216.73.216.233

Indicator (IOC)

stix Revoked AlienVault · Published 21/12/2025 01:08 · Modified 21/12/2025 01:38

Essential information

Value / Name
gstatic-node.io
Confidence
100/100
Revoked
Yes
Valid from
19/10/2023 16:51
Valid until
14/08/2024 16:51
Pattern type
stix
Published
21/12/2025 01:08
Modified
21/12/2025 01:38
Author / Source
AlienVault

Description

Win32/Lumma

Pattern

[domain-name:value = 'gstatic-node.io']

Labels / Tags

Labels: amadey c++ dcrat defense evasion fake update idat injector idat loader lumma lummac2 msi downloader msi package powershell privateloader python raccoonstealer redline smokeloader stealer

Marking (TLP)

TLP:CLEAR

Related entities

No linked attack reports or intrusion sets yet.