216.73.217.22

Indicator (IOC)

stix Revoked AlienVault · Published 21/12/2025 14:33 · Modified 02/05/2026 10:42

Essential information

Value / Name
www.itembuy.org
Confidence
100/100
Revoked
Yes
Valid from
28/05/2025 01:59
Valid until
02/05/2026 10:41
Pattern type
stix
Published
21/12/2025 14:33
Modified
02/05/2026 10:42
Author / Source
AlienVault

Description

No description.

Pattern

[hostname:value = 'www.itembuy.org']

Labels / Tags

Labels: apt asia-pacific botnet china credentialstealer detofin irc maggie maggiescan malware miner ms-sql pemodifier shaduser sqldoor sqlshell upm wgdrop windows servers

Marking (TLP)

TLP:CLEAR