216.73.216.36

Indicator (IOC)

stix Revoked AlienVault · Published 21/12/2025 19:01 · Modified 22/04/2026 20:08

Essential information

Value / Name
withheldforprivacy.com
Confidence
100/100
Revoked
Yes
Valid from
25/11/2025 19:11
Valid until
22/04/2026 20:07
Pattern type
stix
Published
21/12/2025 19:01
Modified
22/04/2026 20:08
Author / Source
AlienVault

Description

No description.

Pattern

[domain-name:value = 'withheldforprivacy.com']

Labels / Tags

Labels: apt43 chm dropper credential harvesting dprk fakeupdate gru korean targeting malvertising mythic agent naver phishing powershell keylogger socgholish ta569 ukraine vbscript stager vipertunnel

Marking (TLP)

TLP:CLEAR