216.73.216.233

Indicator (IOC)

stix AlienVault · Published 21/12/2025 16:22 · Modified 21/12/2025 18:51

Essential information

Value / Name
87138f63974a8ccbbf5840c31165f1a4bf92a954bacccfbf1e7e5525d750aa48
Confidence
100/100
Revoked
No
Valid from
24/09/2025 17:56
Valid until
21/09/2026 01:49
Pattern type
stix
Published
21/12/2025 16:22
Modified
21/12/2025 18:51
Author / Source
AlienVault

Description

No description.

Pattern

[file:hashes.'SHA-256' = '87138f63974a8ccbbf5840c31165f1a4bf92a954bacccfbf1e7e5525d750aa48']

Labels / Tags

Labels: apt backdoor baitswitch clickfix coldcopy lostkeys powershell russia russian state-sponsored simplefix social engineering

Marking (TLP)

TLP:CLEAR