Uncovering ALVIVA HOLDING: Links to Russian Shell Companies and Cybercrime
ID: 6cc649f8-ae54-5de8-8c96-c51fe0d6007c
STIX ID: report--6cc649f8-ae54-5de8-8c96-c51fe0d6007c
Feed Name: THE RAVEN FILE
Threat Score
This investigation links newly announced Clop ransomware contact infrastructure (pubstorm.com / pubstorm.net and their IPs) to Alviva Holding Limited — a hosting provider operating via shell companies and Alpha Consulting — using WHOIS, ASN, VT evidence and Pandora Papers records; the report presents IOCs, historical abuse (Cobalt Strike, DDoS, bulletproof hosting) and operational guidance for detection and mitigation.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
