216.73.217.172

Indicator (IOC)

stix AlienVault · Published 20/12/2025 20:01 · Modified 03/01/2026 07:47

Essential information

Value / Name
36dc557b4ea173d9537392f64c1a9527a5832ca99718150fb430e0c13762758b
Confidence
100/100
Revoked
No
Valid from
28/11/2025 09:39
Valid until
24/11/2026 17:33
Pattern type
stix
Published
20/12/2025 20:01
Modified
03/01/2026 07:47
Author / Source
AlienVault

Description

Win.Malware.Trojanx-10035542-0 SHA256 of bfcb8bd83bfa415d6e1c21a7686f2e79aea18d7a

Pattern

[file:hashes.'SHA-256' = '36dc557b4ea173d9537392f64c1a9527a5832ca99718150fb430e0c13762758b']

Labels / Tags

Labels: babuk cve-2025-4427 cve-2025-4428 cve-2025-53770 cyberspionage ivanti krustyloader lockbit rce vulnerabilities russian targets sharepoint sliver thor

Marking (TLP)

TLP:CLEAR