216.73.216.233

Indicator (IOC)

stix Revoked AlienVault · Published 21/12/2025 00:44 · Modified 21/12/2025 01:22

Essential information

Value / Name
2da9a09a14c52e3f3d8468af24607602cca13bc579af958be9e918d736418660
Confidence
100/100
Revoked
Yes
Valid from
11/09/2023 16:42
Valid until
14/12/2024 15:42
Pattern type
stix
Published
21/12/2025 00:44
Modified
21/12/2025 01:22
Author / Source
AlienVault

Description

Backdoor:JS/Makdichi.A!MTB SHA256 of e981219f6ba673e977c5c1771f86b189

Pattern

[file:hashes.'SHA-256' = '2da9a09a14c52e3f3d8468af24607602cca13bc579af958be9e918d736418660']

Labels / Tags

Labels: asec blueshell bs2005 c server china chopper cobaltstrike dropper ewstew frpc godzilla graphican graphite icefog ketrican kimsuky lazagne lsass metasploit meterpreter microsoft graph mimikatz pupykatz pwdump pypykatz safetykatz sbinrpcd sharpsecdump sliver socks5 sofacy

Marking (TLP)

TLP:CLEAR