216.73.217.22

Indicator (IOC)

stix Revoked AlienVault · Published 20/04/2026 18:53 · Modified 10/06/2026 16:00

Essential information

Value / Name
http://tezwsse5czllksjb7cwp65rvnk4oobmzti2znn42i43bjdfd2prqqkad.onion/
Confidence
100/100
Revoked
Yes
Valid from
20/04/2026 17:00
Valid until
19/05/2026 22:43
Pattern type
stix
Published
20/04/2026 18:53
Modified
10/06/2026 16:00
Author / Source
AlienVault

Description

No description.

Pattern

[url:value = 'http://tezwsse5czllksjb7cwp65rvnk4oobmzti2znn42i43bjdfd2prqqkad.onion/']

Labels / Tags

Labels: anydesk breachforums partnership cobalt strike cobalt-strike cve-2024-55591 domain-compromise double extortion esxi-encryption gentlemen go binary group-policy-deployment larva-368 lateral movement lateral-movement mimikatz psexec ransomware-as-a-service storm-2697 systembc the gentlemen xchacha20 encryption

Marking (TLP)

TLP:CLEAR