216.73.216.6

Indicator (IOC)

stix Revoked AlienVault · Published 03/02/2026 09:49 · Modified 04/03/2026 15:03

Essential information

Value / Name
http://api.wiresguard.com/api/FileUpload/submit
Confidence
100/100
Revoked
Yes
Valid from
03/02/2026 09:21
Valid until
04/03/2026 15:03
Pattern type
stix
Published
03/02/2026 09:49
Modified
04/03/2026 15:03
Author / Source
AlienVault

Description

No description.

Pattern

[url:value = 'http://api.wiresguard.com/api/FileUpload/submit']

Labels / Tags

Labels: apt backdoor china chrysalis chrysalis backdoor cobalt strike cobalt strike beacon dll sideloading metasploit mgbot notepad++ nsis obfuscation shellcode supply-chain warbird

Marking (TLP)

TLP:CLEAR