216.73.216.6

Indicator (IOC)

stix Revoked AlienVault · Published 20/12/2025 23:55 · Modified 21/12/2025 00:17

Essential information

Value / Name
85a2d8f020b14cd11e95fd52328048ebe3e86f3f6a7cb76028143b7009a9b294
Confidence
100/100
Revoked
Yes
Valid from
28/03/2023 21:23
Valid until
30/06/2024 21:23
Pattern type
stix
Published
20/12/2025 23:55
Modified
21/12/2025 00:17
Author / Source
AlienVault

Description

Win32:MalwareX-gen\ [Trj]

Pattern

[file:hashes.'SHA-256' = '85a2d8f020b14cd11e95fd52328048ebe3e86f3f6a7cb76028143b7009a9b294']

Labels / Tags

Labels: botnet emotet javascript macro mimikatz onenote phishing prometei botnet vba vbscript wsf

Marking (TLP)

TLP:CLEAR