216.73.216.226

Indicator (IOC)

stix Revoked AlienVault · Published 20/12/2025 19:59 · Modified 21/12/2025 16:59

Essential information

Value / Name
https://bloomwpp.info/DubjW967VGHD3ykdnhkdhn/dsdcrjhdeenidufoft.py
Confidence
100/100
Revoked
Yes
Valid from
03/10/2025 05:23
Valid until
19/11/2025 04:23
Pattern type
stix
Published
20/12/2025 19:59
Modified
21/12/2025 16:59
Author / Source
AlienVault

Description

No description.

Pattern

[url:value = 'https://bloomwpp.info/DubjW967VGHD3ykdnhkdhn/dsdcrjhdeenidufoft.py']

Labels / Tags

Labels: anondoor cyber-espionage lnk files obfuscation pakistan python backdoor south asia wooperstealer

Marking (TLP)

TLP:CLEAR