{ "aef7a6e6-dadf-4e9b-90d5-4c9dc6745495": { "event_id": 14312, "created_at": "2023-04-19T12:52:50.240625+00:00", "updated_at": "2023-04-19T19:58:26.049701+00:00", "name": "Campagna AgentTesla", "description": "Campagna rilevata da fonti OSINT. Dal nome file un possibile tema \u00e8 Documenti", "subject": null, "tlp": "0", "campaign_type": "malware", "method": "attached", "country": "italy", "file_type": [], "theme": "Documenti", "malware": "AgentTesla", "phishing": null, "via": "email", "tag": [], "ioc_list": { "md5": [ "2ac29337ee58bb1531433d7abc735ec9", "ad64332b109580b4bce7d49121280919" ], "sha1": [ "2c68d72f38f6ac77916174c7805a0f4d4b03541c", "5548a00d7415cfbd5a2833964a57608d1fef3db7" ], "sha256": [ "18bcae6310212c3e9d4433e5f9fd2ec0755f735554fc08a25fcd2e60bd9142e8", "07bf1c1f2eaf43fc01c272fc54f9b48ca7de37038caf59a5870deca1935400be" ], "imphash": [], "domain": [ "mail.namebadgesinternational.com.sg", "blocexpert.eu" ], "url": [], "ipv4": [], "email": [] }, "email_victim": [], "ioca_version": "1.0", "organization": "cert-agid" }, "98397701-1645-4b54-a5dc-05e5569902e3": { "event_id": 14348, "created_at": "2023-04-24T12:57:40.407445+00:00", "updated_at": "2023-04-24T15:54:03.585922+00:00", "name": "Campagna AgentTesla italiana", "description": "", "subject": null, "tlp": "0", "campaign_type": "malware", "method": "attached", "country": "italy", "file_type": [], "theme": "Ordine", "malware": "AgentTesla", "phishing": null, "via": "email", "tag": [], "ioc_list": { "md5": [ "944e7cac44014cfab1244019a2b4197d", "6b34e608bffcdcdba27f6a0b54f2752c", "06ce38fb4620bde534b03eccc85bb588", "61a07e35408b0046f724cd2a23cc0d18" ], "sha1": [ "74673d931f22afa43eb66d957e7a5b9c87bec527", "ca9b5fd036336a7719bdc0b54f0d09b4164b215c", "fc39a59bdee0594a4698768b860ed8452f5adfb2", "8a0ec8095c3df9342c0b0608b84f83b13cbcce82" ], "sha256": [ "c355864463b927059cc17bc8929f29afa9102b4bea8c84f5991cd2c494523a5e", "c53658a32642d609f46200f49ff4cf466b2a87e58dd5cba05ec0340340fc7650", "9c9322e63bc05c1a4121627a72f389d68e400490faa4dbd5a9dc47aa5f51dfea", "1e8233d374590bddb1cc8cdf9a1180527b65fa1ed895dfaf31684871a0e191d6" ], "imphash": [], "domain": [ "blocexpert.eu", "mail.namebadgesinternational.com.sg" ], "url": [ "http://blocexpert.eu/.well-known/Yfpumrcbr.png" ], "ipv4": [], "email": [] }, "email_victim": [], "ioca_version": "1.0", "organization": "cert-agid" } }