216.73.217.22

Indicator (IOC)

stix Revoked AlienVault · Published 21/12/2025 00:02 · Modified 21/12/2025 00:14

Essential information

Value / Name
df75defc7bde078faefcb2c1c32f16c141337a1583bd0bc14f6d93c135d34289
Confidence
100/100
Revoked
Yes
Valid from
24/04/2023 17:26
Valid until
27/07/2024 17:26
Pattern type
stix
Published
21/12/2025 00:02
Modified
21/12/2025 00:14
Author / Source
AlienVault

Description

Win64:Trojan-gen SHA256 of bc9314760071a4aef12e503104478059808e7047

Pattern

[file:hashes.'SHA-256' = 'df75defc7bde078faefcb2c1c32f16c141337a1583bd0bc14f6d93c135d34289']

Labels / Tags

Labels: apt avemaria espionage infostealer jlorat kopiluwak lodarat meterpreter phishing ratel rocketman roopy stink telegram telemeris tomiris topinambour tunnus tunnussched turla warzone yorotrooper

Marking (TLP)

TLP:CLEAR