{ "eb319429-d666-411a-9176-2540be57e81d": { "event_id": 10426, "created_at": "2020-11-23T12:09:11.300130+00:00", "updated_at": "2020-11-23T14:48:35.508314+00:00", "name": "Campagna sLoad veicolata in Italia via PEC", "description": "Il file allegato contiene documento fiscale (fattura/nota di credito). Le ricordiamo che quessto \u00e8 un documento di cortesia.\r\nCordiali Saluti\r\n\r\nLe informazioni contenute in questo messaggio di posta elettronica e relativi allegati sono riservate e confidenziali e ne \u00e8 vietata la diffusione in qualunque modo eseguita. Qualora Lei non fosse la persona a cui il presente messaggio \u00e8 destinato, La invitiamo ad eliminarlo e a darcene gentile comunicazione.", "subject": "Fatture scadute", "tlp": "0", "campaign_type": "malware", "method": "attached", "country": "italy", "file_type": [ "zip" ], "theme": "Pagamenti", "malware": "sLoad", "phishing": null, "tag": [], "ioc_list": { "md5": [ "10b3d6ef1c402bf52865b2620796e0cd", "ad8978d4eb51612212ba3cb9bcdbfc72", "448aef8d259bfc4a2013eacc6dde35b8", "612279ccec7e6ff05d586fa5a7800c67", "f8f6f6628bc9b6972c387007addce645", "1b1dc6a2b3b38bbed8a274abef19daeb", "ab0127f9052ec51e6ad1e877423c536f", "3507f3563997b0eef2bcc59b03116d33", "9b3ff2782e22bc78da531806607d0ba9", "64f64dd0d3af836cce3cdf20275d7661", "bf0ce80432e85cefb54707f5ba4a10e1", "629b50737ffaf412cf3a56caa40e5030", "163279b2e8b96b0cc184d32e013303f1", "94aef914e5cdbac453798158b39264c2", "9cab983254fb7916cb169b0736919007", "ceff9364195f28623c0efba90dcb8acf", "8ca80f56d53c4e72bab78ee8cada065c", "764c02c19ff5e5813528991248c34d08", "c2711bb9a89c20cce17d7ddababa5de7", "ae2e7f51a32385e62488d5c81284bd90", "8151a6334f0b4dedb0880f8b3bbec18a", "ae6400d27032186a4525c2d21b017f2c", "19ed6ee4450c8e6b104fa6635989ec4f", "cd146f222f7b8b9afa474526efa30dc5", "3ecb9760fa942b4f39981b69eeed2020", "3de00ed07c336071b8a7bc418c7106de", "9a29a47fa521a7695c6fd35da670fb1d", "eb5129aca7687d3de32e25cc3a0fc643", "3749ce5c0749652f16336d7c743a48ec" ], "sha1": [ "5b02c66270b9603b95743fbe5ffdc18c370344af", "e9737316313ed6c7520a9ad1b589649f3f3d031b", "bce4b94b8f8ca8fae8061fdd1f7329fd8d9335d8", "e3449b91e633280ced5ac96816f046269729e8ca", "453594001a558cc264dd787f7c16c549d0784e4a", "d26ab45cdacd0b2db41188ee4d926ad1ed987234", "15f0674a0c0f8b57642fbac23c9a46f6a2a33dca", "8c6f6b4b88bb1c8f5ef5928aba5b5d42299d8ce2", "857d8842c0424c7f7ad3dc1b76922e26fd6b94a7", "faaef14d6d28ff4fb323c4b9f2f33650e0f68a71", "b4b7308bae73d281d12204dba24c7ebd12385005", "d6c3be949a077865c84ae819265bf3a8acf4115f", "3fdd12140ad5cb75aea530c5a64b98f174f767f9", "112cadf80233744bd43515c345a3bda3373815d3", "d58ea7a1a3ce1df9c542c57cfd67cb50d940899a", "ed7fc56e371795f3cd30ae5320a209719b17700c", "58d91b54812bebe134f7fd5eb4959a2d9f5eea9f", "d1c828ffdbd2db4c942fe016b8e6dc07044eac53", "8e8aece9704cde306fa77bc43d3121a416115aea", "27c4deb37a3e4b7d2868ea8a9df3d0b942112c94", "365a40e67358f8586ffed235b2f5ee2e619f98c2", "a2c4c478040079344762eb3cd0d5839dc2fe6f3f", "9ebce96e1f34426f2830367dd650ddc540948b5a", "2bf70fc9b4980860eb818c85299c8193b9ae0cae", "a30b4a2103d697e3a68610339720b8a8335f9d60", "d1f246422b6c94804e4caab84a9375f60ab8a81f", "16f6046a147b4fb014e2205cbfbfb71f744dd470", "3e2e3063966e562d00dadc05ac12859a6e151430", "9dfcc11be93261701a76b0de2c448e031ba4ce8f" ], "sha256": [ "50e4aa54e36e1e6422460e1b69f6c180a74b8d45754e5d7b670519992d1925e2", "80cec03f1dc1193c6aace987943bf44f61189baa1e677e3b62e4380aee4e7c85", "cbda358907f1a19d452880b2798204e87559e614faea9ae52c3ed5c4371e5784", "2d4f4f98c234ea41653f671c496f4a95efa4a74411703bf5a50fc7fac2992699", "2a0c00fe49507495f0a008be064f2421f63f567f068b21b8830ea2e28b38cda5", "cbe7059ba16039d0e1d3a628e7c38a18f0ba4872882936c2bed0da0ac11ac62a", "d6b547412c5e1fece92fd1554d05f79728fc428ebde26f69112a5cc1399e11bd", "e74cb2dc4c53319bc772633f86e4dfc3de28d48647bf55f15c2b2ea44c7bf914", "824e5f14c05ff6c857ce93693cc826bcdd90200a3d4e2a2e4a713cea3744a484", "31b24778ec52bcc726779fe314e6711ffefb2dcaea4342c2621f908327de71ae", "900aaef2390d44e3cf2950ac49d8d44a79c5ba18c683a8a5d25638641e247daa", "4103e446a29e856a759cdf147cb6b68529d9483a86b564d20c1159915a175576", "0b6ed40ffcbb1b1d16dc8ea8ac746411ebaff9f32481b59b66c07e83d7764fff", "3d92e7a2e327bd20d6a53e9a75d70c15dd652752bdba1fe81f2719bdd54464d2", "a04cd2378680721c3143d02eb7cfd38f0d87f64def0db35ccb63d412d3159281", "eb9cb9c73f8d50c33e1ad63e2a09ebbb3021c645cb648f1d8d7e6637530165da", "2ad29461ee7dd28b1fdcdcbcaf3cf9acb6a36aecc4143afd40dee4342e24947b", "711869de1c6036eb52cb105bc3b3626aa51a26e06a8c2b74d887271bfbf8007b", "8fb50b78a8867ff8e0ae7115425e954c03faf64701c53adca2340945a6e13506", "cbcd957901e2b16a3d4de150bf5323827fd1152ea4c3daaecfddc75be72b7c3a", "f23e2b57c987a4f2fdca7b279946b669cbdcfecc03fcb630fcdbd521807deda7", "e223aadfe8ca45d34e2daaabcf5a7ed074e6b67ccac0a11c6cbef77d2ac45107", "90bafeac309752a63934adc0b7a04826aba00702d0e4db618c80aa3ea3d36d6f", "189c235e1d8e1cd2bf2ad530c774a3004872956729b475edd53f0397b81c0806", "fc9e953b43016d26cbd6a9a23422338f31cd08a6e58be10743fc89bc41ee0798", "e6cee6f45fe2c0d188ff014ff2f2fbc240190d059f76e983170e1cd5b668769e", "dcc89aee1d2f15a2a3bce7a520812b62f3b93c4f8ef4646933083cc1a145701a", "e5f49ab673a734ec8db55759fa140660c56bf5177789b72dbee08c0ef383976d", "5e02bd6ae22382749749f1c76e286b3215a78d3de9d09e98bfdb0cf550841ddf" ], "imphash": [], "domain": [], "url": [ "https://estebankott.com/ordasum/", "https://estebankott.com/ordasum/05769010652/logo.jpg", "https://estebankott.com/ordasum/06606560966/it.png", "https://estebankott.com/ordasum/01133190353/map.gif", "https://owensii.com/werlopab/MRLRRT77H10C351K/en.gif", "https://azurewood.com/gpolaq/07857291210/it.jpg", "https://fhivelifestyle.online/lidepato/BZZGCR60L30G224R/maps.gif", "https://owensii.com/werlopab/03824470284/it.png", "https://cdprf.com/sroptun/PDRNDR75A13E289Q/en.gif", "https://fhivelifestyle.online/lidepato/03339980793/1x1.gif", "https://fhivelifestyle.online/lidepato/01562520518/blank.jpg", "https://cdprf.com/sroptun/02240450342/maps.jpg", "https://azurewood.com/gpolaq/03253330132/maps.png", "https://waybackwhenbycynthia.com/edikaso/00214230260/map.jpg", "https://waybackwhenbycynthia.com/edikaso/DGRFBA72C20A390S/blank.jpg", "https://waybackwhenbycynthia.com/edikaso/LNESFN66H03L219X/maps.css", "https://estebankott.com/ordasum/08298821219/it.jpg", "https://estebankott.com/ordasum/PTRCRL62C21H501R/logo.gif", "https://cdprf.com/sroptun/TLNGCR66P09L175T/logo.jpg", "https://fhivelifestyle.online/lidepato/BROMTR47P50D119R/en.css", "https://cdprf.com/sroptun/05725050487/maps.css", "https://owensii.com/werlopab/14948391009/it.jpg", "https://owensii.com/werlopab/05538261214/uk.gif", "https://fhivelifestyle.online/lidepato/07823500967/map.gif", "https://fhivelifestyle.online/lidepato/NVLLSS61B28L736N/logo.jpg", "https://azurewood.com/gpolaq/FNTGZN54L12C469R/maps.jpg", "https://azurewood.com/gpolaq/00225500164/en.jpg", "https://azurewood.com/gpolaq/GCMTTL66M14G224U/uk.gif", "https://estebankott.com/ordasum/SNNRRT80M06D205G/map.gif", "https://estebankott.com/ordasum/02085560833/uk.css", "https://waybackwhenbycynthia.com/edikaso/GLLGLL65B14F839Z/map.css", "https://cdprf.com/sroptun/03983230404/en.jpg", "https://fhivelifestyle.online/lidepato/00230530131/uk.css", "https://estebankott.com/ordasum/01261440380/en.css", "https://cdprf.com/sroptun/DSRRFL66M10G942V/1x1.jpg" ], "ipv4": [], "email": [] }, "email_victim": [], "ioca_version": "1.0", "organization": "cert-agid" } }