216.73.216.36

Indicator (IOC)

stix Revoked AlienVault · Published 20/12/2025 19:35 · Modified 20/12/2025 23:26

Essential information

Value / Name
5fc44c7342b84f50f24758e39c8848b2f0991e8817ef5465844f5f2ff6085a57
Confidence
100/100
Revoked
Yes
Valid from
24/02/2023 18:03
Valid until
29/05/2024 19:03
Pattern type
stix
Published
20/12/2025 19:35
Modified
20/12/2025 23:26
Author / Source
AlienVault

Description

mespinoza_svchost SHA256 of 986ba7a5714ad5b0de0d040d1c066389bcb81a67

Pattern

[file:hashes.'SHA-256' = '5fc44c7342b84f50f24758e39c8848b2f0991e8817ef5465844f5f2ff6085a57']

Labels / Tags

Labels: active directory group policy arguepatch dev-0960 foxblade geopolitical conflict hermeticwiper impacket iridium notpetya powergap script prestige prestige ranusomeware psexec ransomware remoteexec swiftslicer ukraine winpeas wipers wmiexec

Marking (TLP)

TLP:CLEAR