From a0ec975f8b7d3b851fc46b8c84c3c16ecd25c5aa Mon Sep 17 00:00:00 2001 From: StrangerealIntel <54320855+StrangerealIntel@users.noreply.github.com> Date: Thu, 23 Apr 2020 12:50:39 +0200 Subject: [PATCH] Create IOC-Konni_2020_04-23.csv --- .../APT37/2020-04-23/CSV/IOC-Konni_2020_04-23.csv | 12 ++++++++++++ 1 file changed, 12 insertions(+) create mode 100644 North Korea/APT/APT37/2020-04-23/CSV/IOC-Konni_2020_04-23.csv diff --git a/North Korea/APT/APT37/2020-04-23/CSV/IOC-Konni_2020_04-23.csv b/North Korea/APT/APT37/2020-04-23/CSV/IOC-Konni_2020_04-23.csv new file mode 100644 index 0000000..d3ab6b4 --- /dev/null +++ b/North Korea/APT/APT37/2020-04-23/CSV/IOC-Konni_2020_04-23.csv @@ -0,0 +1,12 @@ +Type,Indicator,Description +SHA256,1eaea49f4757583554c0db396647c3d5a51293266113c07e129b8e3d43f4ce18,guidance.doc +SHA256,6f8ffb978fad488756970a5dfe8383d6442367560af5a37d8eebefd1eba169c9,up.exe +SHA256,c06a18eca71f326cb1e5e87616599057f1e6489711dfee1467132addb006c779,2.dat +SHA256,e7804c0ca8f74d57013a0ed4a9ace4cfafe6dbdc1ef6c04fb6355316bc6e3526,3.dat +SHA256,2fb02c4641b719c1311baa453307f984deb1573fa2fc6216511b7d9fbf8bc93d,4.dat +SHA256,7fb25809913eb39db69a23406a7899265bf9a1c836c644e0a945a03bd9e90477,temp.cab +SHA256,37d8c5ce01bb0ca86673cdea782db09e0c54ae2643bec83eaea587a7775d0b53,install.bat +SHA256,97cdd03d754c5a152617a1d26752d8258373b97aa52c6d3a6ae2dc4e0edd03c6,wprint.ini +SHA256,11750157323eda18b1981399f37765cc0cf157f2b84a8b0656a921c9775c878c,wprint.dll +Domain,mydownload-202001.c1.biz,Domain C2 +IP,185.176.43.92,IP C2