216.73.217.22

Indicator (IOC)

stix Revoked AlienVault · Published 20/12/2025 23:24 · Modified 20/12/2025 23:33

Essential information

Value / Name
hbfyewtuvfbhsbdjhjwebfy.net
Confidence
100/100
Revoked
Yes
Valid from
06/02/2023 17:51
Valid until
03/12/2023 17:51
Pattern type
stix
Published
20/12/2025 23:24
Modified
20/12/2025 23:33
Author / Source
AlienVault

Description

Ave Maria

Pattern

[domain-name:value = 'hbfyewtuvfbhsbdjhjwebfy.net']

Labels / Tags

Labels: android autoit avemaria bitter confucius downloader government infostealer kasablanka lazarus loda rat phishing email powershell qianxin threat russia trojan ukraine warzone warzone rat winscp

Marking (TLP)

TLP:CLEAR