PULSE NAME
Oz Batch: 50 IOCs (avg BDE: 85)
WHITE pduggusa 2025-12-18 Modified: 2026-01-17
17
IOCs
MEDIUM VOLUME
**Pulse Title: C2 Infrastructure Threats Unleashed** In this latest finding, we've uncovered 50 malicious indicators, including IPs and domains tied to notorious C2 frameworks such as DCRat, XWorm, and QakBot, averaging a BDE score of 85—yikes! These assholes are leveraging sophisticated techniques reminiscent of MITRE ATT&CK T1071 (Application Layer Protocol), with a laundry list of tools like Vidar and MimiKatz to wreak havoc. Keep your eyes peeled and your defenses tight—this intel was detected just now.
Indicators of Compromise (17)
All hostname domain
TYPEINDICATORDESCRIPTIONCREATED
hostname hazeontop555-51161.portmap.host BDE: 85 2025-12-18
hostname wlzssic9u.localto.net BDE: 85 2025-12-18
hostname weifang.serveftp.com BDE: 85 2025-12-18
hostname grannyboosted-38861.portmap.host BDE: 85 2025-12-18
domain relatedsinsportycreiwer.site BDE: 85 2025-12-18
domain soundtu.sb BDE: 85 2025-12-18
domain tetrasa.cfd BDE: 85 2025-12-18
domain pdeterstars.com BDE: 85 2025-12-18
domain xyrmiskisxyr.cc BDE: 85 2025-12-18
domain mickstatham.com BDE: 85 2025-12-18
hostname www.themosthonestseller.top BDE: 85 2025-12-18
hostname top.chadamaite.com BDE: 85 2025-12-18
hostname top.asrkala.top BDE: 85 2025-12-18
hostname kit.chadamaite.com BDE: 85 2025-12-18
domain hpolokolasolakiprijions.com BDE: 85 2025-12-18
domain giakloirtyuilokasdf.com BDE: 85 2025-12-18
domain bastroiklodasertjuyer.com BDE: 85 2025-12-18