216.73.216.31

Indicator (IOC)

stix Revoked AlienVault · Published 20/12/2025 22:57 · Modified 20/12/2025 23:14

Essential information

Value / Name
fuckcisanet5nzv4d766izugxhnqqgiyllzfynyb4whzbqhzjojbn7id.onion
Confidence
100/100
Revoked
Yes
Valid from
25/01/2023 14:35
Valid until
21/11/2023 14:35
Pattern type
stix
Published
20/12/2025 22:57
Modified
20/12/2025 23:14
Author / Source
AlienVault

Description

No description.

Pattern

[domain-name:value = 'fuckcisanet5nzv4d766izugxhnqqgiyllzfynyb4whzbqhzjojbn7id.onion']

Labels / Tags

Labels: chily colbalt strike esxi servers hyper-v mimikatz parallel encryption polyvice raas ransomware redalert sunnyday vice society zeppelin

Marking (TLP)

TLP:CLEAR