APT_CyberCriminal_Campagin_.../2016/2016.07.07.UNVEILING_PATCHWORK/Campaign/patchwork.cmpn

1 line
7.5 MiB
Plaintext
Raw Normal View History

2018-01-10 06:17:42 +00:00
{"breadcrumbs": {"craig": {"breadcrumb_type": "credentials", "attached_services": ["craig", "rdp"], "args": {"username": "craig", "password": "craig!@#qweasd"}, "breadcrumb_group": "services"}, "kenneth": {"breadcrumb_type": "credentials", "attached_services": ["james", "john", "robert", "michael", "william", "david", "richard", "charles", "joseph", "thomas", "christopher", "daniel", "paul", "mark", "donald", "george", "kenneth", "steven", "edward", "brian", "ronald", "anthony", "kevin", "jason", "matthew", "gary", "timothy", "jose", "larry", "jeffrey", "frank", "scott"], "args": {"username": "kenneth", "password": "hrtletirhjeiotru3h45kiuj3bhjk3"}, "breadcrumb_group": "services"}}, "export_date": "2016-06-27T18:11:42.068429", "decoys": {"ronald": {"vlan": 1, "chosen_dns": "8.8.8.8", "vm_type": "KVM", "hostname": "ronald-un", "chosen_subnet": "255.255.255.0", "chosen_gateway": "10.10.0.254", "chosen_static_ip": "10.10.0.20", "os": "Windows_7"}, "scott": {"vlan": 1, "chosen_dns": "8.8.8.8", "vm_type": "KVM", "hostname": "scott-un", "chosen_subnet": "255.255.255.0", "chosen_gateway": "10.10.0.254", "chosen_static_ip": "10.10.0.21", "os": "Windows_7"}, "john": {"vlan": 1, "chosen_dns": "8.8.8.8", "vm_type": "KVM", "hostname": "john-un", "chosen_subnet": "255.255.255.0", "chosen_gateway": "10.10.0.254", "chosen_static_ip": "10.10.0.23", "os": "Windows_7"}, "timothy": {"vlan": 1, "chosen_dns": "8.8.8.8", "vm_type": "KVM", "hostname": "timothy-un", "chosen_subnet": "255.255.255.0", "chosen_gateway": "10.10.0.254", "chosen_static_ip": "10.10.0.22", "os": "Windows_7"}, "david": {"vlan": 1, "chosen_dns": "8.8.8.8", "vm_type": "KVM", "hostname": "david-un", "chosen_subnet": "255.255.255.0", "chosen_gateway": "10.10.0.254", "chosen_static_ip": "10.10.0.30", "os": "Windows_7"}, "jose": {"vlan": 1, "chosen_dns": "8.8.8.8", "vm_type": "KVM", "hostname": "jose-un", "chosen_subnet": "255.255.255.0", "chosen_gateway": "10.10.0.254", "chosen_static_ip": "10.10.0.25", "os": "Windows_7"}, "un": {"vlan": 1, "chosen_dns": "8.8.8.8", "vm_type": "KVM", "hostname": "un-users", "chosen_subnet": "255.255.255.0", "chosen_gateway": "10.10.0.254", "chosen_static_ip": "10.10.0.5", "os": "Windows_7"}}, "services": {"robert": {"service_type": "smb", "service_group": "service_shit", "args": {"zip_file": "UEsDBAoAAAAAAF0DyUgAAAAAAAAAAAAAAAARABwAVW50aXRsZWQgRG9jdW1lbnRVVAkAA6KNWFeijVhXdXgLAAEE6QMAAATpAwAAUEsBAh4DCgAAAAAAXQPJSAAAAAAAAAAAAAAAABEAGAAAAAAAAAAAAP+BAAAAAFVudGl0bGVkIERvY3VtZW50VVQFAAOijVhXdXgLAAEE6QMAAATpAwAAUEsFBgAAAAABAAEAVwAAAEsAAAAAAA==", "share_name": "robert"}, "attached_decoys": ["un"]}, "paul": {"service_type": "smb", "service_group": "service_shit", "args": {"zip_file": "UEsDBAoAAAAAAF0DyUgAAAAAAAAAAAAAAAARABwAVW50aXRsZWQgRG9jdW1lbnRVVAkAA6KNWFeijVhXdXgLAAEE6QMAAATpAwAAUEsBAh4DCgAAAAAAXQPJSAAAAAAAAAAAAAAAABEAGAAAAAAAAAAAAP+BAAAAAFVudGl0bGVkIERvY3VtZW50VVQFAAOijVhXdXgLAAEE6QMAAATpAwAAUEsFBgAAAAABAAEAVwAAAEsAAAAAAA==", "share_name": "paul"}, "attached_decoys": ["un"]}, "kenneth": {"service_type": "smb", "service_group": "service_shit", "args": {"zip_file": "UEsDBAoAAAAAAF0DyUgAAAAAAAAAAAAAAAARABwAVW50aXRsZWQgRG9jdW1lbnRVVAkAA6KNWFeijVhXdXgLAAEE6QMAAATpAwAAUEsBAh4DCgAAAAAAXQPJSAAAAAAAAAAAAAAAABEAGAAAAAAAAAAAAP+BAAAAAFVudGl0bGVkIERvY3VtZW50VVQFAAOijVhXdXgLAAEE6QMAAATpAwAAUEsFBgAAAAABAAEAVwAAAEsAAAAAAA==", "share_name": "kenneth"}, "attached_decoys": ["un"]}, "joseph": {"service_type": "smb", "service_group": "service_shit", "args": {"zip_file": "UEsDBAoAAAAAAF0DyUgAAAAAAAAAAAAAAAARABwAVW50aXRsZWQgRG9jdW1lbnRVVAkAA6KNWFeijVhXdXgLAAEE6QMAAATpAwAAUEsBAh4DCgAAAAAAXQPJSAAAAAAAAAAAAAAAABEAGAAAAAAAAAAAAP+BAAAAAFVudGl0bGVkIERvY3VtZW50VVQFAAOijVhXdXgLAAEE6QMAAATpAwAAUEsFBgAAAAABAAEAVwAAAEsAAAAAAA==", "share_name": "joseph"}, "attached_decoys": ["un"]}, "thomas": {"service_type": "smb", "service_group": "service_shit", "args": {"zip_file": "UEsDBAoAAAAAAF0DyUgAAAAAAAAAAAAAAAARABwAVW50aXRsZWQgRG9jdW1lbnRVVAkAA6KNWFeijVhXdXgLAAEE6QMAAATpAwAAUEsBAh4DCgAAAAAAXQPJSAAAAAAAAAAAAAAAABEAGAAAAAAAAAAAAP+BAAAAAFVudGl0bGVkIERvY3VtZW50VVQFAAOijVhXdXgLAAEE6QMAAATpA