{ "b9ab42c4-19e5-40f5-b3a3-3e831a9da7da": { "event_id": 12476, "created_at": "2022-03-02T09:10:03.786965+00:00", "updated_at": "2022-03-02T09:24:24.180749+00:00", "name": "Campagna Emotet italiana ANPAL", "description": "", "subject": "Trasferimento su piattaforma ANPAL Nazionale", "tlp": "0", "campaign_type": "malware", "method": "attached", "country": "italy", "file_type": [ "xlsm" ], "theme": "Anpal", "malware": "Emotet", "phishing": null, "via": "email", "tag": [], "ioc_list": { "md5": [ "5e1d8326af6be0a29dfb32b8a0e6c2aa", "4631bd438bbd689b132cae1170f56757", "cdf901cf2024007c1286a5d5fdaab231", "ce6a4d5a770bbfe0777b05731d3f51a2", "4eff252c1c6f69f245e26b303e16a20e" ], "sha1": [ "cd51b7f04a2c6055e597dec3910fb86c5767054b", "b026f5b32c9f37b9c616cbffb672581a46ceebfa", "ffd9f09d657dca1e828137385d3b0772e51e354d", "57dc3334cbd3f350a4f728c0908e54bd6ccb5feb", "8ebd41463cf89577a17b829ccc957722073b43ec" ], "sha256": [ "ab0148fa02620f9024b17d7543c5481f298b54fddc704277543e4099326083fa", "cec7f77858a5ef101407a3efb950dd230879318b27fc71c41edeb9ccfa840bb5", "95b11b0b692f3c705db34c31f1666914b0a39e9544813adce3b3e146cface922", "f8ade96a57bb034c5e03701b81f4f37c104d1c7fbf826e86f300c4a722b85908", "a70bc39e392aef9824d33d1ed5f53ce6c7aa2858e266791116ef7ea54c851e16" ], "imphash": [ "c43d7d6aae03def404d4e73d7d3f62eb" ], "domain": [], "url": [ "https://chera.co.kr/wp-includes/i2nnUkDXZ/", "http://rosywhitecleaningsolution.com/wp-admin/PqMw6fND8Bb1I4VPR10/", "http://www.drcc.co.za/restoredcontent/nAKvnbRpazx7c/", "http://havilaholuemglobal.com/dofz29/ymIfCcEL8I5kjA6E/", "http://www.floresguitarinstruction.com/wp-admin/jWlCX/", "http://aopda.org/wp-content/uploads/RDL75PME7OKHk4f/" ], "ipv4": [ "31.24.158.56", "185.157.82.211", "50.30.40.196", "164.68.99.3", "50.116.54.215", "159.65.88.10", "178.79.147.66", "45.118.115.99", "58.227.42.236", "81.0.236.90", "45.176.232.124", "110.232.117.186", "176.104.106.96", "103.75.201.2", "173.212.193.249", "46.55.222.11", "82.165.152.127", "212.237.56.116", "153.126.203.229", "162.244.80.68", "158.69.222.101", "195.154.253.60", "212.24.98.99", "1.234.2.232", "51.254.140.238", "178.128.83.165", "45.142.114.231", "159.8.59.82", "138.185.72.26", "209.15.236.39", "103.75.201.4", "195.154.133.20", "162.243.175.63", "176.56.128.118", "107.182.225.142", "209.126.98.206", "212.237.17.99", "216.158.226.206", "119.235.255.201", "103.134.85.85", "203.114.109.124", "129.232.188.93", "79.172.212.216", "217.182.143.207", "45.118.135.203", "131.100.24.231", "207.38.84.195" ], "email": [] }, "email_victim": [], "ioca_version": "1.0", "organization": "cert-agid" } }