logo

Uncovering ALVIVA HOLDING: Links to Russian Shell Companies and Cybercrime

ID: 6cc649f8-ae54-5de8-8c96-c51fe0d6007c

STIX ID: report--6cc649f8-ae54-5de8-8c96-c51fe0d6007c

Feed Name: THE RAVEN FILE

Threat Score
75/100

Date Published: 2025-09-08

Date Updated: 2026-04-19

Author: RakeshKrish

...
...

This investigation links newly announced Clop ransomware contact infrastructure (pubstorm.com / pubstorm.net and their IPs) to Alviva Holding Limited — a hosting provider operating via shell companies and Alpha Consulting — using WHOIS, ASN, VT evidence and Pandora Papers records; the report presents IOCs, historical abuse (Cobalt Strike, DDoS, bulletproof hosting) and operational guidance for detection and mitigation.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.