216.73.217.22

Indicator (IOC)

stix AlienVault · Published 20/12/2025 19:35 · Modified 29/05/2026 14:44

Essential information

Value / Name
816d7616238958dfe0bb811a063eb3102efd82eff14408f5cab4cb5258bfd019
Confidence
100/100
Revoked
No
Valid from
23/04/2026 16:37
Valid until
20/04/2027 00:31
Pattern type
stix
Published
20/12/2025 19:35
Modified
29/05/2026 14:44
Author / Source
AlienVault

Description

SHA256 of d28f0cfae377553fcb85918c29f4889b

Pattern

[file:hashes.'SHA-256' = '816d7616238958dfe0bb811a063eb3102efd82eff14408f5cab4cb5258bfd019']

Labels / Tags

Labels: apt backdoor.oldrea bondnet bot net botnet cloudflare coinminer conti dumpguard gogra havex hfs hrsword infostealer kernel driver abuse malextractor mimikatz phobos proxy ransomware ransomware-as-a-service rdp stpprocessmonitorbyovd trigona venus ransomware windows explorer wktools

Marking (TLP)

TLP:CLEAR