test_scratch / cti-ATT-CK-v13.1 /enterprise-attack /malware /malware--0a607c53-df52-45da-a75d-0e53df4dad5f.json
khoicrtp's picture
Upload 2298 files
5fe70fd
raw
history blame
2.48 kB
{
"type": "bundle",
"id": "bundle--886df174-22c0-4c94-b2c1-d202e4a19e8a",
"spec_version": "2.0",
"objects": [
{
"labels": [
"malware"
],
"x_mitre_platforms": [
"Windows"
],
"x_mitre_domains": [
"enterprise-attack"
],
"x_mitre_aliases": [
"RobbinHood"
],
"object_marking_refs": [
"marking-definition--fa42a846-8d90-4e51-bc29-71d5b4802168"
],
"id": "malware--0a607c53-df52-45da-a75d-0e53df4dad5f",
"type": "malware",
"created": "2019-07-29T14:27:18.204Z",
"created_by_ref": "identity--c78cb6e5-0c4b-4611-8297-d1b8b55e40b5",
"external_references": [
{
"external_id": "S0400",
"source_name": "mitre-attack",
"url": "https://attack.mitre.org/software/S0400"
},
{
"description": "Lee, S. (2019, May 17). CB TAU Threat Intelligence Notification: RobbinHood Ransomware Stops 181 Windows Services Before Encryption. Retrieved July 29, 2019.",
"url": "https://www.carbonblack.com/2019/05/17/cb-tau-threat-intelligence-notification-robbinhood-ransomware-stops-181-windows-services-before-encryption/",
"source_name": "CarbonBlack RobbinHood May 2019"
},
{
"description": "Duncan, I., Campbell, C. (2019, May 7). Baltimore city government computer network hit by ransomware attack. Retrieved July 29, 2019.",
"url": "https://www.baltimoresun.com/politics/bs-md-ci-it-outage-20190507-story.html",
"source_name": "BaltimoreSun RobbinHood May 2019"
}
],
"modified": "2020-03-30T18:05:52.348Z",
"name": "RobbinHood",
"description": "[RobbinHood](https://attack.mitre.org/software/S0400) is ransomware that was first observed being used in an attack against the Baltimore city government's computer network.(Citation: CarbonBlack RobbinHood May 2019)(Citation: BaltimoreSun RobbinHood May 2019)",
"x_mitre_version": "1.1",
"x_mitre_attack_spec_version": "2.1.0",
"x_mitre_modified_by_ref": "identity--c78cb6e5-0c4b-4611-8297-d1b8b55e40b5"
}
]
}