PULSE NAME
UAC-0226 Deploys GIFTEDCROOK Stealer via WinRAR Exploits
WHITE Cherryid 2026-05-20 Modified: 2026-05-20
23
IOCs
MEDIUM VOLUME
Indicators of Compromise (23)
All IPv4 domain hostname
TYPEINDICATORDESCRIPTIONCREATED
IPv4 194.58.66.82 CC=RU ASN=AS35112 llc dzhibien host 2026-05-20
domain babaskan.ru 2026-05-20
domain billonda.ru 2026-05-20
domain continiym.ru 2026-05-20
domain fahrakin.ru 2026-05-20
domain fartodti.ru 2026-05-20
domain feorant.ru 2026-05-20
domain frastron.ru 2026-05-20
domain golfaris.ru 2026-05-20
domain hitorova.ru 2026-05-20
domain huskino.ru 2026-05-20
domain koloprast.ru 2026-05-20
domain leorius.ru 2026-05-20
domain milotran.ru 2026-05-20
domain monkyking.ru 2026-05-20
domain mopotran.ru 2026-05-20
domain muchkino.ru 2026-05-20
domain notoros.ru 2026-05-20
domain podriks.ru 2026-05-20
hostname bloodywolves.ddns.net 2026-05-20
hostname daremoinai.bounceme.net 2026-05-20
hostname favoriteclown.endl.site 2026-05-20
hostname iguessillgoout.myvnc.com 2026-05-20