216.73.216.6

Indicator (IOC)

stix Revoked AlienVault · Published 03/02/2026 17:32 · Modified 04/03/2026 18:51

Essential information

Value / Name
http://45.76.155.202/update/update.exe.
Confidence
100/100
Revoked
Yes
Valid from
03/02/2026 13:08
Valid until
04/03/2026 18:51
Pattern type
stix
Published
03/02/2026 17:32
Modified
04/03/2026 18:51
Author / Source
AlienVault

Description

No description.

Pattern

[url:value = 'http://45.76.155.202/update/update.exe.']

Labels / Tags

Labels: chrysalis backdoor cobalt strike cobalt strike beacon dll sideloading metasploit mgbot notepad++ nsis shellcode supply-chain

Marking (TLP)

TLP:CLEAR

Related entities

No linked attack reports or intrusion sets yet.