216.73.216.233

Indicator (IOC)

stix Revoked AlienVault · Published 21/12/2025 18:51 · Modified 18/03/2026 10:40

Essential information

Value / Name
applicationformsubmit.me
Confidence
100/100
Revoked
Yes
Valid from
21/10/2025 11:44
Valid until
18/03/2026 10:40
Pattern type
stix
Published
21/12/2025 18:51
Modified
18/03/2026 10:40
Author / Source
AlienVault

Description

No description.

Pattern

[domain-name:value = 'applicationformsubmit.me']

Labels / Tags

Labels: backdoor coldcopy lostkeys powershell russian state-sponsored

Marking (TLP)

TLP:CLEAR