216.73.216.226

Indicator (IOC)

stix Revoked AlienVault · Published 20/12/2025 21:44 · Modified 20/12/2025 21:44

Essential information

Value / Name
35ffc1263005fd0a954deed20a7fb0cd53dbab6bb17ff8bd34559a5a124686c7
Confidence
100/100
Revoked
Yes
Valid from
22/07/2022 14:00
Valid until
25/10/2023 14:00
Pattern type
stix
Published
20/12/2025 21:44
Modified
20/12/2025 21:44
Author / Source
AlienVault

Description

TEL:Constructor:Win32/HiddenRMS.A!RAT SHA256 of 2bb5d5aa07fa2c8e9874c117c8fa51d6

Pattern

[file:hashes.'SHA-256' = '35ffc1263005fd0a954deed20a7fb0cd53dbab6bb17ff8bd34559a5a124686c7']

Labels / Tags

Labels: apt geopolitical conflict ghostwriter ukraine unc1151 unc2589

Marking (TLP)

TLP:CLEAR