216.73.217.22

Indicator (IOC)

stix Revoked AlienVault · Published 20/12/2025 23:21 · Modified 21/12/2025 01:22

Essential information

Value / Name
afcaf51bef195d4959f934bcec0a9aebd8e7747f21e0bfba769b5f28708de0eb
Confidence
100/100
Revoked
Yes
Valid from
11/09/2023 16:42
Valid until
14/12/2024 15:42
Pattern type
stix
Published
20/12/2025 23:21
Modified
21/12/2025 01:22
Author / Source
AlienVault

Description

compromised_site_redirector_fromcharcode SHA256 of 31c4a3f16baa5e0437fdd4603987b812

Pattern

[file:hashes.'SHA-256' = 'afcaf51bef195d4959f934bcec0a9aebd8e7747f21e0bfba769b5f28708de0eb']

Labels / Tags

Labels: asec aspxspy badpotato bitlocker blueshell china chopper cobaltstrike dalbit dropper frpc godzilla groupware kimsuky lsass metasploit meterpreter mimikatz sbinrpcd sliver socks5 sparkrat systemdrive tmpkthread troy virustotal webshell

Marking (TLP)

TLP:CLEAR