PULSE NAME
Oz Batch: 50 IOCs (avg BDE: 85)
WHITE pduggusa 2026-02-12 Modified: 2026-03-14
20
IOCs
MEDIUM VOLUME
**OTX Pulse Description:** This finding encompasses 50 indicators, including domains, IPs, and MD5 hashes associated with various C2 frameworks such as Lumma Stealer, Sliver, and Vidar. The average Big Data analytics Energy (BDE) score is a concerning 85, signaling a high level of sophistication and potential threat. While no specific adversary has been identified, the use of multiple advanced frameworks suggests significant capabilities; relevant MITRE ATT&CK techniques may include T1193 (Spear Phishing Link) and T1059 (Command and Scripting Interpreter). BDE (Big Data analytics Energy) Score: 85. Detection timestamp: [insert timestamp].
Indicators of Compromise (20)
All domain FileHash-MD5 hostname
TYPEINDICATORDESCRIPTIONCREATED
domain retiriu.cyou BDE: 85 2026-02-12
domain psychob.cyou BDE: 85 2026-02-12
domain chuckyr.cyou BDE: 85 2026-02-12
domain elqfbcx5nofwtqfookqml7ltx2g6q6tmddys6e25vgu3al2meim6cbqd.onion BDE: 85 2026-02-12
domain zfytizegsze6uiswodhbaalyy5rawaytv2nzyzdkt3susbewviqqh7yd.onion BDE: 85 2026-02-12
domain ocwjy4ynmpbbzhumh2ama2vl3bc77lf5auqf7nf4k45lbmzoep2rbyid.onion BDE: 85 2026-02-12
domain warlock4fagqhnfuxtcmncfepe3jc33e33dmj2jsk64svxaerm5zhaqd.onion BDE: 85 2026-02-12
domain warlock6d4etw5gwwaakh6auh6cwkinhk2bx7bbldu4m5axlcwmbuuyd.onion BDE: 85 2026-02-12
domain warlockhga5iw3t54ps5iytlilf7hlvxy7kwrkidspn4qoh64s4vsuyd.onion BDE: 85 2026-02-12
domain warlockmdu64clit5pdwbp5hsd576vcjjigfwbtz5gtthmuy2fiqblad.onion BDE: 85 2026-02-12
domain warlockoact3ayzqwlnay27b633bku2gmpq34dxb43v3qriujfea4yyd.onion BDE: 85 2026-02-12
domain warlock5zli2g4nuvixkgyivpda4ktg6flx5lbtw3u6g5lidgxzjc6id.onion BDE: 85 2026-02-12
FileHash-MD5 a454720443d664bcdf4d706b7441d2a2 BDE: 85 2026-02-12
hostname auth.wincloud-svc.online BDE: 85 2026-02-12
domain ctpsih.com BDE: 85 2026-02-12
domain netzhit.com BDE: 85 2026-02-12
domain namzcp.org BDE: 85 2026-02-12
hostname bds3.umemarketingagency.com BDE: 85 2026-02-12
hostname 117a78bb33.nxcli.net BDE: 85 2026-02-12
hostname acc.mecha-service.nl BDE: 85 2026-02-12