216.73.217.50

Indicator (IOC)

stix Revoked AlienVault · Published 21/12/2025 08:16 · Modified 21/12/2025 08:16

Essential information

Value / Name
http://download-695-18112-001-webdav-logicaldoc.cdn-serveri4732-ns.shop/Downloads/18112.2022/URLWebDAV
Confidence
100/100
Revoked
Yes
Valid from
05/12/2024 18:33
Valid until
21/01/2025 18:33
Pattern type
stix
Published
21/12/2025 08:16
Modified
21/12/2025 08:16
Author / Source
AlienVault

Description

No description.

Pattern

[url:value = 'http://download-695-18112-001-webdav-logicaldoc.cdn-serveri4732-ns.shop/Downloads/18112.2022/URLWebDAV']

Labels / Tags

Labels: amadey bot amp url code injection dll sideloading lnk file lumma stealer manufacturing powershell process injection

Marking (TLP)

TLP:CLEAR

Related entities

No linked attack reports or intrusion sets yet.