APT_CyberCriminal_Campagin_.../2019/2019.08.31.Bitter_APT_Malware_analysis/IOC_Bitter_31-08-19.json
2019-09-02 13:05:24 +08:00

47 lines
2.4 KiB
JSON
Raw Blame History

This file contains invisible Unicode characters

This file contains invisible Unicode characters that are indistinguishable to humans but may be processed differently by a computer. If you think that this is intentional, you can safely ignore this warning. Use the Escape button to reveal them.

[
{
"Indicator": "Urgent Action.docx",
"Description": "34b53cd683f60800ac4057d25b24d8f083f759d024d22b4e5f2a464bc85de65a"
},
{
"Indicator": "smss.exe",
"Description": "dcb8531b0879d46949dd63b1ac094f5588c26867805d0795e244f4f9b8077ed1"
},
{
"Indicator": "maq.com.pk",
"Description": "Domain requested"
},
{
"Indicator": "203.124.43.227",
"Description": "IP requested"
},
{
"Indicator": "http[:]//maq.com.pk/",
"Description": "HTTP/HTTPS requests"
},
{
"Indicator": "http[:]//maq.com.pk/wehsd",
"Description": "HTTP/HTTPS requests"
},
{
"Indicator": "http[:]//maq.com.pk/wehs",
"Description": "HTTP/HTTPS requests"
},
{
"Indicator": "http[:]//onlinejohnline99.org/kvs06v.php",
"Description": "HTTP/HTTPS requests"
},
{
"Indicator": "onlinejohnline99.org",
"Description": "Domain C2"
},
{
"Indicator": "93.123.73.193",
"Description": "IP C2"
},
{
"Indicator": "93.123.73.198",
"Description": "IP C2"
}
]