{
    "type": "bundle",
    "id": "bundle--9aff229f-f495-41eb-ba62-8a8bb9c0127b",
    "objects": [
        {
            "type": "identity",
            "spec_version": "2.1",
            "id": "identity--0b1cac3e-021d-41d0-89d9-5dc4905fa75a",
            "created": "2023-03-08T12:51:54.415344Z",
            "modified": "2023-03-08T12:51:54.415422Z",
            "name": "Threatconnect",
            "identity_class": "organization"
        },
        {
            "type": "file",
            "spec_version": "2.1",
            "id": "file--7bae7310-0461-417b-b526-16639e3c6e73",
            "hashes": {
                "MD5": "c315de8ac15b51163a3bc075063a58aa"
            }
        },
        {
            "type": "file",
            "spec_version": "2.1",
            "id": "file--d7247f6a-98a0-4a2d-8f27-24f0c665ccd5",
            "hashes": {
                "MD5": "ff0dddc847825f13001b08661b2c7d0d"
            }
        },
        {
            "type": "url",
            "spec_version": "2.1",
            "id": "url--3abdc2f1-2bb5-4631-b4af-76336be8e3d5",
            "value": "https://cofense.com/zoom-phish-zooming-inboxes-amid-pandemic/"
        },
        {
            "type": "url",
            "spec_version": "2.1",
            "id": "url--e9c86927-deee-45ac-925a-3fa84713e1cf",
            "value": "https://paste.cryptolaemus.com/emotet/2020/06/15/emotet-c2-rsa-update-06-15-20-1.html"
        },
        {
            "type": "threat-actor",
            "spec_version": "2.1",
            "id": "threat-actor--3cad7692-b5b4-565b-88b1-63998b3f44a1",
            "created": "2026-06-24T18:19:10.418259Z",
            "modified": "2026-06-24T18:19:10.418259Z",
            "name": "Kimsuky"
        },
        {
            "type": "report",
            "spec_version": "2.1",
            "id": "report--3ec7f994-9273-4862-b04d-1723ad95248a",
            "created_by_ref": "identity--0b1cac3e-021d-41d0-89d9-5dc4905fa75a",
            "created": "2026-06-24T18:19:10.420892Z",
            "modified": "2026-06-24T18:19:10.420892Z",
            "name": "Kimsuky \"AutoUpdate\" Malware",
            "published": "2020-06-19T00:00:00Z",
            "object_refs": [
                "identity--0b1cac3e-021d-41d0-89d9-5dc4905fa75a",
                "file--7bae7310-0461-417b-b526-16639e3c6e73",
                "file--d7247f6a-98a0-4a2d-8f27-24f0c665ccd5",
                "url--3abdc2f1-2bb5-4631-b4af-76336be8e3d5",
                "url--e9c86927-deee-45ac-925a-3fa84713e1cf",
                "threat-actor--3cad7692-b5b4-565b-88b1-63998b3f44a1"
            ],
            "external_references": [
                {
                    "source_name": "source",
                    "url": "http://web.archive.org/web/20210412184406/https://threatconnect.com/blog/threatconnect-research-roundup-kimsuky-autoupdate-malware/"
                }
            ]
        }
    ]
}