216.73.216.36

Indicator (IOC)

stix Revoked AlienVault · Published 20/12/2025 19:42 · Modified 21/12/2025 02:44

Essential information

Value / Name
ef6edacf6ee1e0dd2e53046a91ba84d10a8adda6918ca7aac6e96ead432efbbc
Confidence
100/100
Revoked
Yes
Valid from
11/01/2024 23:35
Valid until
16/04/2025 00:35
Pattern type
stix
Published
20/12/2025 19:42
Modified
21/12/2025 02:44
Author / Source
AlienVault

Description

___FilesToHash_17jun

Pattern

[file:hashes.'SHA-256' = 'ef6edacf6ee1e0dd2e53046a91ba84d10a8adda6918ca7aac6e96ead432efbbc']

Labels / Tags

Labels: gzip hta file lnk files powershell remcosrat reversessh signal spear phishing vbscript

Marking (TLP)

TLP:CLEAR

Related entities

No linked attack reports or intrusion sets yet.