PyMISP/tests/reportlab_testfiles/56e12e66-f01c-41be-afea-4d9...

1 line
167 KiB
JSON
Raw Normal View History

{"Event": {"threat_level_id": "3", "timestamp": "1457605235", "info": "Cerber Ransomware", "published": true, "date": "2016-03-10", "analysis": "0", "uuid": "56e12e66-f01c-41be-afea-4d9a950d210f", "publish_timestamp": "1550653999", "Orgc": {"name": "CIRCL", "uuid": "55f6ea5e-2c60-40e5-964f-47a8950d210f"}, "Tag": [{"name": "circl:incident-classification=\"malware\"", "exportable": true, "colour": "#3c7700"}, {"name": "malware_classification:malware-category=\"Ransomware\"", "exportable": true, "colour": "#2c4f00"}, {"name": "tlp:white", "exportable": true, "colour": "#ffffff"}], "Attribute": [{"timestamp": "1457598168", "value": "decrypttozxybarc.onion", "type": "url", "to_ids": true, "object_relation": null, "comment": "Payment site", "uuid": "56e12ed8-18e4-4f3b-8767-49f5950d210f", "category": "Network activity"}, {"timestamp": "1457598169", "value": "http://ipinfo.io/json", "type": "url", "to_ids": false, "object_relation": null, "comment": "Geo lookup", "uuid": "56e12ed9-2378-4c4d-bc31-435b950d210f", "category": "Network activity"}, {"timestamp": "1457598169", "value": "http://freegeoip.net/json/", "type": "url", "to_ids": false, "object_relation": null, "comment": "Geo lookup", "uuid": "56e12ed9-56ec-46fa-829b-42f6950d210f", "category": "Network activity"}, {"timestamp": "1457598169", "value": "http://ip-api.com/json", "type": "url", "to_ids": false, "object_relation": null, "comment": "Geo lookup", "uuid": "56e12ed9-eefc-4ed9-9d14-4949950d210f", "category": "Network activity"}, {"timestamp": "1457605143", "value": "decrypttozxybarc.onion", "type": "hostname", "to_ids": true, "object_relation": null, "comment": "Onion server for payment", "uuid": "56e14a17-4f34-4ffd-8ef8-4990950d210f", "category": "Network activity"}, {"timestamp": "1457598338", "value": "a5ff5f.exe|2f7059d7b1dda3080e391d99788fff18", "type": "malware-sample", "to_ids": true, "object_relation": null, "comment": "Cerber executable (created: Fri Feb 26 10:28:56 2016)", "data": "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