216.73.216.6

Indicator (IOC)

stix Revoked AlienVault · Published 21/12/2025 14:33 · Modified 24/05/2026 09:53

Essential information

Value / Name
28d2477926de5d5a8ffcb708cb0c95c3aa9808d757f77b92f82ad4aa50a05cc8
Confidence
100/100
Revoked
Yes
Valid from
28/05/2025 01:59
Valid until
24/05/2026 09:52
Pattern type
stix
Published
21/12/2025 14:33
Modified
24/05/2026 09:53
Author / Source
AlienVault

Description

No description.

Pattern

[file:hashes.'SHA-256' = '28d2477926de5d5a8ffcb708cb0c95c3aa9808d757f77b92f82ad4aa50a05cc8']

Labels / Tags

Labels: catena loader chinese-speaking targets memory-resident malware nsis reflective dll injection srdi trojanized installers winos winos v4.0

Marking (TLP)

TLP:CLEAR