216.73.216.36

Indicator (IOC)

stix Revoked AlienVault · Published 20/12/2025 23:55 · Modified 21/12/2025 08:04

Essential information

Value / Name
a546c3defb20bb18205b19c5218795fa9c6388d2e2ec3e65707b4e7afaeac0e1
Confidence
100/100
Revoked
Yes
Valid from
23/10/2024 19:36
Valid until
20/10/2025 03:30
Pattern type
stix
Published
20/12/2025 23:55
Modified
21/12/2025 08:04
Author / Source
AlienVault

Description

Win32:MalwareX-gen\ [Trj]

Pattern

[file:hashes.'SHA-256' = 'a546c3defb20bb18205b19c5218795fa9c6388d2e2ec3e65707b4e7afaeac0e1']

Labels / Tags

Labels: botnet credential theft cryptocurrency mining cve-2019-0708 cve-2021-26858 cve-2021-27065 dga emotet javascript lateral movement macro mimikatz onenote phishing prometei prometei botnet tor vba vbscript web shell wsf

Marking (TLP)

TLP:CLEAR