216.73.216.226

Indicator (IOC)

stix Revoked AlienVault · Published 20/12/2025 19:35 · Modified 20/12/2025 22:12

Essential information

Value / Name
http://4sync.com/web/directDownload/QHZsERS6/rHb0lMWD.f2e6a9154ab6cd29b337d6b555367580
Confidence
100/100
Revoked
Yes
Valid from
25/10/2022 16:10
Valid until
11/12/2022 15:10
Pattern type
stix
Published
20/12/2025 19:35
Modified
20/12/2025 22:12
Author / Source
AlienVault

Description

No description.

Pattern

[url:value = 'http://4sync.com/web/directDownload/QHZsERS6/rHb0lMWD.f2e6a9154ab6cd29b337d6b555367580']

Labels / Tags

Labels: amsi bypass asyncrat crackmapexe dwservice lnk file metasploit poshc2 powershell smartassembly

Marking (TLP)

TLP:CLEAR

Related entities

No linked attack reports or intrusion sets yet.