216.73.217.98

Indicator (IOC)

stix Revoked AlienVault · Published 20/12/2025 23:55 · Modified 21/12/2025 00:17

Essential information

Value / Name
655c294a4f4d3d01a9ba3a9563e136109dae7af0772cb3620e42357b59af476d
Confidence
100/100
Revoked
Yes
Valid from
28/03/2023 21:23
Valid until
30/06/2024 21:23
Pattern type
stix
Published
20/12/2025 23:55
Modified
21/12/2025 00:17
Author / Source
AlienVault

Description

ALF:Backdoor:Win64/Meterpreter.AB!MTB

Pattern

[file:hashes.'SHA-256' = '655c294a4f4d3d01a9ba3a9563e136109dae7af0772cb3620e42357b59af476d']

Labels / Tags

Labels: botnet emotet javascript macro mimikatz onenote phishing prometei botnet vba vbscript wsf

Marking (TLP)

TLP:CLEAR