216.73.216.6

Indicator (IOC)

stix Revoked AlienVault · Published 20/12/2025 22:06 · Modified 20/12/2025 22:06

Essential information

Value / Name
f4275a0db5e74d24150985c23a740c4b2514b002b2bdf9c87c64bccb6be6d193
Confidence
100/100
Revoked
Yes
Valid from
13/10/2022 20:28
Valid until
16/01/2024 19:28
Pattern type
stix
Published
20/12/2025 22:06
Modified
20/12/2025 22:06
Author / Source
AlienVault

Description

Win64:MalwareX-gen\ [Trj] SHA256 of d3eeb9db89f0b21dc945f5410be9a9532e0c951e

Pattern

[file:hashes.'SHA-256' = 'f4275a0db5e74d24150985c23a740c4b2514b002b2bdf9c87c64bccb6be6d193']

Labels / Tags

Labels: c2 channel credential dumper credential harvesting deepsoft fake certificates keylogger mssql server nanodump port relay tool reproduced sqlmaggie screencap sqlmaggie wip19

Marking (TLP)

TLP:CLEAR