216.73.217.22

Indicator (IOC)

stix AlienVault · Published 14/04/2026 11:52 · Modified 20/05/2026 09:02

Essential information

Value / Name
d5a3321b215d2b141de7ebe24398cf43320a2016e4f20d079ddf7015ceb069a8
Confidence
100/100
Revoked
No
Valid from
14/04/2026 10:55
Valid until
10/04/2027 18:48
Pattern type
stix
Published
14/04/2026 11:52
Modified
20/05/2026 09:02
Author / Source
AlienVault

Description

No description.

Pattern

[file:hashes.'SHA-256' = 'd5a3321b215d2b141de7ebe24398cf43320a2016e4f20d079ddf7015ceb069a8']

Labels / Tags

Labels: apt37 facebook reconnaissance installer tampering north korea pretexting process hollowing rokrat shellcode injection social engineering zoho workdrive c2

Marking (TLP)

TLP:CLEAR