216.73.217.50

Indicator (IOC)

stix Revoked AlienVault · Published 21/12/2025 01:42 · Modified 21/12/2025 01:42

Essential information

Value / Name
8131bd594aff4f4e233ac802799df3422f423dc28e96646a09a2656563c4ad7c
Confidence
100/100
Revoked
Yes
Valid from
25/10/2023 19:08
Valid until
27/01/2025 18:08
Pattern type
stix
Published
21/12/2025 01:42
Modified
21/12/2025 01:42
Author / Source
AlienVault

Description

SLF:Win32/LnkFileWithMshta.A

Pattern

[file:hashes.'SHA-256' = '8131bd594aff4f4e233ac802799df3422f423dc28e96646a09a2656563c4ad7c']

Labels / Tags

Labels: apt kazakhstan masquerading phishing powershell rat spoof yorotrooper

Marking (TLP)

TLP:CLEAR