{ "26bc29ec-ab20-47de-9d0f-ab21547d5c1b": { "event_id": 11212, "created_at": "2021-05-31T09:51:57.326185+00:00", "updated_at": "2021-05-31T09:51:57.438098+00:00", "name": "Campagna sLoad via PEC", "description": "RAGIONE SOCIALE\r\n\r\ncome da accordi in allegato trovi fattura di cortesia non valida ai fini fiscali. Il documento in formato elettronico e' stato inviato al SDI come da normativa fatturazione elettronica.\r\nDistinti saluti\r\n\r\nIl presente messaggio \u00e8 diretto esclusivamente al suo destinatario e pu\u00f2 contenere informazioni di natura riservata. Chiunque lo abbia ricevuto per errore \u00e8 pregato di darne notizia immediatamente al mittente e di distruggere la copia pervenutagli. Qualsiasi altro suo utilizzo \u00e8 vietato.", "subject": "Ragione sociale", "tlp": "0", "campaign_type": "malware", "method": "attached", "country": "italy", "file_type": [ "7z", "wsf" ], "theme": "Pagamenti", "malware": "sLoad", "phishing": null, "tag": [], "ioc_list": { "md5": [ "3003A97847EFBAED09A542B67B21E072", "f1554a6fbca51001bbd24bc7ccf5b61f", "6fdee8055cb9aef6f5f6579587645a69", "739da1b42b6125cf18e9eb56f1e05eef", "ee19e5e6ca460427643af5d9ebe37f79", "C62E70DD554A154403976B59B4D48EF3", "e468e6ffe43832655b2bbf6ed2176858", "1402719556C7E902B919066A11FB4399", "C4CA4238A0B923820DCC509A6F75849B", "d51480500dfe0ec38a93ee935be64f3f" ], "sha1": [ "21CE9FFE934B17E516B8078FD756CD1384712AD3", "6ec3053b8da188a97757dcb17ab1cf602c64d73e", "246ec7b35f5bcde47f79bfe57756e16be45b94c6", "8F9451B5CFE49460067A752CEE048A53CD1C0AAE", "356A192B7913B04C54574D18C28D46E6395428AB", "f0825c881c2387c270645bdb09b85c6dd3b46e4d", "0a50e6e1ba61c347a0e7489948785187949f260a", "b9920077838aa7024979ed2dc086bf55453964b0", "56fc7476167938c67203db10139c2432a2fc8c1c", "E7F8E04F3C0F0F73759632DF656E91E5ED1E32B3" ], "sha256": [ "6B86B273FF34FCE19D6B804EFF5A3F5747ADA4EAA22F1D49C01E52DDB7875B4B", "4822a2867df19269f3c6e76dd5bf5aee646aeaeda6fc54a36a5009e94714524c", "e14bd3c8e2ec93f2985144ef29aaa2f67cf98daa5e0329a03398a893ae01729d", "b981e84d74877961982a1758c6b59338ca33b623d8b82d616e25a54667236714", "c1dce25b7018a64a75fffa8fedac091b1b1b67ce9f4c8f96639cd0552a690ae5", "c68adc2482ae8bbb00e8e022f5513e107202b3b7ffb9e4b05cd05351ffd7924b", "617D5E79875D256500B65D74D4B71166D32BC787B8217844F6AEE317D3D2D18D", "4CB227E459D8EECB24515CC629371F26E245D133AAA6CB9FEFA8592893D68D13", "4F03D5F557571CFD3C743A3038B0E8A3EA6A3EBFA2DC3AC8D702F5FE1C68CB6D", "19465c8e1966ebafd026859842a6866fdfb7c1ed417b4dc64c44b1a843165e08" ], "imphash": [], "domain": [], "url": [ "https://goldenwestway.com/goldy/14505421009/developer.doc", "https://goldenwestway.com/goldy/" ], "ipv4": [], "email": [] }, "email_victim": [], "ioca_version": "1.0", "organization": "cert-agid" } }