216.73.217.22

Indicator (IOC)

stix AlienVault · Published 14/04/2026 11:52 · Modified 20/05/2026 09:02

Essential information

Value / Name
3ecb8632582982f5ea4cef6b32ac468bd43c61896b5de57416c8100f8ab90102
Confidence
100/100
Revoked
No
Valid from
14/04/2026 10:55
Valid until
10/04/2027 18:48
Pattern type
stix
Published
14/04/2026 11:52
Modified
20/05/2026 09:02
Author / Source
AlienVault

Description

No description.

Pattern

[file:hashes.'SHA-256' = '3ecb8632582982f5ea4cef6b32ac468bd43c61896b5de57416c8100f8ab90102']

Labels / Tags

Labels: apt37 facebook reconnaissance installer tampering north korea pretexting process hollowing rokrat shellcode injection social engineering zoho workdrive c2

Marking (TLP)

TLP:CLEAR