216.73.217.22

Indicator (IOC)

stix AlienVault · Published 09/06/2026 11:00 · Modified 09/06/2026 11:00

Essential information

Value / Name
malicious.workers.dev
Confidence
100/100
Revoked
No
Valid from
08/06/2026 12:30
Valid until
13/05/2027 21:13
Pattern type
stix
Published
09/06/2026 11:00
Modified
09/06/2026 11:00
Author / Source
AlienVault

Description

No description.

Pattern

[hostname:value = 'malicious.workers.dev']

Labels / Tags

Labels: credential theft cve-2025-8088 gammasteel giftedcrook giftedcrook stealer hta infection chain information stealer russia-aligned threats ukraine targeting winrar exploitation

Marking (TLP)

TLP:CLEAR