216.73.216.6

Indicator (IOC)

stix AlienVault · Published 21/12/2025 15:52 · Modified 10/06/2026 10:30

Essential information

Value / Name
xtadts.ddns.net
Confidence
100/100
Revoked
No
Valid from
26/08/2025 02:06
Valid until
31/07/2026 10:48
Pattern type
stix
Published
21/12/2025 15:52
Modified
10/06/2026 10:30
Author / Source
AlienVault

Description

No description.

Pattern

[hostname:value = 'xtadts.ddns.net']

Labels / Tags

Labels: amsi bypass amsi patching anti-analysis anti-vm babylon rat dcrat ddns c2 desckvb rat fileless global campaign in-memory execution jscript loader malspam obfuscation persistence phishing purehvnc remote access tools sandbox detection upcrypter venomrat

Marking (TLP)

TLP:CLEAR