216.73.216.36

Indicator (IOC)

stix Revoked AlienVault · Published 20/12/2025 23:21 · Modified 20/12/2025 23:21

Essential information

Value / Name
6d585ca9b0e2a491b53da4f83319544b95c858f07f906b108e2147e9ac55ed48
Confidence
100/100
Revoked
Yes
Valid from
15/02/2023 17:51
Valid until
20/05/2024 18:51
Pattern type
stix
Published
20/12/2025 23:21
Modified
20/12/2025 23:21
Author / Source
AlienVault

Description

compromised_site_redirector_fromcharcode SHA256 of 4eb5eb52061cc8cf06e28e7eb20cd055

Pattern

[file:hashes.'SHA-256' = '6d585ca9b0e2a491b53da4f83319544b95c858f07f906b108e2147e9ac55ed48']

Labels / Tags

Labels: aspxspy badpotato bitlocker china chopper cobaltstrike dalbit godzilla groupware mimikatz systemdrive webshell

Marking (TLP)

TLP:CLEAR