216.73.216.226

Indicator (IOC)

stix AlienVault · Published 21/12/2025 15:08 · Modified 21/12/2025 16:22

Essential information

Value / Name
a82e496b7b5279cb6b93393ec167dd3f50aff1557366784b25f9e51cb23689d9
Confidence
100/100
Revoked
No
Valid from
24/07/2025 13:30
Valid until
20/07/2026 21:24
Pattern type
stix
Published
21/12/2025 15:08
Modified
21/12/2025 16:22
Author / Source
AlienVault

Description

Win.Ransomware.Barys-10004222-0 SHA256 of bb79502d301ba77745b7dbc5df4269fc7b074cda

Pattern

[file:hashes.'SHA-256' = 'a82e496b7b5279cb6b93393ec167dd3f50aff1557366784b25f9e51cb23689d9']

Labels / Tags

Labels: chacha20 conti data leak site dls donot loader double extortion encryption gunra gunra ransomware linux lumma stealer negotiation phishing ransomware volume shadow copy windows

Marking (TLP)

TLP:CLEAR