216.73.217.22

Indicator (IOC)

stix Revoked AlienVault · Published 21/12/2025 15:30 · Modified 18/06/2026 16:33

Essential information

Value / Name
cgky6bn6ux5wvlybtmm3z255igt52ljml2ngnc5qp3cnw5jlglamisad.onion
Confidence
100/100
Revoked
Yes
Valid from
08/08/2025 16:04
Valid until
03/01/2026 15:00
Pattern type
stix
Published
21/12/2025 15:30
Modified
18/06/2026 16:33
Author / Source
AlienVault

Description

No description.

Pattern

[domain-name:value = 'cgky6bn6ux5wvlybtmm3z255igt52ljml2ngnc5qp3cnw5jlglamisad.onion']

Labels / Tags

Labels: acrstealer brute-force clipbanker clipboard hijacking contebrew cryptobandits cryptocurrency cryptocurrency clipper cryptocurrency theft dll sideloading efimer email campaign infostealer lummac2 pyagent python abuse remote code execution screenshot exfiltration seed phrase stealing seo poisoning stealc tor tor proxy toragent torrent usb worm wallet theft wordpress

Marking (TLP)

TLP:CLEAR