "2.1",
"id": "marking-definition--613f2e26-407d-48c7-9eca-b8e91df99dc9",
"created": "2017-01-20T00:00:00.000Z",
"definition_type": "tlp",
"name": "TLP:WHITE",
"definition": {
"tlp": "white"
}
}
]
}