216.73.216.6

Indicator (IOC)

stix AlienVault · Published 21/12/2025 18:51 · Modified 21/12/2025 18:52

Essential information

Value / Name
d7520e4f1c55ed1dcbdeba5c6e681e1d269d9b5a690636bf18bcdc5b294f3f8a
Confidence
100/100
Revoked
No
Valid from
21/10/2025 11:44
Valid until
17/10/2026 19:38
Pattern type
stix
Published
21/12/2025 18:51
Modified
21/12/2025 18:52
Author / Source
AlienVault

Description

No description.

Pattern

[file:hashes.'SHA-256' = 'd7520e4f1c55ed1dcbdeba5c6e681e1d269d9b5a690636bf18bcdc5b294f3f8a']

Labels / Tags

Labels: backdoor coldcopy lostkeys powershell russian state-sponsored

Marking (TLP)

TLP:CLEAR