Advertisement
RedBeardIOCs

Daily IoCs for 2021-04-25 (MISP)

Apr 26th, 2021
124
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
JSON 11.30 KB | None | 0 0
  1. {"Event":{"Attribute":[{"Tag":[{"name":"mwdb:family=\"AgentTesla\""}],"category":"Payload delivery","deleted":false,"disable_correlation":false,"distribution":"5","object_id":"0","object_relation":null,"sharing_group_id":"0","to_ids":true,"type":"sha256","value":"a4c9e6e48c2d6a73e128e8d9d5850fc6c3731bd9a8d85080a730a3efcf312593"},{"Tag":[{"name":"mwdb:family=\"AgentTesla\""}],"category":"Payload delivery","deleted":false,"disable_correlation":false,"distribution":"5","object_id":"0","object_relation":null,"sharing_group_id":"0","to_ids":true,"type":"sha256","value":"a996732b6e3c9332b76b29b991c1b0bd7d3b05fa3bba0c8744517d65a5922aa9"},{"Tag":[{"name":"mwdb:family=\"AsyncRAT\""}],"category":"Payload delivery","deleted":false,"disable_correlation":false,"distribution":"5","object_id":"0","object_relation":null,"sharing_group_id":"0","to_ids":true,"type":"sha256","value":"2911f64046d8c0de1f1ab87a74463e3edb261c7a6f7c6a5cd51add6d489317e7"},{"Tag":[{"name":"mwdb:family=\"AsyncRAT\""}],"category":"Payload delivery","deleted":false,"disable_correlation":false,"distribution":"5","object_id":"0","object_relation":null,"sharing_group_id":"0","to_ids":true,"type":"sha256","value":"4d802ef5ef1acf4fe9d7a36ae93dd562b8caa5d5bb58bd829295eac4ab5a3031"},{"Tag":[{"name":"mwdb:family=\"Flubot\""}],"category":"Payload delivery","deleted":false,"disable_correlation":false,"distribution":"5","object_id":"0","object_relation":null,"sharing_group_id":"0","to_ids":true,"type":"sha256","value":"97db08af5ff9572295933f8371d2171cfb7f34be515edb2fb74242a4450da9e2"},{"Tag":[{"name":"mwdb:family=\"FormBook\""}],"category":"Payload delivery","deleted":false,"disable_correlation":false,"distribution":"5","object_id":"0","object_relation":null,"sharing_group_id":"0","to_ids":true,"type":"sha256","value":"b573f800210680dc25d8f743ffe7490a14b5a94a86db41a35b0749746270cdc7"},{"Tag":[{"name":"mwdb:family=\"FormBook\""}],"category":"Payload delivery","deleted":false,"disable_correlation":false,"distribution":"5","object_id":"0","object_relation":null,"sharing_group_id":"0","to_ids":true,"type":"sha256","value":"85283d9b0397eb08ff3bfcba97e7e15de46c3f9e5939bebcfd6c3b8c07d2011c"},{"Tag":[{"name":"mwdb:family=\"FormBook\""}],"category":"Payload delivery","deleted":false,"disable_correlation":false,"distribution":"5","object_id":"0","object_relation":null,"sharing_group_id":"0","to_ids":true,"type":"sha256","value":"ecc540938addc1a440ef6ceb7714a0b45153c04c28df4395e3de18181439341a"},{"Tag":[{"name":"mwdb:family=\"Nanocore\""}],"category":"Payload delivery","deleted":false,"disable_correlation":false,"distribution":"5","object_id":"0","object_relation":null,"sharing_group_id":"0","to_ids":true,"type":"sha256","value":"43c1b14a63282c7b145843c5bc854dc35912cf81f992cd0352e85e71e8a07f4a"},{"Tag":[{"name":"mwdb:family=\"Nanocore\""}],"category":"Payload delivery","deleted":false,"disable_correlation":false,"distribution":"5","object_id":"0","object_relation":null,"sharing_group_id":"0","to_ids":true,"type":"sha256","value":"135172424407c19f4b97242a875667840a182f776856f4def190f3e7fd43b47a"},{"Tag":[{"name":"mwdb:family=\"Nanocore\""}],"category":"Payload delivery","deleted":false,"disable_correlation":false,"distribution":"5","object_id":"0","object_relation":null,"sharing_group_id":"0","to_ids":true,"type":"sha256","value":"5a72ed060f0c04201591256caff85cbdd4060db0cf777707c9347a5c8e0f6bd2"},{"Tag":[{"name":"mwdb:family=\"Nanocore\""}],"category":"Payload delivery","deleted":false,"disable_correlation":false,"distribution":"5","object_id":"0","object_relation":null,"sharing_group_id":"0","to_ids":true,"type":"sha256","value":"eaa234d8af92ddf37526c6670f1469e039cd6b9a641fd72758ec015d595d83fa"},{"Tag":[{"name":"mwdb:family=\"Nanocore\""}],"category":"Payload delivery","deleted":false,"disable_correlation":false,"distribution":"5","object_id":"0","object_relation":null,"sharing_group_id":"0","to_ids":true,"type":"sha256","value":"cebd85a16c241cf927b80191f41c8779b94be6bfbdad3de1c35152ac9ee6738c"},{"Tag":[{"name":"mwdb:family=\"Nanocore\""}],"category":"Payload delivery","deleted":false,"disable_correlation":false,"distribution":"5","object_id":"0","object_relation":null,"sharing_group_id":"0","to_ids":true,"type":"sha256","value":"aaa54582f2824fbc82762066941a739b8f844ab01ae371b180fdb575692cd12f"},{"Tag":[{"name":"mwdb:family=\"Njrat\""}],"category":"Payload delivery","deleted":false,"disable_correlation":false,"distribution":"5","object_id":"0","object_relation":null,"sharing_group_id":"0","to_ids":true,"type":"sha256","value":"76107541a6cff24554d6809a7c690791b73040657c60a73ab31cbfb8a9bd3ffc"},{"Tag":[{"name":"malware_classification:malware-category=\"Ransomware\""}],"category":"Payload delivery","deleted":false,"disable_correlation":false,"distribution":"5","object_id":"0","object_relation":null,"sharing_group_id":"0","to_ids":true,"type":"sha256","value":"f2a842eb78e2be3cd1d638a3dabcf21f8fbc35dcd768bb772f5e6080d1f246cc"},{"Tag":[{"name":"malware_classification:malware-category=\"Ransomware\""}],"category":"Payload delivery","deleted":false,"disable_correlation":false,"distribution":"5","object_id":"0","object_relation":null,"sharing_group_id":"0","to_ids":true,"type":"sha256","value":"ed0f154481261e9a08dcc4f7e4d396bce75526811216106daa70d4148c660d76"},{"Tag":[{"name":"mwdb:family=\"RedLine\""}],"category":"Payload delivery","deleted":false,"disable_correlation":false,"distribution":"5","object_id":"0","object_relation":null,"sharing_group_id":"0","to_ids":true,"type":"sha256","value":"edd7b9753e22344e75567016a96ac81e0639dbf3dada3692909909c0c1f2e01c"},{"Tag":[{"name":"mwdb:family=\"RedLine\""}],"category":"Payload delivery","deleted":false,"disable_correlation":false,"distribution":"5","object_id":"0","object_relation":null,"sharing_group_id":"0","to_ids":true,"type":"sha256","value":"e0632a6f4060a714db33b080962f5f2442e06850dd677930fd4ab70e48fedbf4"},{"Tag":[{"name":"mwdb:family=\"RedLine\""}],"category":"Payload delivery","deleted":false,"disable_correlation":false,"distribution":"5","object_id":"0","object_relation":null,"sharing_group_id":"0","to_ids":true,"type":"sha256","value":"b8f4f19c516fe1a383c2d6518ef70766ff87d4ed7755fa93688b3bd3d7453fbb"},{"Tag":[{"name":"mwdb:family=\"RedLine\""}],"category":"Payload delivery","deleted":false,"disable_correlation":false,"distribution":"5","object_id":"0","object_relation":null,"sharing_group_id":"0","to_ids":true,"type":"sha256","value":"38800b8669081ac5ccf2f137e4aadb885fe668362ed1ec6f1466f0e013beda8c"},{"Tag":[{"name":"mwdb:family=\"Remcos\""}],"category":"Payload delivery","deleted":false,"disable_correlation":false,"distribution":"5","object_id":"0","object_relation":null,"sharing_group_id":"0","to_ids":true,"type":"sha256","value":"46878b60194e8d7b849ca3031021691a094ce1f01048724fecc32a028e6c3f96"},{"Tag":[{"name":"mwdb:family=\"Remcos\""}],"category":"Payload delivery","deleted":false,"disable_correlation":false,"distribution":"5","object_id":"0","object_relation":null,"sharing_group_id":"0","to_ids":true,"type":"sha256","value":"0a08fdf22890201d4bbf8d7b70309ef65a6ceada15cb465f5c38db2f4e36631f"},{"Tag":[{"name":"mwdb:family=\"Remcos\""}],"category":"Payload delivery","deleted":false,"disable_correlation":false,"distribution":"5","object_id":"0","object_relation":null,"sharing_group_id":"0","to_ids":true,"type":"sha256","value":"55eb3d00005b8d35af84d23598c06e5e86a2df9b7259ccb4e687be4ec8693484"},{"Tag":[{"name":"mwdb:family=\"Remcos\""}],"category":"Payload delivery","deleted":false,"disable_correlation":false,"distribution":"5","object_id":"0","object_relation":null,"sharing_group_id":"0","to_ids":true,"type":"sha256","value":"260a8e14cd52ba9381f7d2af5c77642ef21dafd33523fa671770bc5eb43e43f4"},{"Tag":[{"name":"mwdb:family=\"Remcos\""}],"category":"Payload delivery","deleted":false,"disable_correlation":false,"distribution":"5","object_id":"0","object_relation":null,"sharing_group_id":"0","to_ids":true,"type":"sha256","value":"36fa91c5bfae97b2c9945b055384297afaf148f2becd50e0ce270276ca472855"},{"Tag":[{"name":"mwdb:family=\"Remcos\""}],"category":"Payload delivery","deleted":false,"disable_correlation":false,"distribution":"5","object_id":"0","object_relation":null,"sharing_group_id":"0","to_ids":true,"type":"sha256","value":"1d1bb5b9173dcbe44167211851dd74af2ce6172caa18a85e91b0fe952d9837ca"},{"comment":"Unknown Malware","category":"Payload delivery","deleted":false,"disable_correlation":false,"distribution":"5","object_id":"0","object_relation":null,"sharing_group_id":"0","to_ids":true,"type":"sha256","value":"138fbfb10e805264cf195ee6c7c9c8d8145768efafd27c4a44818bda1618ba8c"},{"comment":"Unknown Malware","category":"Payload delivery","deleted":false,"disable_correlation":false,"distribution":"5","object_id":"0","object_relation":null,"sharing_group_id":"0","to_ids":true,"type":"sha256","value":"d4409ffb59b1ff4e57272eb3b2fd06e22377478bf6388bae6263ebd01a399c47"},{"comment":"Unknown Malware","category":"Payload delivery","deleted":false,"disable_correlation":false,"distribution":"5","object_id":"0","object_relation":null,"sharing_group_id":"0","to_ids":true,"type":"sha256","value":"c147efe284d55f53f1396982d3868d76d1f5c19625ef18bd9a7dcc9edeaaa4fc"},{"comment":"Unknown Malware","category":"Payload delivery","deleted":false,"disable_correlation":false,"distribution":"5","object_id":"0","object_relation":null,"sharing_group_id":"0","to_ids":true,"type":"sha256","value":"96619c5e04461d1cdb5fcc8c76e23c804dcb329a118601d1a2d1de8063b058d4"},{"Tag":[{"name":"mwdb:family=\"Vidar\""}],"category":"Payload delivery","deleted":false,"disable_correlation":false,"distribution":"5","object_id":"0","object_relation":null,"sharing_group_id":"0","to_ids":true,"type":"sha256","value":"968b5f190c4fa224f8ab20e9402f1edac460e8407ddd49f874f5328d8cd7ff91"},{"Tag":[{"name":"mwdb:family=\"Vidar\""}],"category":"Payload delivery","deleted":false,"disable_correlation":false,"distribution":"5","object_id":"0","object_relation":null,"sharing_group_id":"0","to_ids":true,"type":"sha256","value":"b6501fe475c2656e2962761a1d08606576bac9e8b77165ed083605e3b9c4c96a"},{"Tag":[{"name":"mwdb:family=\"Vidar\""}],"category":"Payload delivery","deleted":false,"disable_correlation":false,"distribution":"5","object_id":"0","object_relation":null,"sharing_group_id":"0","to_ids":true,"type":"sha256","value":"839853e584014363213871064f9b3bd7f35adcf61f655c9d2dffe8c9f46cf857"},{"Tag":[{"name":"mwdb:family=\"Xmrig\""}],"category":"Payload delivery","deleted":false,"disable_correlation":false,"distribution":"5","object_id":"0","object_relation":null,"sharing_group_id":"0","to_ids":true,"type":"sha256","value":"09db214926d1f5a605cb42c0829220272111228e638f944607485c134a29483c"},{"Tag":[{"name":"mwdb:family=\"Xmrig\""}],"category":"Payload delivery","deleted":false,"disable_correlation":false,"distribution":"5","object_id":"0","object_relation":null,"sharing_group_id":"0","to_ids":true,"type":"sha256","value":"4d4f335669d4e7a200c2b9f31430a6090ab922ba476e0d3aafe0a2462b0978fa"},{"Tag":[{"name":"mwdb:family=\"Xmrig\""}],"category":"Payload delivery","deleted":false,"disable_correlation":false,"distribution":"5","object_id":"0","object_relation":null,"sharing_group_id":"0","to_ids":true,"type":"sha256","value":"051ee98c921d915df85f4afee0e6ed40cf210dc9bd70c32ab446a1596f6b6aab"}],"analysis":"0","date":"2020-10-07","disable_correlation":false,"distribution":"0","extends_uuid":"","info":"Daily IoCs for 2021-04-25","locked":false,"proposal_email_lock":false,"publish_timestamp":"0","published":false,"sharing_group_id":"0","threat_level_id":"4"}}
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement