216.73.217.22

Indicator (IOC)

stix Revoked AlienVault · Published 21/12/2025 02:49 · Modified 21/12/2025 02:49

Essential information

Value / Name
http://windows.n1tro.cyou:4544
Confidence
100/100
Revoked
Yes
Valid from
19/01/2024 15:05
Valid until
06/03/2024 15:05
Pattern type
stix
Published
21/12/2025 02:49
Modified
21/12/2025 02:49
Author / Source
AlienVault

Description

ASCII text, with no line terminators 565339bc4d33d72817b583024112eb7f5cdf3e5eef0252d6ec1b9c9a94e12bb3

Pattern

[url:value = 'http://windows.n1tro.cyou:4544']

Labels / Tags

Labels: apache activemq batch malware c server coinminer cve202144228 cve202346604 downloader exploit june mauricrypt mimo mimus powershell ransomware shell xmrig

Marking (TLP)

TLP:CLEAR