PULSE NAME
eScan Antivirus Update Server Compromised to Distribute Multi Stage Malware
WHITE cryptocti 2026-01-30 Modified: 2026-03-01
10
IOCs
LOW VOLUME
Threat actors compromised eScan's update infrastructure, delivering multi-stage malware to both enterprise and consumer systems.
Indicators of Compromise (2 / 10 total)
All FileHash-SHA256 URL domain hostname
TYPEINDICATORDESCRIPTIONCREATED
URL http://codegiant.io/dd/dd/dd.git/download/main/middleware.ts 2026-01-30
URL http://vhs.delrosal.net/i 2026-01-30