216.73.216.226

Indicator (IOC)

stix AlienVault · Published 21/12/2025 15:15 · Modified 27/12/2025 19:34

Essential information

Value / Name
msupdate.updatemicfosoft.com
Confidence
100/100
Revoked
No
Valid from
01/08/2025 13:31
Valid until
06/07/2026 22:14
Pattern type
stix
Published
21/12/2025 15:15
Modified
27/12/2025 19:34
Author / Source
AlienVault

Description

No description.

Pattern

[hostname:value = 'msupdate.updatemicfosoft.com']

Labels / Tags

Labels: dll sideloading encryption evasion lockbit masquerading persistence ransomware

Marking (TLP)

TLP:CLEAR