Enrichment Data: Keeping it Fresh - SANS Internet Storm Center
Tags
country: | Singapore |
maec-delivery-vectors: | Watering Hole |
attack-pattern: | Data Ip Addresses - T1590.005 Malware - T1587.001 Malware - T1588.001 Phishing - T1660 Phishing - T1566 Whois - T1596.002 |
Common Information
Type | Value |
---|---|
UUID | a3369ab2-96c0-4ae4-ba99-4a8cfd659641 |
Fingerprint | e64f2b10813a8bfb |
Analysis status | DONE |
Considered CTI value | 2 |
Text language | |
Published | Sept. 5, 2024, midnight |
Added to db | Sept. 6, 2024, 3:39 a.m. |
Last updated | Nov. 17, 2024, 7:44 p.m. |
Headline | Internet Storm Center |
Title | Enrichment Data: Keeping it Fresh - SANS Internet Storm Center |
Detected Hints/Tags/Attributes | 21/3/32 |
Source URLs
Redirection | Url | |
---|---|---|
Details | Source | https://isc.sans.edu/diary/rss/31236 |
URL Provider
RSS Feed
Details | Id | Enabled | Feed title | Url | Added to db |
---|---|---|---|---|---|
Details | 142 | ✔ | SANS Internet Storm Center, InfoCON: green | https://isc.sans.edu/rssfeed_full.xml | 2024-08-30 22:08 |
Attributes
Details | Type | #Events | CTI | Value |
---|---|---|---|---|
Details | Domain | 42 | tencent.com |
|
Details | Domain | 4127 | github.com |
|
Details | Domain | 425 | isc.sans.edu |
|
Details | Domain | 29 | urlhaus.abuse.ch |
|
Details | Domain | 8 | spur.us |
|
Details | Domain | 268 | www.virustotal.com |
|
Details | Domain | 180 | readme.md |
|
Details | Domain | 7 | bgpview.io |
|
Details | 1 | qcloud_net_duty@tencent.com |
||
Details | Github username | 4 | jslagrew |
|
Details | Github username | 1 | demisto |
|
Details | sha256 | 1 | 062ba629c7b2b914b289c8da0573c179fe86f2cb1f70a31f9a1400d563c3042a |
|
Details | sha256 | 1 | 47b268c21591069bfe4099833ad66b8138a53ab2dcb866e040d466aee1f8624c |
|
Details | sha256 | 1 | 306f0c79ad9ee76e996556f909306fda5704b456d670aa9daeb54760b4b5e4f6 |
|
Details | IPv4 | 3 | 179.43.175.5 |
|
Details | IPv4 | 1 | 193.42.33.81 |
|
Details | IPv4 | 1 | 201.186.40.250 |
|
Details | IPv4 | 1 | 101.32.114.105 |
|
Details | IPv4 | 1 | 101.32.112.0 |
|
Details | IPv4 | 1 | 101.32.175.255 |
|
Details | IPv4 | 1 | 101.32.114.0 |
|
Details | Url | 3 | https://github.com/jslagrew/cowrieprocessor |
|
Details | Url | 2 | https://isc.sans.edu/api |
|
Details | Url | 7 | https://urlhaus.abuse.ch |
|
Details | Url | 2 | https://spur.us |
|
Details | Url | 43 | https://www.virustotal.com |
|
Details | Url | 1 | https://isc.sans.edu/diary/virustotal |
|
Details | Url | 1 | https://github.com/demisto/content/blob/master/packs/virustotal/integrations/virustotalv3/readme.md |
|
Details | Url | 1 | https://www.virustotal.com/gui/file/062ba629c7b2b914b289c8da0573c179fe86f2cb1f70a31f9a1400d563c3042a |
|
Details | Url | 1 | https://www.virustotal.com/gui/file/47b268c21591069bfe4099833ad66b8138a53ab2dcb866e040d466aee1f8624c |
|
Details | Url | 1 | https://www.virustotal.com/gui/file/306f0c79ad9ee76e996556f909306fda5704b456d670aa9daeb54760b4b5e4f6 |
|
Details | Url | 1 | https://bgpview.io/prefix/101.32.114.0/23#whois |