{ "a104f839-4ecd-4e10-af92-2969fe5256e0": { "event_id": 13537, "created_at": "2022-09-19T15:23:32.784682+00:00", "updated_at": "2022-09-19T19:41:42.989488+00:00", "name": "Campagna italiana Hydra APK", "description": "", "subject": null, "tlp": "0", "campaign_type": "malware", "method": "linked", "country": "italy", "file_type": [ "apk" ], "theme": "Banking", "malware": "Hydra", "phishing": null, "via": "email", "tag": [], "ioc_list": { "md5": [ "4a221804f5dec022c97fb357a9cfaef3" ], "sha1": [ "d7ed8ef2bcfdd0a4d9dd80a55180cf24240a3121" ], "sha256": [ "eb2f45849072ef2f4d638ce47b4f5a7b277c4569896f756a1bdc69d519530f79" ], "imphash": [], "domain": [], "url": [ "https://babosiki.buzz", "https://trytogoi.xyz", "http://lalabanda.com/", "http://coinbase.scarica-aggiornamento.com/", "https://trygotii.xyz", "https://lift.bio/coinbaseapp", "https://cdn.discordapp.com/attachments/1021035756447346763/1021042778551103498/CoinbaseUpdate20.14.apk", "https://trustpoopin.xyz", "http://coinbase.aggiornamento-scarica.com/", "https://monica-cosmetics.com/Italiacevreitu", "http://cariciu-carilas.com", "http://cslon.com", "http://carilas-carilas.top", "http://carilas-carilas.net" ], "ipv4": [], "email": [] }, "email_victim": [], "ioca_version": "1.0", "organization": "cert-agid" } }