216.73.217.80

Indicator (IOC)

stix Revoked AlienVault · Published 21/12/2025 12:43 · Modified 21/12/2025 12:45

Essential information

Value / Name
twzfw.vip
Confidence
100/100
Revoked
Yes
Valid from
05/03/2025 17:04
Valid until
31/07/2025 18:00
Pattern type
stix
Published
21/12/2025 12:43
Modified
21/12/2025 12:45
Author / Source
AlienVault

Description

No description.

Pattern

[domain-name:value = 'twzfw.vip']

Labels / Tags

Labels: agent c2 server corrupt pdf phishing screen capture team uacme valleyrat wechat

Marking (TLP)

TLP:CLEAR

Related entities

No linked attack reports or intrusion sets yet.