216.73.216.6

Indicator (IOC)

stix Revoked AlienVault · Published 20/12/2025 19:49 · Modified 21/12/2025 08:34

Essential information

Value / Name
cdn.nifttymail.com
Confidence
100/100
Revoked
Yes
Valid from
20/12/2024 15:28
Valid until
25/11/2025 00:10
Pattern type
stix
Published
20/12/2025 19:49
Modified
21/12/2025 08:34
Author / Source
AlienVault

Description

No description.

Pattern

[hostname:value = 'cdn.nifttymail.com']

Labels / Tags

Labels: anti-analysis cloudflare workers cobalt strike cobalt strike beacon flashupdateinstall.exe japan malware injection social engineering system32.dll tips.exe university watering hole

Marking (TLP)

TLP:CLEAR

Related entities

No linked attack reports or intrusion sets yet.