216.73.216.233

Indicator (IOC)

stix Revoked AlienVault · Published 21/12/2025 01:19 · Modified 21/12/2025 13:45

Essential information

Value / Name
gapi-node.io
Confidence
100/100
Revoked
Yes
Valid from
22/05/2025 01:03
Valid until
17/10/2025 00:58
Pattern type
stix
Published
21/12/2025 01:19
Modified
21/12/2025 13:45
Author / Source
AlienVault

Description

No description.

Pattern

[domain-name:value = 'gapi-node.io']

Labels / Tags

Labels: amadey data theft defense evasion fake update idat injector idat loader information stealer infrastructure takedown lumma lummac lummac2 malware-as-a-service msi downloader msi package multi-tiered c2 redline

Marking (TLP)

TLP:CLEAR

Related entities

No linked attack reports or intrusion sets yet.