216.73.216.36

Indicator (IOC)

stix Revoked AlienVault · Published 21/12/2025 07:06 · Modified 21/12/2025 07:08

Essential information

Value / Name
crgricill.gruposenhordobonfim.net
Confidence
100/100
Revoked
Yes
Valid from
15/10/2024 10:51
Valid until
19/09/2025 19:33
Pattern type
stix
Published
21/12/2025 07:06
Modified
21/12/2025 07:08
Author / Source
AlienVault

Description

No description.

Pattern

[hostname:value = 'crgricill.gruposenhordobonfim.net']

Labels / Tags

Labels: astaroth banking malware brazil domain generation algorithm lnk files obfuscated javascript spear phishing tax documents

Marking (TLP)

TLP:CLEAR