{ "0e6f44cb-b6c3-428c-8590-3c46a7f6f11e": { "event_id": 10789, "created_at": "2021-03-01T10:12:32.713786+00:00", "updated_at": "2021-03-01T11:01:07.684170+00:00", "name": "Campagna sLoad italiana via PEC", "description": "", "subject": "Per conto di: RAGIONE SOCIALE", "tlp": "0", "campaign_type": "malware", "method": "attached", "country": "italy", "file_type": [ "zip" ], "theme": "Pagamenti", "malware": "sLoad", "phishing": null, "tag": [], "ioc_list": { "md5": [ "b233e648c76a476bf0933b36ebd07b38", "d642cc8a18d1b04b90d951617ca0de75", "fb4f68de40116df9fbc353263e970b53", "0c1000128971df37523f37a5e3c3ddae", "577131cd89048ca586951032c5bbf94b", "1366072611d0c346a7b15ddbb4057529", "479f43b1318539573c0db9b3270cd055", "d505460cbfe4f50bdb0d4380add7aea6", "39c09ac698e771850697475f24b7819f", "f756e3c3f06368e0a041dce10b511b42", "aaa3fb024f92403a34692d8857f7057b", "659589d5ea9681b079a0f38a8209b3c2", "70053c798a635f12c002e57eacb3bd26", "1d954d6be24901ccf714d40753d981ce", "c320301b4c22ad6903034c439ddc7dd3" ], "sha1": [ "2d50c7e0ee21f9deca283d407aadc757624214d9", "fa33423556c6a3a8af87331fc8191207dab78052", "461f164815e2d9cda4346d8abe0b8c0c43b2a6fa", "fb4a27c4e2ea69ef489729b734ce56ab75b0226f", "52ceabe153052f504502e9aa6c5b13e764ce1af2", "5048006e284c52b1cf0ddf96f69bb3c7aaaee567", "1667c0ee7efeab24f1811a3cf4ff96155f8955ea", "b6c0329a775e71dfd02dffc3eef1464f33983d9d", "44fa2d370984e29814c30bf5b2885e10fb4a70be", "837adf9d54dd468325801e061b15741cccd4c83d", "edeb67151899341396205223c7654c96cc30fe9c", "2d2926c91e88b12b22645e39bd962f66ca961519", "4cbe4c33fc5f44265e15bb6e583f46c878a97341", "e9d95877d1bedc6328ca9598d4a69ecb5a2e9f25", "85f3d6851b5327eec9d9985ff792e8d2c0615c33" ], "sha256": [ "62536454f3590f33e98bc19fec3fb2d22957237ac40972a2bee40da1aad79775", "3b836f7c00db94b8d62029289c7cfaf4eb6e995eb899ba794e488d85d589e066", "52c51858b8fe288e3e2264117f69708225c51500f04d48d98e8764d02b904a9e", "9b78e7f35ab731adb3bfe8fc132854ff64fff207ba3acf07c320f320ddc4c3f4", "3bdacd42337ecdb79e60e064c3bb9ddf620524051083c63fa6b778a349ada29a", "331e91d8804db2b669536e51e0089e26bc87fbc854cb1453edf699a5e66e78b2", "1ec893895f38d3ce0f22e25abff72c4c3e7de97669968508d84cd61d2f6964c6", "36b3927d5a7498e722e34dc4873b9b8f24ea3a8c86e6b878cbe7eae6f0c9dfef", "30e3804b169221e580d97ddb610646b274278eaf4bab61eb4c19bb41d552d776", "e10c26035d7546e089fec1b760a2bf295b835f38f1e761b3dd0faf150ba23c16", "f75d1b9d49c12cadb0cd36f22b30c2d71359e8841a39cd75fb13226bd37cb0f8", "43202b6bcac9d8c195da84abee91ebd15ee80337421dc6e0eaa1c2e1481bb123", "ff81e39bf0ab4287a149956e7b7861a79b8d0818abab8306823a6d73a874af5d", "40b1a1012ccffe45b6bf97b422fe6c959270fd16a215af6ff43fa69164bddde6", "c68a000d2bd00e593eb1845d6830bad123ffa2c672bcadc4780896d02562fc6e" ], "imphash": [], "domain": [], "url": [ "https://agaux.com/ogoksi/", "https://hangoutspr.com/gotspo/", "https://nmqeruy17.eu/topic/", "https://nmqeruy2.eu/topic/", "https://nmqeruy26.eu/topic/", "https://nmqeruy30.eu/topic/", "https://rebnow17.eu/topic/", "https://nmqeruy11.eu/topic/", "https://rebnow7.eu/topic/", "https://rebnow27.eu/topic/", "https://rebnow14.eu/topic/", "https://nmqeruy.eu/topic/", "https://nmqeruy6.eu/topic/", "https://nmqeruy27.eu/topic/", "https://nmqeruy7.eu/topic/", "https://nmqeruy5.eu/topic/", "https://rebnow1.eu/topic/", "https://nmqeruy28.eu/topic/", "https://nmqeruy15.eu/topic/", "https://rebnow4.eu/topic/", "https://nmqeruy19.eu/topic/", "https://rebnow28.eu/topic/", "https://rebnow21.eu/topic/", "https://rebnow8.eu/topic/", "https://nmqeruy4.eu/topic/", "https://nmqeruy3.eu/topic/", "http://pesterbdd.com/images/", "https://nmqeruy16.eu/topic/", "https://rebnow15.eu/topic/", "https://rebnow23.eu/topic/", "https://nmqeruy23.eu/topic/", "https://nmqeruy21.eu/topic/", "https://nmqeruy1.eu/topic/", "https://nmqeruy13.eu/topic/", "https://nmqeruy22.eu/topic/", "https://rebnow20.eu/topic/", "https://rebnow22.eu/topic/", "https://rebnow25.eu/topic/", "https://rebnow12.eu/topic/", "https://rebnow18.eu/topic/", "https://nmqeruy18.eu/topic/", "https://nmqeruy25.eu/topic/", "https://nmqeruy8.eu/topic/", "https://rebnow.eu/topic/", "https://rebnow2.eu/topic/", "https://nmqeruy9.eu/topic/", "https://rebnow26.eu/topic/", "https://rebnow30.eu/topic/", "https://rebnow10.eu/topic/", "https://rebnow5.eu/topic/", "https://nmqeruy14.eu/topic/", "https://rebnow3.eu/topic/", "https://rebnow6.eu/topic/", "https://rebnow13.eu/topic/", "https://rebnow16.eu/topic/", "https://rebnow24.eu/topic/", "https://rebnow9.eu/topic/", "https://nmqeruy10.eu/topic/", "https://rebnow11.eu/topic/", "https://nmqeruy24.eu/topic/", "https://nmqeruy12.eu/topic/", "https://rebnow19.eu/topic/", "https://nmqeruy29.eu/topic/", "https://nmqeruy20.eu/topic/", "https://rebnow29.eu/topic/", "https://agaux.com/book/" ], "ipv4": [], "email": [] }, "email_victim": [], "ioca_version": "1.0", "organization": "cert-agid" } }