216.73.216.6

Indicator (IOC)

stix Revoked AlienVault · Published 20/12/2025 19:49 · Modified 21/12/2025 08:32

Essential information

Value / Name
http://cdn.nifttymail.com/
Confidence
100/100
Revoked
Yes
Valid from
20/12/2024 15:28
Valid until
05/02/2025 15:28
Pattern type
stix
Published
20/12/2025 19:49
Modified
21/12/2025 08:32
Author / Source
AlienVault

Description

No description.

Pattern

[url:value = 'http://cdn.nifttymail.com/']

Labels / Tags

Labels: anti-analysis cloudflare workers cobalt strike cobalt strike beacon flashupdateinstall.exe japan malware injection social engineering system32.dll tips.exe university watering hole

Marking (TLP)

TLP:CLEAR

Related entities

No linked attack reports or intrusion sets yet.