PULSE NAME
Oz Batch: 50 IOCs (avg BDE: 85)
WHITE pduggusa 2026-01-23 Modified: 2026-02-22
17
IOCs
MEDIUM VOLUME
**Pulse Description:** This pulse identifies 50 indicators of compromise (IOCs) associated with various C2 frameworks including Havoc, KongTuke, DeimosC2, and RedLine Stealer. The average BDE (Big Data analytics Energy) Score is 85, indicating a high level of threat potential. These IOCs do not appear tied to a specific adversary or country, but organizations should remain vigilant against this diverse array of malware tools commonly used in cyber-attacks. Detection timestamp: [Insert Timestamp].
Indicators of Compromise (17)
All domain FileHash-SHA256 FileHash-MD5 hostname
TYPEINDICATORDESCRIPTIONCREATED
domain medhrrst.com BDE: 85 2026-01-23
domain winnheiser.com BDE: 85 2026-01-23
domain deeesik.com BDE: 85 2026-01-23
FileHash-SHA256 be4f76750d5b734d49678c2df15bd8268259475ced28808ba16c32270a863dc2 BDE: 85 2026-01-23
FileHash-MD5 081ee44c6b94f15d7eb6bb783ff283ad BDE: 85 2026-01-23
hostname 000.start-men.site BDE: 85 2026-01-23
hostname 000.start-men.store BDE: 85 2026-01-23
hostname 000.start-men.space BDE: 85 2026-01-23
domain snwang-yandi.com BDE: 85 2026-01-23
domain imbalanceposib.com BDE: 85 2026-01-23
domain blushwb.cyou BDE: 85 2026-01-23
domain discret.cyou BDE: 85 2026-01-23
domain trichoi.cyou BDE: 85 2026-01-23
domain unchewq.cyou BDE: 85 2026-01-23
domain enjambwm.cyou BDE: 85 2026-01-23
domain lacevcnt.cyou BDE: 85 2026-01-23
domain stripcil.cyou BDE: 85 2026-01-23