216.73.217.80

Indicator (IOC)

stix AlienVault · Published 06/03/2026 12:53 · Modified 27/04/2026 16:50

Essential information

Value / Name
2a09bbb3d1ddb729ea7591f197b5955453aa3769c6fb98a5ef60c6e4b7df23a5
Confidence
100/100
Revoked
No
Valid from
05/03/2026 21:13
Valid until
02/03/2027 05:07
Pattern type
stix
Published
06/03/2026 12:53
Modified
27/04/2026 16:50
Author / Source
AlienVault

Description

No description.

Pattern

[file:hashes.'SHA-256' = '2a09bbb3d1ddb729ea7591f197b5955453aa3769c6fb98a5ef60c6e4b7df23a5']

Labels / Tags

Labels: apt backdoor bibiwiper caddy proxy castleloader critical infrastructure cve-2017-7921 cve-2023-6895 cyberattack darkcomp data exfiltration ddos deno runtime dindoor dindoor backdoor dinodance espionage fakeset geopolitical conflict httpsnoop in-memory execution infostealers iran apt iranian apt microsoft teams mois muddywater muddywater infrastructure pdq phoenix

Marking (TLP)

TLP:CLEAR