216.73.216.233

Indicator (IOC)

stix Revoked AlienVault · Published 21/12/2025 07:18 · Modified 21/12/2025 08:01

Essential information

Value / Name
http://193.176.190.41/down1/nvinstall.msi
Confidence
100/100
Revoked
Yes
Valid from
21/10/2024 12:59
Valid until
07/12/2024 11:59
Pattern type
stix
Published
21/12/2025 07:18
Modified
21/12/2025 08:01
Author / Source
AlienVault

Description

No description.

Pattern

[url:value = 'http://193.176.190.41/down1/nvinstall.msi']

Labels / Tags

Labels: bumblebee cobalt strike darkgate evasion icedid in-memory in-memory-execution infection-chain latrodectus lnk loader malware msi phishing pikabot ransomware stealth

Marking (TLP)

TLP:CLEAR