216.73.216.36

Indicator (IOC)

stix AlienVault · Published 04/06/2026 11:08 · Modified 12/06/2026 22:54

Essential information

Value / Name
https://pengajian.muliastudy.com/images/edu/u.php
Confidence
100/100
Revoked
No
Valid from
03/06/2026 15:18
Valid until
02/07/2026 21:01
Pattern type
stix
Published
04/06/2026 11:08
Modified
12/06/2026 22:54
Author / Source
AlienVault

Description

No description.

Pattern

[url:value = 'https://pengajian.muliastudy.com/images/edu/u.php']

Labels / Tags

Labels: amsi bypass amsi patching ddns c2 desckvb rat fileless in-memory execution jscript loader malspam sandbox detection venomrat

Marking (TLP)

TLP:CLEAR