Advertisement
RedBeardIOCs

Daily IoCs for 2021-05-23 (MISP)

May 24th, 2021
133
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
JSON 19.83 KB | None | 0 0
  1. {"Event":{"Attribute":[{"Tag":[{"name":"mwdb:family=\"AgentTesla\""}],"category":"Payload delivery","deleted":false,"disable_correlation":false,"distribution":"5","object_id":"0","object_relation":null,"sharing_group_id":"0","to_ids":true,"type":"sha256","value":"539d75f22db3ccc962683432784f32863230bcd123f5b545debbe51023ed1cf8"},{"Tag":[{"name":"mwdb:family=\"AgentTesla\""}],"category":"Payload delivery","deleted":false,"disable_correlation":false,"distribution":"5","object_id":"0","object_relation":null,"sharing_group_id":"0","to_ids":true,"type":"sha256","value":"ef840a2cbede499566e3f56325977cf80c1e2f30f8d5d32f79b2e86feeb8ce40"},{"Tag":[{"name":"mwdb:family=\"AgentTesla\""}],"category":"Payload delivery","deleted":false,"disable_correlation":false,"distribution":"5","object_id":"0","object_relation":null,"sharing_group_id":"0","to_ids":true,"type":"sha256","value":"3b6d4700781af29d950456e2140c483323e38fb0346dccc92a2b377ef91d149d"},{"Tag":[{"name":"mwdb:family=\"Cookie\""}],"category":"Payload delivery","deleted":false,"disable_correlation":false,"distribution":"5","object_id":"0","object_relation":null,"sharing_group_id":"0","to_ids":true,"type":"sha256","value":"5f3f5495c6eded32345f4468a808ed277cd7485d8799a00ab6f10bb6781f883d"},{"Tag":[{"name":"mwdb:family=\"Cookie\""}],"category":"Payload delivery","deleted":false,"disable_correlation":false,"distribution":"5","object_id":"0","object_relation":null,"sharing_group_id":"0","to_ids":true,"type":"sha256","value":"d671e82ac6f29d378060a3ab0955b8aa7888c9ba8b9dc8ba5891f374a9728e68"},{"Tag":[{"name":"mwdb:family=\"Cookie\""}],"category":"Payload delivery","deleted":false,"disable_correlation":false,"distribution":"5","object_id":"0","object_relation":null,"sharing_group_id":"0","to_ids":true,"type":"sha256","value":"b0a8a09a83bb94149d5a69f1e6a08c0edf95eabf5836fd9df2f998ad482eed69"},{"Tag":[{"name":"mwdb:family=\"Cookie\""}],"category":"Payload delivery","deleted":false,"disable_correlation":false,"distribution":"5","object_id":"0","object_relation":null,"sharing_group_id":"0","to_ids":true,"type":"sha256","value":"6152f613e8c65631e6aa637d82582e02e32b782a5214c9ced999befad843a7f0"},{"Tag":[{"name":"mwdb:family=\"Cryptbot\""}],"category":"Payload delivery","deleted":false,"disable_correlation":false,"distribution":"5","object_id":"0","object_relation":null,"sharing_group_id":"0","to_ids":true,"type":"sha256","value":"1d313c9bb608e5774245c56da948b029b460a79afcc5c4b3d6dd30811bf7fc0f"},{"Tag":[{"name":"mwdb:family=\"Cryptbot\""}],"category":"Payload delivery","deleted":false,"disable_correlation":false,"distribution":"5","object_id":"0","object_relation":null,"sharing_group_id":"0","to_ids":true,"type":"sha256","value":"bc0ded251a44cc8a1240e278143cd6071904eb1d0fe12d8e6f8d8879f85762f5"},{"Tag":[{"name":"mwdb:family=\"Cryptbot\""}],"category":"Payload delivery","deleted":false,"disable_correlation":false,"distribution":"5","object_id":"0","object_relation":null,"sharing_group_id":"0","to_ids":true,"type":"sha256","value":"1e70476b14f9ed83659a9ee1bd32a3b38a26911edc4d83021f11526d13d4a1e9"},{"Tag":[{"name":"mwdb:family=\"Cryptbot\""}],"category":"Payload delivery","deleted":false,"disable_correlation":false,"distribution":"5","object_id":"0","object_relation":null,"sharing_group_id":"0","to_ids":true,"type":"sha256","value":"db932c5638a8a2ffbdb2ed1db85b24045380350d19409ecce491810a72be3448"},{"Tag":[{"name":"mwdb:family=\"DanaBot\""}],"category":"Payload delivery","deleted":false,"disable_correlation":false,"distribution":"5","object_id":"0","object_relation":null,"sharing_group_id":"0","to_ids":true,"type":"sha256","value":"f0fa2d9242399218c952cf0179b75efe987e4e4338be9fb6b1bc25b317bbe39a"},{"Tag":[{"name":"mwdb:family=\"Djvu\""}],"category":"Payload delivery","deleted":false,"disable_correlation":false,"distribution":"5","object_id":"0","object_relation":null,"sharing_group_id":"0","to_ids":true,"type":"sha256","value":"91ba59c27003543aae7d75591bc24af192510c7c7b8363bc850e84c1e6b71c2f"},{"Tag":[{"name":"mwdb:family=\"Ficker\""}],"category":"Payload delivery","deleted":false,"disable_correlation":false,"distribution":"5","object_id":"0","object_relation":null,"sharing_group_id":"0","to_ids":true,"type":"sha256","value":"65d36f82d84e480b071ba593600fc399479914768c9d39f6fc3a2e67261051db"},{"Tag":[{"name":"mwdb:family=\"Ficker\""}],"category":"Payload delivery","deleted":false,"disable_correlation":false,"distribution":"5","object_id":"0","object_relation":null,"sharing_group_id":"0","to_ids":true,"type":"sha256","value":"f894a82a85505aac3767cd5cc4bf1e86c51c920cc5e865aeef61886e3e482649"},{"Tag":[{"name":"mwdb:family=\"Glupteba\""}],"category":"Payload delivery","deleted":false,"disable_correlation":false,"distribution":"5","object_id":"0","object_relation":null,"sharing_group_id":"0","to_ids":true,"type":"sha256","value":"919a4877c1435674718c7ffd0c8c5ff7f5876be471fd8419875fb5dc1bdf3dd9"},{"Tag":[{"name":"mwdb:family=\"Lokibot\""}],"category":"Payload delivery","deleted":false,"disable_correlation":false,"distribution":"5","object_id":"0","object_relation":null,"sharing_group_id":"0","to_ids":true,"type":"sha256","value":"bf88630723f3c4364e64a76d376f4076d6370d67fe7e2a9c863b3b2121ecc3a0"},{"Tag":[{"name":"mwdb:family=\"Lokibot\""}],"category":"Payload delivery","deleted":false,"disable_correlation":false,"distribution":"5","object_id":"0","object_relation":null,"sharing_group_id":"0","to_ids":true,"type":"sha256","value":"0db833d0f09ea6ac635394e004f49f4ce0d393bcb94e8b0d3f703c5705aac993"},{"Tag":[{"name":"mwdb:family=\"Nanocore\""}],"category":"Payload delivery","deleted":false,"disable_correlation":false,"distribution":"5","object_id":"0","object_relation":null,"sharing_group_id":"0","to_ids":true,"type":"sha256","value":"02406289cc1ddef9b934fae8ccbb5ad518204950a488018792a89328bb4fefa8"},{"Tag":[{"name":"mwdb:family=\"Nanocore\""}],"category":"Payload delivery","deleted":false,"disable_correlation":false,"distribution":"5","object_id":"0","object_relation":null,"sharing_group_id":"0","to_ids":true,"type":"sha256","value":"014a6e3315730c1bad6f943eb0be59c35429ed9b9e8c2e46663f6078337505c1"},{"Tag":[{"name":"mwdb:family=\"Nanocore\""}],"category":"Payload delivery","deleted":false,"disable_correlation":false,"distribution":"5","object_id":"0","object_relation":null,"sharing_group_id":"0","to_ids":true,"type":"sha256","value":"6948e19a9088a07914de48db35b263829e11e3fe44e3ebf1b13c65ede6171a52"},{"Tag":[{"name":"mwdb:family=\"Nanocore\""}],"category":"Payload delivery","deleted":false,"disable_correlation":false,"distribution":"5","object_id":"0","object_relation":null,"sharing_group_id":"0","to_ids":true,"type":"sha256","value":"617b147047b78b0d4617936dfaf69987a12658acb71fd15e4e19939941404afa"},{"Tag":[{"name":"mwdb:family=\"Nanocore\""}],"category":"Payload delivery","deleted":false,"disable_correlation":false,"distribution":"5","object_id":"0","object_relation":null,"sharing_group_id":"0","to_ids":true,"type":"sha256","value":"ef16c0cc9a2470fab75386abd4c9b0aa07605aa7ae55ffccbd399a33dd3e9fc2"},{"Tag":[{"name":"mwdb:family=\"Nanocore\""}],"category":"Payload delivery","deleted":false,"disable_correlation":false,"distribution":"5","object_id":"0","object_relation":null,"sharing_group_id":"0","to_ids":true,"type":"sha256","value":"211e24652cbe76de799a0748dd0643c94d0b6ea4702b1eecef3ec341aebfac31"},{"Tag":[{"name":"mwdb:family=\"Njrat\""}],"category":"Payload delivery","deleted":false,"disable_correlation":false,"distribution":"5","object_id":"0","object_relation":null,"sharing_group_id":"0","to_ids":true,"type":"sha256","value":"0a7f9a4a2ff6257feb79223e3432cef859eda0b8e5738450449fd016eb059f70"},{"Tag":[{"name":"mwdb:family=\"RedLine\""}],"category":"Payload delivery","deleted":false,"disable_correlation":false,"distribution":"5","object_id":"0","object_relation":null,"sharing_group_id":"0","to_ids":true,"type":"sha256","value":"7959321dbc31b25c0badd8d24c80f2acd58b16c46cf5ed0a192fdebed542312e"},{"Tag":[{"name":"mwdb:family=\"RedLine\""}],"category":"Payload delivery","deleted":false,"disable_correlation":false,"distribution":"5","object_id":"0","object_relation":null,"sharing_group_id":"0","to_ids":true,"type":"sha256","value":"b0ead797c4106ae0d8bf8e4ea090940dfe1b4a68ddf43017a9671db0481b033b"},{"Tag":[{"name":"mwdb:family=\"RedLine\""}],"category":"Payload delivery","deleted":false,"disable_correlation":false,"distribution":"5","object_id":"0","object_relation":null,"sharing_group_id":"0","to_ids":true,"type":"sha256","value":"9eb90ab2f3471026ca32b4656b32a97e21b49456a32354f310f2e8a629b0c01a"},{"Tag":[{"name":"mwdb:family=\"RedLine\""}],"category":"Payload delivery","deleted":false,"disable_correlation":false,"distribution":"5","object_id":"0","object_relation":null,"sharing_group_id":"0","to_ids":true,"type":"sha256","value":"ebab144918faf987293a24c53d9ff0e2397cdbae4d321f46bee8e8c75d06714c"},{"Tag":[{"name":"mwdb:family=\"RedLine\""}],"category":"Payload delivery","deleted":false,"disable_correlation":false,"distribution":"5","object_id":"0","object_relation":null,"sharing_group_id":"0","to_ids":true,"type":"sha256","value":"783d47c446d1e482c19fbc6ded572ea16d5784dc775073662827c31f32d9a0ef"},{"Tag":[{"name":"mwdb:family=\"RedLine\""}],"category":"Payload delivery","deleted":false,"disable_correlation":false,"distribution":"5","object_id":"0","object_relation":null,"sharing_group_id":"0","to_ids":true,"type":"sha256","value":"6c926f68db1044f0d53e77ffdee6d6e6250482542ffa502101a38e547881b3fd"},{"Tag":[{"name":"mwdb:family=\"RedLine\""}],"category":"Payload delivery","deleted":false,"disable_correlation":false,"distribution":"5","object_id":"0","object_relation":null,"sharing_group_id":"0","to_ids":true,"type":"sha256","value":"edce208bc9457bfc328318d25e010fde7eb88fad6c9eb85e5df45cea1e1f5973"},{"Tag":[{"name":"mwdb:family=\"RedLine\""}],"category":"Payload delivery","deleted":false,"disable_correlation":false,"distribution":"5","object_id":"0","object_relation":null,"sharing_group_id":"0","to_ids":true,"type":"sha256","value":"7580df0af17fd6c0ff1705db3e69e13871ab497d94fcddd82c96203020799d14"},{"Tag":[{"name":"mwdb:family=\"RedLine\""}],"category":"Payload delivery","deleted":false,"disable_correlation":false,"distribution":"5","object_id":"0","object_relation":null,"sharing_group_id":"0","to_ids":true,"type":"sha256","value":"25ebba96b2ad6dd6746265616fcfbb612222871d918260eff7f96d1589ae3398"},{"Tag":[{"name":"mwdb:family=\"RedLine\""}],"category":"Payload delivery","deleted":false,"disable_correlation":false,"distribution":"5","object_id":"0","object_relation":null,"sharing_group_id":"0","to_ids":true,"type":"sha256","value":"cde70bec9ef26b2b7858e6e8cd7ae84faa2725c366a307ed5c61256d172650fb"},{"Tag":[{"name":"mwdb:family=\"RedLine\""}],"category":"Payload delivery","deleted":false,"disable_correlation":false,"distribution":"5","object_id":"0","object_relation":null,"sharing_group_id":"0","to_ids":true,"type":"sha256","value":"7052619814a614a1b157c5c94a92dbec22b425a0977ac8b21958b8db81e2dd65"},{"Tag":[{"name":"mwdb:family=\"RedLine\""}],"category":"Payload delivery","deleted":false,"disable_correlation":false,"distribution":"5","object_id":"0","object_relation":null,"sharing_group_id":"0","to_ids":true,"type":"sha256","value":"95d729e8a7cfd30830be52e939b641ac4bee23f35295125600bc8eedf4cb4926"},{"Tag":[{"name":"mwdb:family=\"RedLine\""}],"category":"Payload delivery","deleted":false,"disable_correlation":false,"distribution":"5","object_id":"0","object_relation":null,"sharing_group_id":"0","to_ids":true,"type":"sha256","value":"cbc54e5949821eeba7bc6c9ecd07b1883422445b4f5ea041b3c929122f6c623a"},{"Tag":[{"name":"mwdb:family=\"RedLine\""}],"category":"Payload delivery","deleted":false,"disable_correlation":false,"distribution":"5","object_id":"0","object_relation":null,"sharing_group_id":"0","to_ids":true,"type":"sha256","value":"c9cb046bd6890f152c5b5763e699b8fc702687017d08b3d00711c249a982290b"},{"Tag":[{"name":"mwdb:family=\"RedLine\""}],"category":"Payload delivery","deleted":false,"disable_correlation":false,"distribution":"5","object_id":"0","object_relation":null,"sharing_group_id":"0","to_ids":true,"type":"sha256","value":"46a209c1f32c304a878395b6df5b2e306fd6eea0db40f0bab0a6d71eeb6b8628"},{"Tag":[{"name":"mwdb:family=\"RedLine\""}],"category":"Payload delivery","deleted":false,"disable_correlation":false,"distribution":"5","object_id":"0","object_relation":null,"sharing_group_id":"0","to_ids":true,"type":"sha256","value":"fb4b3f42369b356e01ff430cc836d9291693cd54f7073f4293f0277c3450b500"},{"Tag":[{"name":"mwdb:family=\"RedLine\""}],"category":"Payload delivery","deleted":false,"disable_correlation":false,"distribution":"5","object_id":"0","object_relation":null,"sharing_group_id":"0","to_ids":true,"type":"sha256","value":"f5e25e05b038ce6df56c00cfbbdc0d17c0c5a2e4fb8c93c38edc83a273000d4f"},{"Tag":[{"name":"mwdb:family=\"RedLine\""}],"category":"Payload delivery","deleted":false,"disable_correlation":false,"distribution":"5","object_id":"0","object_relation":null,"sharing_group_id":"0","to_ids":true,"type":"sha256","value":"f98bd12fe84ad832b08d73a7d3cfccbbf105804fa4fa10479df76860440cbbaa"},{"Tag":[{"name":"mwdb:family=\"RedLine\""}],"category":"Payload delivery","deleted":false,"disable_correlation":false,"distribution":"5","object_id":"0","object_relation":null,"sharing_group_id":"0","to_ids":true,"type":"sha256","value":"5924c3a67bc793581cee525b9c04f89a92de15e1e149d7924f360e2f4aa64895"},{"Tag":[{"name":"mwdb:family=\"Snake\""}],"category":"Payload delivery","deleted":false,"disable_correlation":false,"distribution":"5","object_id":"0","object_relation":null,"sharing_group_id":"0","to_ids":true,"type":"sha256","value":"4a668f2f418fd813ff3333c92a82aa682d76c2c5b5924f1558b97a1ea5f7dcde"},{"Tag":[{"name":"mwdb:family=\"Snake\""}],"category":"Payload delivery","deleted":false,"disable_correlation":false,"distribution":"5","object_id":"0","object_relation":null,"sharing_group_id":"0","to_ids":true,"type":"sha256","value":"b2a7dc8005898ac71bbe3f134f28ddbadf934acbf0d70b7ebd575b937ea44720"},{"comment":"Unknown Malware","category":"Payload delivery","deleted":false,"disable_correlation":false,"distribution":"5","object_id":"0","object_relation":null,"sharing_group_id":"0","to_ids":true,"type":"sha256","value":"1f1f91a9fa76bd784560229c18ac8c1476ea7e69a8340f5b8ff00691533bcfdc"},{"comment":"Unknown Malware","category":"Payload delivery","deleted":false,"disable_correlation":false,"distribution":"5","object_id":"0","object_relation":null,"sharing_group_id":"0","to_ids":true,"type":"sha256","value":"c0ab6cbffab22ff8b5b87811b41f4a48da286594b3a013cbaf5811a05e02c6aa"},{"comment":"Unknown Malware","category":"Payload delivery","deleted":false,"disable_correlation":false,"distribution":"5","object_id":"0","object_relation":null,"sharing_group_id":"0","to_ids":true,"type":"sha256","value":"6d9407a3f0a36da9cb560ab4515c10c35ffc7a774fda733e0717d0d4ba8a6717"},{"comment":"Unknown Malware","category":"Payload delivery","deleted":false,"disable_correlation":false,"distribution":"5","object_id":"0","object_relation":null,"sharing_group_id":"0","to_ids":true,"type":"sha256","value":"43659c5b2fe457c8cee8d16669d63325c4be238992a112312fd664eb00807992"},{"comment":"Unknown Malware","category":"Payload delivery","deleted":false,"disable_correlation":false,"distribution":"5","object_id":"0","object_relation":null,"sharing_group_id":"0","to_ids":true,"type":"sha256","value":"2db96923aab352f05ec76149e57c4a54f51f8922a8eb3eecd8a52dc556a01848"},{"comment":"Unknown Malware","category":"Payload delivery","deleted":false,"disable_correlation":false,"distribution":"5","object_id":"0","object_relation":null,"sharing_group_id":"0","to_ids":true,"type":"sha256","value":"daeb1daf3c74231db11053cf22d66384ced323aa27a9cc84a7d11efd6e851b18"},{"Tag":[{"name":"mwdb:family=\"Vidar\""}],"category":"Payload delivery","deleted":false,"disable_correlation":false,"distribution":"5","object_id":"0","object_relation":null,"sharing_group_id":"0","to_ids":true,"type":"sha256","value":"684f1e46d83cdd8365200b2baf3d47c01322484b5b95caeceee750ac83250bf2"},{"Tag":[{"name":"mwdb:family=\"Vidar\""}],"category":"Payload delivery","deleted":false,"disable_correlation":false,"distribution":"5","object_id":"0","object_relation":null,"sharing_group_id":"0","to_ids":true,"type":"sha256","value":"fa478eb36952d9b61853af8490714154a2cee482efd1d527076c40cc8ee81b45"},{"Tag":[{"name":"mwdb:family=\"Vidar\""}],"category":"Payload delivery","deleted":false,"disable_correlation":false,"distribution":"5","object_id":"0","object_relation":null,"sharing_group_id":"0","to_ids":true,"type":"sha256","value":"65c8e734b57699ae9e9bd8e9f802f4bf00b8678b492f2c33f5acac91eedc4e74"},{"Tag":[{"name":"mwdb:family=\"Vidar\""}],"category":"Payload delivery","deleted":false,"disable_correlation":false,"distribution":"5","object_id":"0","object_relation":null,"sharing_group_id":"0","to_ids":true,"type":"sha256","value":"5a43102de04d22a543a325aed532ba5f6650ea619f2ee4dada53b8ba86931ffc"},{"Tag":[{"name":"mwdb:family=\"Vidar\""}],"category":"Payload delivery","deleted":false,"disable_correlation":false,"distribution":"5","object_id":"0","object_relation":null,"sharing_group_id":"0","to_ids":true,"type":"sha256","value":"a8e79133fdda3413e96d4b2808b4484aa2a2b3df4d0d65919896eda84cef153c"},{"Tag":[{"name":"mwdb:family=\"Vidar\""}],"category":"Payload delivery","deleted":false,"disable_correlation":false,"distribution":"5","object_id":"0","object_relation":null,"sharing_group_id":"0","to_ids":true,"type":"sha256","value":"8b581869bf8944a8e0aa169adea2a4afe47434123da477132880aff6a5032181"},{"Tag":[{"name":"mwdb:family=\"Vidar\""}],"category":"Payload delivery","deleted":false,"disable_correlation":false,"distribution":"5","object_id":"0","object_relation":null,"sharing_group_id":"0","to_ids":true,"type":"sha256","value":"e1c2113df7a950d15d5dbb99df8570393965c0a03b570986ad289d876b80c4dc"},{"Tag":[{"name":"mwdb:family=\"Vidar\""}],"category":"Payload delivery","deleted":false,"disable_correlation":false,"distribution":"5","object_id":"0","object_relation":null,"sharing_group_id":"0","to_ids":true,"type":"sha256","value":"8d5acffbaadbb5698a52baa31f2b4a073a3178366bc96b9b625142ef0201fd94"},{"Tag":[{"name":"mwdb:family=\"Vidar\""}],"category":"Payload delivery","deleted":false,"disable_correlation":false,"distribution":"5","object_id":"0","object_relation":null,"sharing_group_id":"0","to_ids":true,"type":"sha256","value":"b8d950bf6fa228454571f15cc4b7b6fbaa539f1284e43946abd90934db925201"},{"Tag":[{"name":"mwdb:family=\"Vidar\""}],"category":"Payload delivery","deleted":false,"disable_correlation":false,"distribution":"5","object_id":"0","object_relation":null,"sharing_group_id":"0","to_ids":true,"type":"sha256","value":"281a90c2dcc0b0fbec7c46efb4099ffe1bbe67a127b90c0eaa3caadac7210ec1"},{"Tag":[{"name":"mwdb:family=\"Vidar\""}],"category":"Payload delivery","deleted":false,"disable_correlation":false,"distribution":"5","object_id":"0","object_relation":null,"sharing_group_id":"0","to_ids":true,"type":"sha256","value":"e019a399c31c945e9c9738f8d3f8bd2fd3ae0517f647201f3391efb41d421d49"},{"Tag":[{"name":"mwdb:family=\"Vidar\""}],"category":"Payload delivery","deleted":false,"disable_correlation":false,"distribution":"5","object_id":"0","object_relation":null,"sharing_group_id":"0","to_ids":true,"type":"sha256","value":"9a1fd57daa3aad85fb92c8346f310a265a18b440486111ede1ee0478f3fea315"},{"Tag":[{"name":"mwdb:family=\"Vidar\""}],"category":"Payload delivery","deleted":false,"disable_correlation":false,"distribution":"5","object_id":"0","object_relation":null,"sharing_group_id":"0","to_ids":true,"type":"sha256","value":"5046641b418e1947f1fb2c16cd65db3a9e7be5073302210057937bfc3d54cc96"},{"Tag":[{"name":"mwdb:family=\"Vidar\""}],"category":"Payload delivery","deleted":false,"disable_correlation":false,"distribution":"5","object_id":"0","object_relation":null,"sharing_group_id":"0","to_ids":true,"type":"sha256","value":"bb4c6ab7808e9da274eab98bc5619c3b02c32387559311967f93e59de2af911b"}],"analysis":"0","date":"2020-10-07","disable_correlation":false,"distribution":"0","extends_uuid":"","info":"Daily IoCs for 2021-05-23","locked":false,"proposal_email_lock":false,"publish_timestamp":"0","published":false,"sharing_group_id":"0","threat_level_id":"4"}}
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement