216.73.217.22

Indicator (IOC)

stix Revoked AlienVault · Published 13/04/2026 17:17 · Modified 09/06/2026 11:00

Essential information

Value / Name
136.0.141.138
Confidence
100/100
Revoked
Yes
Valid from
13/04/2026 17:03
Valid until
07/05/2026 18:50
Pattern type
stix
Published
13/04/2026 17:17
Modified
09/06/2026 11:00
Author / Source
AlienVault

Description

CC=US ASN=AS18779 egihosting

Pattern

[ipv4-addr:value = '136.0.141.138']

Labels / Tags

Labels: credential theft cve-2025-6218 cve-2025-8088 data exfiltration gammasteel giftedcrook giftedcrook stealer hta infection chain information stealer phishing campaign powershell payload rc4 encryption russia-aligned threats stealer ukraine targeting winrar exploitation

Marking (TLP)

TLP:CLEAR