216.73.217.172

Indicator (IOC)

stix Revoked AlienVault · Published 20/12/2025 19:50 · Modified 10/01/2026 01:35

Essential information

Value / Name
0fa7e3ffb8a9ca246cc1f1e3f6118ced7a7b785de510d777b316dfcefdddb0be
Confidence
100/100
Revoked
Yes
Valid from
13/01/2025 17:41
Valid until
10/01/2026 01:35
Pattern type
stix
Published
20/12/2025 19:50
Modified
10/01/2026 01:35
Author / Source
AlienVault

Description

No description.

Pattern

[file:hashes.'SHA-256' = '0fa7e3ffb8a9ca246cc1f1e3f6118ced7a7b785de510d777b316dfcefdddb0be']

Labels / Tags

Labels: apt28 central asia cherryspy cyber espionage diplomatic double-tap hatvibe hta trojan kazakhstan multi-layer obfuscation vbe techniques windows script encoder x32dbg debugging

Marking (TLP)

TLP:CLEAR