216.73.216.6

Indicator (IOC)

stix Revoked AlienVault · Published 21/12/2025 02:29 · Modified 21/12/2025 02:38

Essential information

Value / Name
http://bitburny.kro.kr/aha/
Confidence
100/100
Revoked
Yes
Valid from
03/01/2024 16:19
Valid until
19/02/2024 16:19
Pattern type
stix
Published
21/12/2025 02:29
Modified
21/12/2025 02:38
Author / Source
AlienVault

Description

No description.

Pattern

[url:value = 'http://bitburny.kro.kr/aha/']

Labels / Tags

Labels: alphaseed appleseed backdoor bitrat chrome remote desktop excel infostealer javascript kimsuky lnk macro metasploit meterpreter north korea pebbledash phishing rdp remote shellcode spearphishing tightvnc tinynuke vnc

Marking (TLP)

TLP:CLEAR