216.73.216.233

Indicator (IOC)

stix Revoked AlienVault · Published 20/12/2025 23:21 · Modified 20/12/2025 23:21

Essential information

Value / Name
ea08600a4987a30e86cf9c8f3f9e46a13b01aef633e75941d966ab45d0a1b3dd
Confidence
100/100
Revoked
Yes
Valid from
15/02/2023 17:51
Valid until
20/05/2024 18:51
Pattern type
stix
Published
20/12/2025 23:21
Modified
20/12/2025 23:21
Author / Source
AlienVault

Description

HackTool:Win32/Badcastle.A!dha SHA256 of 9fe61c9538f2df492dff1aab0f90579f

Pattern

[file:hashes.'SHA-256' = 'ea08600a4987a30e86cf9c8f3f9e46a13b01aef633e75941d966ab45d0a1b3dd']

Labels / Tags

Labels: aspxspy badpotato bitlocker china chopper cobaltstrike dalbit godzilla groupware mimikatz systemdrive webshell

Marking (TLP)

TLP:CLEAR