{
  "type": "URL",
  "indicator": "https://alberta.ca/budget",
  "general": {
    "sections": [
      "general",
      "url_list",
      "http_scans",
      "screenshot"
    ],
    "indicator": "https://alberta.ca/budget",
    "type": "url",
    "type_title": "URL",
    "validation": [
      {
        "source": "majestic",
        "message": "Whitelisted domain alberta.ca",
        "name": "Whitelisted domain"
      }
    ],
    "base_indicator": {
      "id": 4130446869,
      "indicator": "https://alberta.ca/budget",
      "type": "URL",
      "title": "",
      "description": "",
      "content": "",
      "access_type": "public",
      "access_reason": ""
    },
    "pulse_info": {
      "count": 1,
      "pulses": [
        {
          "id": "68c6ee7fed3c32c4e9d929f9",
          "name": "https://www[.]alberta[.]ca/technology-and-innovation - 09.14.25",
          "description": "Find out more about the Alberta government's technology and innovation projects at the same time as the release of a new artificial intelligence (AI) search tool on the website of the province's main website. Mashup of VT collections/graphs from jwanihad and Arkadij_0",
          "modified": "2025-10-14T16:57:23.520000",
          "created": "2025-09-14T16:34:07.408000",
          "tags": [
            "alberta",
            "find",
            "innovation",
            "government",
            "august",
            "home all",
            "business",
            "strategy",
            "skip",
            "search ai",
            "wildfire",
            "footer",
            "please",
            "javascript",
            "technology",
            "ai data",
            "ministry",
            "social",
            "ministries",
            "june",
            "media",
            "sandbox",
            "malware",
            "analysis",
            "online",
            "submit",
            "vxstream",
            "sample",
            "download",
            "trojan",
            "apt",
            "ansi",
            "prefetch8 ansi",
            "show process",
            "date",
            "pcap processing",
            "threat level",
            "hash seen",
            "pcap frame",
            "programfiles",
            "sha256",
            "suspicious",
            "comspec",
            "hybrid",
            "model",
            "close",
            "click",
            "hosts",
            "general",
            "path",
            "starfield",
            "strings",
            "contact",
            "url",
            "scanner",
            "reputation",
            "phishing",
            "warning icon",
            "share report",
            "domain",
            "systems",
            "google tag",
            "manager",
            "cloudflare",
            "nginx",
            "amazon web",
            "services",
            "write",
            "url analysis",
            "website security scan",
            "phishing detection",
            "brand monitoring",
            "website vulnerability checker",
            "online threat intelligence",
            "cybersecurity tools",
            "api for website analysis",
            "python security library",
            "ai web analysis",
            "online fraud prevention",
            "takedown service",
            "dna test",
            "virus",
            "ransomware",
            "static",
            "indicator of compromise",
            "ioc",
            "extraction",
            "emulation",
            "platform",
            "pcap",
            "entity",
            "UCP",
            "Alberta",
            "UAlberta"
          ],
          "references": [
            "https://www.alberta.ca/innovation-technology",
            "https://www.virustotal.com/gui/url/02ac643ab4887f1369e972111782ffb97a98e476ba9277217b048e9c529c7b67/details",
            "https://www.virustotal.com/gui/url/50a0c769107dd6645c080610169f2da5a43d64d06839800fdb426b2b1dc8b552/details",
            "https://www.alberta.ca/technology-and-innovation",
            "https://hybrid-analysis.com/sample/8f73a016e04056778913b3a3192cd57649f6243488898938874b7f31831002aa/68c6dbeb73994f791800aa28",
            "https://urlquery.net/report/9e772488-395e-4d54-a170-c148a573c337",
            "https://urldna.io/scan/68c6dc443b7750000f71bb02",
            "https://www.filescan.io/uploads/68c6de05732879482929ac55/reports/ed420243-2df7-46a3-89e0-f807373b8885/overview",
            "https://hybrid-analysis.com/sample/e81eb1d6abbf1818869d857b2dba4b432cfdb69d11d02336946c229f252e8f03/68c6de4c44d253a54b0e2076",
            "https://urlquery.net/report/b68eb048-4eca-43f6-8f8e-f58064296d03",
            "https://urldna.io/scan/68c6e2653b7750000ab1b015",
            "https://www.virustotal.com/graph/embed/ge6af493614484a64b8f6778d729f95faeb8d09db49ea4e8da0a3e1e5d6497ca4?theme=dark"
          ],
          "public": 1,
          "adversary": "",
          "targeted_countries": [],
          "malware_families": [],
          "attack_ids": [
            {
              "id": "T1566",
              "name": "Phishing",
              "display_name": "T1566 - Phishing"
            },
            {
              "id": "T1027",
              "name": "Obfuscated Files or Information",
              "display_name": "T1027 - Obfuscated Files or Information"
            },
            {
              "id": "T1057",
              "name": "Process Discovery",
              "display_name": "T1057 - Process Discovery"
            },
            {
              "id": "T1071",
              "name": "Application Layer Protocol",
              "display_name": "T1071 - Application Layer Protocol"
            },
            {
              "id": "T1105",
              "name": "Ingress Tool Transfer",
              "display_name": "T1105 - Ingress Tool Transfer"
            },
            {
              "id": "T1129",
              "name": "Shared Modules",
              "display_name": "T1129 - Shared Modules"
            },
            {
              "id": "T1518",
              "name": "Software Discovery",
              "display_name": "T1518 - Software Discovery"
            },
            {
              "id": "T1553",
              "name": "Subvert Trust Controls",
              "display_name": "T1553 - Subvert Trust Controls"
            },
            {
              "id": "T1568",
              "name": "Dynamic Resolution",
              "display_name": "T1568 - Dynamic Resolution"
            },
            {
              "id": "T1583",
              "name": "Acquire Infrastructure",
              "display_name": "T1583 - Acquire Infrastructure"
            },
            {
              "id": "T1590",
              "name": "Gather Victim Network Information",
              "display_name": "T1590 - Gather Victim Network Information"
            },
            {
              "id": "T1498",
              "name": "Network Denial of Service",
              "display_name": "T1498 - Network Denial of Service"
            },
            {
              "id": "T1090",
              "name": "Proxy",
              "display_name": "T1090 - Proxy"
            }
          ],
          "industries": [
            "Government",
            "Tech"
          ],
          "TLP": "white",
          "cloned_from": null,
          "export_count": 22,
          "upvotes_count": 0,
          "downvotes_count": 0,
          "votes_count": 0,
          "locked": false,
          "pulse_source": "web",
          "validator_count": 0,
          "comment_count": 0,
          "follower_count": 0,
          "vote": 0,
          "author": {
            "username": "Disable_Duck",
            "id": "244325",
            "avatar_url": "/otxapi/users/avatar_image/media/avatars/user_244325/resized/80/avatar_3b9c358f36.png",
            "is_subscribed": false,
            "is_following": false
          },
          "indicator_type_counts": {
            "FileHash-MD5": 54,
            "FileHash-SHA1": 53,
            "FileHash-SHA256": 122,
            "SSLCertFingerprint": 12,
            "URL": 75,
            "email": 6,
            "domain": 10,
            "hostname": 82
          },
          "indicator_count": 414,
          "is_author": false,
          "is_subscribing": null,
          "subscriber_count": 129,
          "modified_text": "187 days ago ",
          "is_modified": true,
          "groups": [],
          "in_group": false,
          "threat_hunter_scannable": true,
          "threat_hunter_has_agents": 1,
          "related_indicator_type": "URL",
          "related_indicator_is_active": 1
        }
      ],
      "references": [
        "https://www.virustotal.com/gui/url/50a0c769107dd6645c080610169f2da5a43d64d06839800fdb426b2b1dc8b552/details",
        "https://urlquery.net/report/9e772488-395e-4d54-a170-c148a573c337",
        "https://urldna.io/scan/68c6dc443b7750000f71bb02",
        "https://www.alberta.ca/technology-and-innovation",
        "https://hybrid-analysis.com/sample/8f73a016e04056778913b3a3192cd57649f6243488898938874b7f31831002aa/68c6dbeb73994f791800aa28",
        "https://www.virustotal.com/gui/url/02ac643ab4887f1369e972111782ffb97a98e476ba9277217b048e9c529c7b67/details",
        "https://www.filescan.io/uploads/68c6de05732879482929ac55/reports/ed420243-2df7-46a3-89e0-f807373b8885/overview",
        "https://hybrid-analysis.com/sample/e81eb1d6abbf1818869d857b2dba4b432cfdb69d11d02336946c229f252e8f03/68c6de4c44d253a54b0e2076",
        "https://www.virustotal.com/graph/embed/ge6af493614484a64b8f6778d729f95faeb8d09db49ea4e8da0a3e1e5d6497ca4?theme=dark",
        "https://www.alberta.ca/innovation-technology",
        "https://urlquery.net/report/b68eb048-4eca-43f6-8f8e-f58064296d03",
        "https://urldna.io/scan/68c6e2653b7750000ab1b015"
      ],
      "related": {
        "alienvault": {
          "adversary": [],
          "malware_families": [],
          "industries": [],
          "unique_indicators": 0
        },
        "other": {
          "adversary": [],
          "malware_families": [],
          "industries": [
            "Government",
            "Tech"
          ],
          "unique_indicators": 472
        }
      }
    },
    "false_positive": [],
    "alexa": "http://www.alexa.com/siteinfo/alberta.ca",
    "whois": "http://whois.domaintools.com/alberta.ca",
    "domain": "alberta.ca",
    "hostname": "Unavailable"
  },
  "geo": {},
  "geo_ipapicom": {},
  "pulse_count": 1,
  "pulses": [
    {
      "id": "68c6ee7fed3c32c4e9d929f9",
      "name": "https://www[.]alberta[.]ca/technology-and-innovation - 09.14.25",
      "description": "Find out more about the Alberta government's technology and innovation projects at the same time as the release of a new artificial intelligence (AI) search tool on the website of the province's main website. Mashup of VT collections/graphs from jwanihad and Arkadij_0",
      "modified": "2025-10-14T16:57:23.520000",
      "created": "2025-09-14T16:34:07.408000",
      "tags": [
        "alberta",
        "find",
        "innovation",
        "government",
        "august",
        "home all",
        "business",
        "strategy",
        "skip",
        "search ai",
        "wildfire",
        "footer",
        "please",
        "javascript",
        "technology",
        "ai data",
        "ministry",
        "social",
        "ministries",
        "june",
        "media",
        "sandbox",
        "malware",
        "analysis",
        "online",
        "submit",
        "vxstream",
        "sample",
        "download",
        "trojan",
        "apt",
        "ansi",
        "prefetch8 ansi",
        "show process",
        "date",
        "pcap processing",
        "threat level",
        "hash seen",
        "pcap frame",
        "programfiles",
        "sha256",
        "suspicious",
        "comspec",
        "hybrid",
        "model",
        "close",
        "click",
        "hosts",
        "general",
        "path",
        "starfield",
        "strings",
        "contact",
        "url",
        "scanner",
        "reputation",
        "phishing",
        "warning icon",
        "share report",
        "domain",
        "systems",
        "google tag",
        "manager",
        "cloudflare",
        "nginx",
        "amazon web",
        "services",
        "write",
        "url analysis",
        "website security scan",
        "phishing detection",
        "brand monitoring",
        "website vulnerability checker",
        "online threat intelligence",
        "cybersecurity tools",
        "api for website analysis",
        "python security library",
        "ai web analysis",
        "online fraud prevention",
        "takedown service",
        "dna test",
        "virus",
        "ransomware",
        "static",
        "indicator of compromise",
        "ioc",
        "extraction",
        "emulation",
        "platform",
        "pcap",
        "entity",
        "UCP",
        "Alberta",
        "UAlberta"
      ],
      "references": [
        "https://www.alberta.ca/innovation-technology",
        "https://www.virustotal.com/gui/url/02ac643ab4887f1369e972111782ffb97a98e476ba9277217b048e9c529c7b67/details",
        "https://www.virustotal.com/gui/url/50a0c769107dd6645c080610169f2da5a43d64d06839800fdb426b2b1dc8b552/details",
        "https://www.alberta.ca/technology-and-innovation",
        "https://hybrid-analysis.com/sample/8f73a016e04056778913b3a3192cd57649f6243488898938874b7f31831002aa/68c6dbeb73994f791800aa28",
        "https://urlquery.net/report/9e772488-395e-4d54-a170-c148a573c337",
        "https://urldna.io/scan/68c6dc443b7750000f71bb02",
        "https://www.filescan.io/uploads/68c6de05732879482929ac55/reports/ed420243-2df7-46a3-89e0-f807373b8885/overview",
        "https://hybrid-analysis.com/sample/e81eb1d6abbf1818869d857b2dba4b432cfdb69d11d02336946c229f252e8f03/68c6de4c44d253a54b0e2076",
        "https://urlquery.net/report/b68eb048-4eca-43f6-8f8e-f58064296d03",
        "https://urldna.io/scan/68c6e2653b7750000ab1b015",
        "https://www.virustotal.com/graph/embed/ge6af493614484a64b8f6778d729f95faeb8d09db49ea4e8da0a3e1e5d6497ca4?theme=dark"
      ],
      "public": 1,
      "adversary": "",
      "targeted_countries": [],
      "malware_families": [],
      "attack_ids": [
        {
          "id": "T1566",
          "name": "Phishing",
          "display_name": "T1566 - Phishing"
        },
        {
          "id": "T1027",
          "name": "Obfuscated Files or Information",
          "display_name": "T1027 - Obfuscated Files or Information"
        },
        {
          "id": "T1057",
          "name": "Process Discovery",
          "display_name": "T1057 - Process Discovery"
        },
        {
          "id": "T1071",
          "name": "Application Layer Protocol",
          "display_name": "T1071 - Application Layer Protocol"
        },
        {
          "id": "T1105",
          "name": "Ingress Tool Transfer",
          "display_name": "T1105 - Ingress Tool Transfer"
        },
        {
          "id": "T1129",
          "name": "Shared Modules",
          "display_name": "T1129 - Shared Modules"
        },
        {
          "id": "T1518",
          "name": "Software Discovery",
          "display_name": "T1518 - Software Discovery"
        },
        {
          "id": "T1553",
          "name": "Subvert Trust Controls",
          "display_name": "T1553 - Subvert Trust Controls"
        },
        {
          "id": "T1568",
          "name": "Dynamic Resolution",
          "display_name": "T1568 - Dynamic Resolution"
        },
        {
          "id": "T1583",
          "name": "Acquire Infrastructure",
          "display_name": "T1583 - Acquire Infrastructure"
        },
        {
          "id": "T1590",
          "name": "Gather Victim Network Information",
          "display_name": "T1590 - Gather Victim Network Information"
        },
        {
          "id": "T1498",
          "name": "Network Denial of Service",
          "display_name": "T1498 - Network Denial of Service"
        },
        {
          "id": "T1090",
          "name": "Proxy",
          "display_name": "T1090 - Proxy"
        }
      ],
      "industries": [
        "Government",
        "Tech"
      ],
      "TLP": "white",
      "cloned_from": null,
      "export_count": 22,
      "upvotes_count": 0,
      "downvotes_count": 0,
      "votes_count": 0,
      "locked": false,
      "pulse_source": "web",
      "validator_count": 0,
      "comment_count": 0,
      "follower_count": 0,
      "vote": 0,
      "author": {
        "username": "Disable_Duck",
        "id": "244325",
        "avatar_url": "/otxapi/users/avatar_image/media/avatars/user_244325/resized/80/avatar_3b9c358f36.png",
        "is_subscribed": false,
        "is_following": false
      },
      "indicator_type_counts": {
        "FileHash-MD5": 54,
        "FileHash-SHA1": 53,
        "FileHash-SHA256": 122,
        "SSLCertFingerprint": 12,
        "URL": 75,
        "email": 6,
        "domain": 10,
        "hostname": 82
      },
      "indicator_count": 414,
      "is_author": false,
      "is_subscribing": null,
      "subscriber_count": 129,
      "modified_text": "187 days ago ",
      "is_modified": true,
      "groups": [],
      "in_group": false,
      "threat_hunter_scannable": true,
      "threat_hunter_has_agents": 1,
      "related_indicator_type": "URL",
      "related_indicator_is_active": 1
    }
  ],
  "error": null,
  "vt": {
    "error": "VirusTotal rate limit reached. Try again shortly.",
    "indicator": "https://alberta.ca/budget",
    "type": "URL"
  },
  "abuseipdb": null,
  "urlhaus": {
    "indicator": "https://alberta.ca/budget",
    "type": "URL",
    "found": false,
    "verdict": "clean",
    "error": null
  },
  "from_cache": true,
  "_cached_at": 1776627990.646346
}