{
  "type": "URL",
  "indicator": "https://cryptocompete.com",
  "general": {
    "sections": [
      "general",
      "url_list",
      "http_scans",
      "screenshot"
    ],
    "indicator": "https://cryptocompete.com",
    "type": "url",
    "type_title": "URL",
    "validation": [],
    "base_indicator": {
      "id": 3785246124,
      "indicator": "https://cryptocompete.com",
      "type": "URL",
      "title": "",
      "description": "",
      "content": "",
      "access_type": "public",
      "access_reason": ""
    },
    "pulse_info": {
      "count": 3,
      "pulses": [
        {
          "id": "655e7e82c65d8e9106e6a227",
          "name": "https://theanimallawfirm.com/",
          "description": "",
          "modified": "2023-12-22T21:04:18.086000",
          "created": "2023-11-22T22:19:46.485000",
          "tags": [
            "spyware",
            "injector",
            "jul jan",
            "tag count",
            "tue jan",
            "threat report",
            "ip summary",
            "url summary",
            "summary",
            "sample",
            "n64xtx0vpihxzc",
            "qpyrn6pd",
            "detection list",
            "blacklist http",
            "cisco umbrella",
            "site",
            "site top",
            "alexa top",
            "safe site",
            "heur",
            "html",
            "site safe",
            "million",
            "malware",
            "artemis",
            "win64",
            "downldr",
            "presenoker",
            "fakealert",
            "riskware",
            "qakbot",
            "applicunwnt",
            "opencandy",
            "fusioncore",
            "cleaner",
            "wacatac",
            "exploit",
            "iframe",
            "dbatloader",
            "raccoon",
            "service",
            "agent",
            "alexa",
            "xtrat",
            "team",
            "phish",
            "deepscan",
            "crack",
            "suspicious",
            "phishing",
            "xrat",
            "cve201711882",
            "d26a",
            "maltiverse",
            "trojanspy",
            "united",
            "cyber threat",
            "engineering",
            "malicious site",
            "bank",
            "phishing site",
            "covid19",
            "facebook",
            "download",
            "emotet",
            "stealer",
            "suppobox",
            "downloader",
            "unsafe",
            "malicious",
            "smsspy",
            "cobalt strike",
            "generic",
            "dropper",
            "formbook",
            "unruy",
            "virut",
            "azorult",
            "zbot",
            "matsnu",
            "cutwail",
            "bradesco",
            "outbreak",
            "qbot",
            "bankerx",
            "nimda",
            "swrort",
            "adwind",
            "trojanx",
            "squirrelwaffle",
            "pony",
            "binder",
            "ramnit",
            "virustotal",
            "zeus",
            "nymaim",
            "simda",
            "runescape",
            "dnspionage",
            "redirector",
            "killav",
            "dcrat",
            "alien",
            "astaroth",
            "filerepmalware",
            "control server",
            "asyncrat",
            "redline stealer",
            "daum",
            "name verdict"
          ],
          "references": [],
          "public": 1,
          "adversary": "",
          "targeted_countries": [],
          "malware_families": [
            {
              "id": "D26A",
              "display_name": "D26A",
              "target": null
            },
            {
              "id": "Maltiverse",
              "display_name": "Maltiverse",
              "target": null
            },
            {
              "id": "TrojanSpy",
              "display_name": "TrojanSpy",
              "target": null
            }
          ],
          "attack_ids": [
            {
              "id": "T1547",
              "name": "Boot or Logon Autostart Execution",
              "display_name": "T1547 - Boot or Logon Autostart Execution"
            },
            {
              "id": "T1056",
              "name": "Input Capture",
              "display_name": "T1056 - Input Capture"
            },
            {
              "id": "T1027",
              "name": "Obfuscated Files or Information",
              "display_name": "T1027 - Obfuscated Files or Information"
            }
          ],
          "industries": [],
          "TLP": "green",
          "cloned_from": null,
          "export_count": 62,
          "upvotes_count": 0,
          "downvotes_count": 0,
          "votes_count": 0,
          "locked": false,
          "pulse_source": "web",
          "validator_count": 0,
          "comment_count": 0,
          "follower_count": 0,
          "vote": 0,
          "author": {
            "username": "OctoSeek",
            "id": "243548",
            "avatar_url": "/otxapi/users/avatar_image/media/avatars/user_243548/resized/80/avatar_3b9c358f36.png",
            "is_subscribed": false,
            "is_following": false
          },
          "indicator_type_counts": {
            "FileHash-MD5": 592,
            "FileHash-SHA1": 320,
            "FileHash-SHA256": 1159,
            "URL": 1257,
            "domain": 1219,
            "hostname": 403,
            "CVE": 15
          },
          "indicator_count": 4965,
          "is_author": false,
          "is_subscribing": null,
          "subscriber_count": 222,
          "modified_text": "891 days ago ",
          "is_modified": true,
          "groups": [],
          "in_group": false,
          "threat_hunter_scannable": true,
          "threat_hunter_has_agents": 1,
          "related_indicator_type": "URL",
          "related_indicator_is_active": 1
        },
        {
          "id": "655e7ed63ab06f2006c90b1c",
          "name": "DNSpionage, ",
          "description": "",
          "modified": "2023-12-22T21:04:18.086000",
          "created": "2023-11-22T22:21:10.853000",
          "tags": [
            "spyware",
            "injector",
            "jul jan",
            "tag count",
            "tue jan",
            "threat report",
            "ip summary",
            "url summary",
            "summary",
            "sample",
            "n64xtx0vpihxzc",
            "qpyrn6pd",
            "detection list",
            "blacklist http",
            "cisco umbrella",
            "site",
            "site top",
            "alexa top",
            "safe site",
            "heur",
            "html",
            "site safe",
            "million",
            "malware",
            "artemis",
            "win64",
            "downldr",
            "presenoker",
            "fakealert",
            "riskware",
            "qakbot",
            "applicunwnt",
            "opencandy",
            "fusioncore",
            "cleaner",
            "wacatac",
            "exploit",
            "iframe",
            "dbatloader",
            "raccoon",
            "service",
            "agent",
            "alexa",
            "xtrat",
            "team",
            "phish",
            "deepscan",
            "crack",
            "suspicious",
            "phishing",
            "xrat",
            "cve201711882",
            "d26a",
            "maltiverse",
            "trojanspy",
            "united",
            "cyber threat",
            "engineering",
            "malicious site",
            "bank",
            "phishing site",
            "covid19",
            "facebook",
            "download",
            "emotet",
            "stealer",
            "suppobox",
            "downloader",
            "unsafe",
            "malicious",
            "smsspy",
            "cobalt strike",
            "generic",
            "dropper",
            "formbook",
            "unruy",
            "virut",
            "azorult",
            "zbot",
            "matsnu",
            "cutwail",
            "bradesco",
            "outbreak",
            "qbot",
            "bankerx",
            "nimda",
            "swrort",
            "adwind",
            "trojanx",
            "squirrelwaffle",
            "pony",
            "binder",
            "ramnit",
            "virustotal",
            "zeus",
            "nymaim",
            "simda",
            "runescape",
            "dnspionage",
            "redirector",
            "killav",
            "dcrat",
            "alien",
            "astaroth",
            "filerepmalware",
            "control server",
            "asyncrat",
            "redline stealer",
            "daum",
            "name verdict"
          ],
          "references": [],
          "public": 1,
          "adversary": "",
          "targeted_countries": [],
          "malware_families": [
            {
              "id": "D26A",
              "display_name": "D26A",
              "target": null
            },
            {
              "id": "Maltiverse",
              "display_name": "Maltiverse",
              "target": null
            },
            {
              "id": "TrojanSpy",
              "display_name": "TrojanSpy",
              "target": null
            }
          ],
          "attack_ids": [
            {
              "id": "T1547",
              "name": "Boot or Logon Autostart Execution",
              "display_name": "T1547 - Boot or Logon Autostart Execution"
            },
            {
              "id": "T1056",
              "name": "Input Capture",
              "display_name": "T1056 - Input Capture"
            },
            {
              "id": "T1027",
              "name": "Obfuscated Files or Information",
              "display_name": "T1027 - Obfuscated Files or Information"
            }
          ],
          "industries": [],
          "TLP": "green",
          "cloned_from": "655e7e82c65d8e9106e6a227",
          "export_count": 64,
          "upvotes_count": 0,
          "downvotes_count": 0,
          "votes_count": 0,
          "locked": false,
          "pulse_source": "web",
          "validator_count": 0,
          "comment_count": 0,
          "follower_count": 0,
          "vote": 0,
          "author": {
            "username": "OctoSeek",
            "id": "243548",
            "avatar_url": "/otxapi/users/avatar_image/media/avatars/user_243548/resized/80/avatar_3b9c358f36.png",
            "is_subscribed": false,
            "is_following": false
          },
          "indicator_type_counts": {
            "FileHash-MD5": 592,
            "FileHash-SHA1": 320,
            "FileHash-SHA256": 1159,
            "URL": 1257,
            "domain": 1219,
            "hostname": 403,
            "CVE": 15
          },
          "indicator_count": 4965,
          "is_author": false,
          "is_subscribing": null,
          "subscriber_count": 222,
          "modified_text": "891 days ago ",
          "is_modified": true,
          "groups": [],
          "in_group": false,
          "threat_hunter_scannable": true,
          "threat_hunter_has_agents": 1,
          "related_indicator_type": "URL",
          "related_indicator_is_active": 1
        },
        {
          "id": "656a9f3ad7db0aa9475e86d0",
          "name": "https://theanimallawfirm.com/",
          "description": "",
          "modified": "2023-12-22T21:04:18.086000",
          "created": "2023-12-02T03:06:34.870000",
          "tags": [
            "spyware",
            "injector",
            "jul jan",
            "tag count",
            "tue jan",
            "threat report",
            "ip summary",
            "url summary",
            "summary",
            "sample",
            "n64xtx0vpihxzc",
            "qpyrn6pd",
            "detection list",
            "blacklist http",
            "cisco umbrella",
            "site",
            "site top",
            "alexa top",
            "safe site",
            "heur",
            "html",
            "site safe",
            "million",
            "malware",
            "artemis",
            "win64",
            "downldr",
            "presenoker",
            "fakealert",
            "riskware",
            "qakbot",
            "applicunwnt",
            "opencandy",
            "fusioncore",
            "cleaner",
            "wacatac",
            "exploit",
            "iframe",
            "dbatloader",
            "raccoon",
            "service",
            "agent",
            "alexa",
            "xtrat",
            "team",
            "phish",
            "deepscan",
            "crack",
            "suspicious",
            "phishing",
            "xrat",
            "cve201711882",
            "d26a",
            "maltiverse",
            "trojanspy",
            "united",
            "cyber threat",
            "engineering",
            "malicious site",
            "bank",
            "phishing site",
            "covid19",
            "facebook",
            "download",
            "emotet",
            "stealer",
            "suppobox",
            "downloader",
            "unsafe",
            "malicious",
            "smsspy",
            "cobalt strike",
            "generic",
            "dropper",
            "formbook",
            "unruy",
            "virut",
            "azorult",
            "zbot",
            "matsnu",
            "cutwail",
            "bradesco",
            "outbreak",
            "qbot",
            "bankerx",
            "nimda",
            "swrort",
            "adwind",
            "trojanx",
            "squirrelwaffle",
            "pony",
            "binder",
            "ramnit",
            "virustotal",
            "zeus",
            "nymaim",
            "simda",
            "runescape",
            "dnspionage",
            "redirector",
            "killav",
            "dcrat",
            "alien",
            "astaroth",
            "filerepmalware",
            "control server",
            "asyncrat",
            "redline stealer",
            "daum",
            "name verdict"
          ],
          "references": [],
          "public": 1,
          "adversary": "",
          "targeted_countries": [],
          "malware_families": [
            {
              "id": "D26A",
              "display_name": "D26A",
              "target": null
            },
            {
              "id": "Maltiverse",
              "display_name": "Maltiverse",
              "target": null
            },
            {
              "id": "TrojanSpy",
              "display_name": "TrojanSpy",
              "target": null
            }
          ],
          "attack_ids": [
            {
              "id": "T1547",
              "name": "Boot or Logon Autostart Execution",
              "display_name": "T1547 - Boot or Logon Autostart Execution"
            },
            {
              "id": "T1056",
              "name": "Input Capture",
              "display_name": "T1056 - Input Capture"
            },
            {
              "id": "T1027",
              "name": "Obfuscated Files or Information",
              "display_name": "T1027 - Obfuscated Files or Information"
            }
          ],
          "industries": [],
          "TLP": "green",
          "cloned_from": "655e7e82c65d8e9106e6a227",
          "export_count": 45,
          "upvotes_count": 0,
          "downvotes_count": 0,
          "votes_count": 0,
          "locked": false,
          "pulse_source": "web",
          "validator_count": 0,
          "comment_count": 0,
          "follower_count": 0,
          "vote": 0,
          "author": {
            "username": "scoreblue",
            "id": "254100",
            "avatar_url": "/otxapi/users/avatar_image/media/avatars/user_254100/resized/80/avatar_3b9c358f36.png",
            "is_subscribed": false,
            "is_following": false
          },
          "indicator_type_counts": {
            "FileHash-MD5": 592,
            "FileHash-SHA1": 320,
            "FileHash-SHA256": 1159,
            "URL": 1257,
            "domain": 1219,
            "hostname": 403,
            "CVE": 15
          },
          "indicator_count": 4965,
          "is_author": false,
          "is_subscribing": null,
          "subscriber_count": 228,
          "modified_text": "891 days ago ",
          "is_modified": true,
          "groups": [],
          "in_group": false,
          "threat_hunter_scannable": true,
          "threat_hunter_has_agents": 1,
          "related_indicator_type": "URL",
          "related_indicator_is_active": 1
        }
      ],
      "references": [],
      "related": {
        "alienvault": {
          "adversary": [],
          "malware_families": [],
          "industries": [],
          "unique_indicators": 0
        },
        "other": {
          "adversary": [],
          "malware_families": [
            "D26a",
            "Trojanspy",
            "Maltiverse"
          ],
          "industries": [],
          "unique_indicators": 5059
        }
      }
    },
    "false_positive": [],
    "alexa": "http://www.alexa.com/siteinfo/cryptocompete.com",
    "whois": "http://whois.domaintools.com/cryptocompete.com",
    "domain": "cryptocompete.com",
    "hostname": "Unavailable"
  },
  "geo": {},
  "geo_ipapicom": {},
  "pulse_count": 3,
  "pulses": [
    {
      "id": "655e7e82c65d8e9106e6a227",
      "name": "https://theanimallawfirm.com/",
      "description": "",
      "modified": "2023-12-22T21:04:18.086000",
      "created": "2023-11-22T22:19:46.485000",
      "tags": [
        "spyware",
        "injector",
        "jul jan",
        "tag count",
        "tue jan",
        "threat report",
        "ip summary",
        "url summary",
        "summary",
        "sample",
        "n64xtx0vpihxzc",
        "qpyrn6pd",
        "detection list",
        "blacklist http",
        "cisco umbrella",
        "site",
        "site top",
        "alexa top",
        "safe site",
        "heur",
        "html",
        "site safe",
        "million",
        "malware",
        "artemis",
        "win64",
        "downldr",
        "presenoker",
        "fakealert",
        "riskware",
        "qakbot",
        "applicunwnt",
        "opencandy",
        "fusioncore",
        "cleaner",
        "wacatac",
        "exploit",
        "iframe",
        "dbatloader",
        "raccoon",
        "service",
        "agent",
        "alexa",
        "xtrat",
        "team",
        "phish",
        "deepscan",
        "crack",
        "suspicious",
        "phishing",
        "xrat",
        "cve201711882",
        "d26a",
        "maltiverse",
        "trojanspy",
        "united",
        "cyber threat",
        "engineering",
        "malicious site",
        "bank",
        "phishing site",
        "covid19",
        "facebook",
        "download",
        "emotet",
        "stealer",
        "suppobox",
        "downloader",
        "unsafe",
        "malicious",
        "smsspy",
        "cobalt strike",
        "generic",
        "dropper",
        "formbook",
        "unruy",
        "virut",
        "azorult",
        "zbot",
        "matsnu",
        "cutwail",
        "bradesco",
        "outbreak",
        "qbot",
        "bankerx",
        "nimda",
        "swrort",
        "adwind",
        "trojanx",
        "squirrelwaffle",
        "pony",
        "binder",
        "ramnit",
        "virustotal",
        "zeus",
        "nymaim",
        "simda",
        "runescape",
        "dnspionage",
        "redirector",
        "killav",
        "dcrat",
        "alien",
        "astaroth",
        "filerepmalware",
        "control server",
        "asyncrat",
        "redline stealer",
        "daum",
        "name verdict"
      ],
      "references": [],
      "public": 1,
      "adversary": "",
      "targeted_countries": [],
      "malware_families": [
        {
          "id": "D26A",
          "display_name": "D26A",
          "target": null
        },
        {
          "id": "Maltiverse",
          "display_name": "Maltiverse",
          "target": null
        },
        {
          "id": "TrojanSpy",
          "display_name": "TrojanSpy",
          "target": null
        }
      ],
      "attack_ids": [
        {
          "id": "T1547",
          "name": "Boot or Logon Autostart Execution",
          "display_name": "T1547 - Boot or Logon Autostart Execution"
        },
        {
          "id": "T1056",
          "name": "Input Capture",
          "display_name": "T1056 - Input Capture"
        },
        {
          "id": "T1027",
          "name": "Obfuscated Files or Information",
          "display_name": "T1027 - Obfuscated Files or Information"
        }
      ],
      "industries": [],
      "TLP": "green",
      "cloned_from": null,
      "export_count": 62,
      "upvotes_count": 0,
      "downvotes_count": 0,
      "votes_count": 0,
      "locked": false,
      "pulse_source": "web",
      "validator_count": 0,
      "comment_count": 0,
      "follower_count": 0,
      "vote": 0,
      "author": {
        "username": "OctoSeek",
        "id": "243548",
        "avatar_url": "/otxapi/users/avatar_image/media/avatars/user_243548/resized/80/avatar_3b9c358f36.png",
        "is_subscribed": false,
        "is_following": false
      },
      "indicator_type_counts": {
        "FileHash-MD5": 592,
        "FileHash-SHA1": 320,
        "FileHash-SHA256": 1159,
        "URL": 1257,
        "domain": 1219,
        "hostname": 403,
        "CVE": 15
      },
      "indicator_count": 4965,
      "is_author": false,
      "is_subscribing": null,
      "subscriber_count": 222,
      "modified_text": "891 days ago ",
      "is_modified": true,
      "groups": [],
      "in_group": false,
      "threat_hunter_scannable": true,
      "threat_hunter_has_agents": 1,
      "related_indicator_type": "URL",
      "related_indicator_is_active": 1
    },
    {
      "id": "655e7ed63ab06f2006c90b1c",
      "name": "DNSpionage, ",
      "description": "",
      "modified": "2023-12-22T21:04:18.086000",
      "created": "2023-11-22T22:21:10.853000",
      "tags": [
        "spyware",
        "injector",
        "jul jan",
        "tag count",
        "tue jan",
        "threat report",
        "ip summary",
        "url summary",
        "summary",
        "sample",
        "n64xtx0vpihxzc",
        "qpyrn6pd",
        "detection list",
        "blacklist http",
        "cisco umbrella",
        "site",
        "site top",
        "alexa top",
        "safe site",
        "heur",
        "html",
        "site safe",
        "million",
        "malware",
        "artemis",
        "win64",
        "downldr",
        "presenoker",
        "fakealert",
        "riskware",
        "qakbot",
        "applicunwnt",
        "opencandy",
        "fusioncore",
        "cleaner",
        "wacatac",
        "exploit",
        "iframe",
        "dbatloader",
        "raccoon",
        "service",
        "agent",
        "alexa",
        "xtrat",
        "team",
        "phish",
        "deepscan",
        "crack",
        "suspicious",
        "phishing",
        "xrat",
        "cve201711882",
        "d26a",
        "maltiverse",
        "trojanspy",
        "united",
        "cyber threat",
        "engineering",
        "malicious site",
        "bank",
        "phishing site",
        "covid19",
        "facebook",
        "download",
        "emotet",
        "stealer",
        "suppobox",
        "downloader",
        "unsafe",
        "malicious",
        "smsspy",
        "cobalt strike",
        "generic",
        "dropper",
        "formbook",
        "unruy",
        "virut",
        "azorult",
        "zbot",
        "matsnu",
        "cutwail",
        "bradesco",
        "outbreak",
        "qbot",
        "bankerx",
        "nimda",
        "swrort",
        "adwind",
        "trojanx",
        "squirrelwaffle",
        "pony",
        "binder",
        "ramnit",
        "virustotal",
        "zeus",
        "nymaim",
        "simda",
        "runescape",
        "dnspionage",
        "redirector",
        "killav",
        "dcrat",
        "alien",
        "astaroth",
        "filerepmalware",
        "control server",
        "asyncrat",
        "redline stealer",
        "daum",
        "name verdict"
      ],
      "references": [],
      "public": 1,
      "adversary": "",
      "targeted_countries": [],
      "malware_families": [
        {
          "id": "D26A",
          "display_name": "D26A",
          "target": null
        },
        {
          "id": "Maltiverse",
          "display_name": "Maltiverse",
          "target": null
        },
        {
          "id": "TrojanSpy",
          "display_name": "TrojanSpy",
          "target": null
        }
      ],
      "attack_ids": [
        {
          "id": "T1547",
          "name": "Boot or Logon Autostart Execution",
          "display_name": "T1547 - Boot or Logon Autostart Execution"
        },
        {
          "id": "T1056",
          "name": "Input Capture",
          "display_name": "T1056 - Input Capture"
        },
        {
          "id": "T1027",
          "name": "Obfuscated Files or Information",
          "display_name": "T1027 - Obfuscated Files or Information"
        }
      ],
      "industries": [],
      "TLP": "green",
      "cloned_from": "655e7e82c65d8e9106e6a227",
      "export_count": 64,
      "upvotes_count": 0,
      "downvotes_count": 0,
      "votes_count": 0,
      "locked": false,
      "pulse_source": "web",
      "validator_count": 0,
      "comment_count": 0,
      "follower_count": 0,
      "vote": 0,
      "author": {
        "username": "OctoSeek",
        "id": "243548",
        "avatar_url": "/otxapi/users/avatar_image/media/avatars/user_243548/resized/80/avatar_3b9c358f36.png",
        "is_subscribed": false,
        "is_following": false
      },
      "indicator_type_counts": {
        "FileHash-MD5": 592,
        "FileHash-SHA1": 320,
        "FileHash-SHA256": 1159,
        "URL": 1257,
        "domain": 1219,
        "hostname": 403,
        "CVE": 15
      },
      "indicator_count": 4965,
      "is_author": false,
      "is_subscribing": null,
      "subscriber_count": 222,
      "modified_text": "891 days ago ",
      "is_modified": true,
      "groups": [],
      "in_group": false,
      "threat_hunter_scannable": true,
      "threat_hunter_has_agents": 1,
      "related_indicator_type": "URL",
      "related_indicator_is_active": 1
    },
    {
      "id": "656a9f3ad7db0aa9475e86d0",
      "name": "https://theanimallawfirm.com/",
      "description": "",
      "modified": "2023-12-22T21:04:18.086000",
      "created": "2023-12-02T03:06:34.870000",
      "tags": [
        "spyware",
        "injector",
        "jul jan",
        "tag count",
        "tue jan",
        "threat report",
        "ip summary",
        "url summary",
        "summary",
        "sample",
        "n64xtx0vpihxzc",
        "qpyrn6pd",
        "detection list",
        "blacklist http",
        "cisco umbrella",
        "site",
        "site top",
        "alexa top",
        "safe site",
        "heur",
        "html",
        "site safe",
        "million",
        "malware",
        "artemis",
        "win64",
        "downldr",
        "presenoker",
        "fakealert",
        "riskware",
        "qakbot",
        "applicunwnt",
        "opencandy",
        "fusioncore",
        "cleaner",
        "wacatac",
        "exploit",
        "iframe",
        "dbatloader",
        "raccoon",
        "service",
        "agent",
        "alexa",
        "xtrat",
        "team",
        "phish",
        "deepscan",
        "crack",
        "suspicious",
        "phishing",
        "xrat",
        "cve201711882",
        "d26a",
        "maltiverse",
        "trojanspy",
        "united",
        "cyber threat",
        "engineering",
        "malicious site",
        "bank",
        "phishing site",
        "covid19",
        "facebook",
        "download",
        "emotet",
        "stealer",
        "suppobox",
        "downloader",
        "unsafe",
        "malicious",
        "smsspy",
        "cobalt strike",
        "generic",
        "dropper",
        "formbook",
        "unruy",
        "virut",
        "azorult",
        "zbot",
        "matsnu",
        "cutwail",
        "bradesco",
        "outbreak",
        "qbot",
        "bankerx",
        "nimda",
        "swrort",
        "adwind",
        "trojanx",
        "squirrelwaffle",
        "pony",
        "binder",
        "ramnit",
        "virustotal",
        "zeus",
        "nymaim",
        "simda",
        "runescape",
        "dnspionage",
        "redirector",
        "killav",
        "dcrat",
        "alien",
        "astaroth",
        "filerepmalware",
        "control server",
        "asyncrat",
        "redline stealer",
        "daum",
        "name verdict"
      ],
      "references": [],
      "public": 1,
      "adversary": "",
      "targeted_countries": [],
      "malware_families": [
        {
          "id": "D26A",
          "display_name": "D26A",
          "target": null
        },
        {
          "id": "Maltiverse",
          "display_name": "Maltiverse",
          "target": null
        },
        {
          "id": "TrojanSpy",
          "display_name": "TrojanSpy",
          "target": null
        }
      ],
      "attack_ids": [
        {
          "id": "T1547",
          "name": "Boot or Logon Autostart Execution",
          "display_name": "T1547 - Boot or Logon Autostart Execution"
        },
        {
          "id": "T1056",
          "name": "Input Capture",
          "display_name": "T1056 - Input Capture"
        },
        {
          "id": "T1027",
          "name": "Obfuscated Files or Information",
          "display_name": "T1027 - Obfuscated Files or Information"
        }
      ],
      "industries": [],
      "TLP": "green",
      "cloned_from": "655e7e82c65d8e9106e6a227",
      "export_count": 45,
      "upvotes_count": 0,
      "downvotes_count": 0,
      "votes_count": 0,
      "locked": false,
      "pulse_source": "web",
      "validator_count": 0,
      "comment_count": 0,
      "follower_count": 0,
      "vote": 0,
      "author": {
        "username": "scoreblue",
        "id": "254100",
        "avatar_url": "/otxapi/users/avatar_image/media/avatars/user_254100/resized/80/avatar_3b9c358f36.png",
        "is_subscribed": false,
        "is_following": false
      },
      "indicator_type_counts": {
        "FileHash-MD5": 592,
        "FileHash-SHA1": 320,
        "FileHash-SHA256": 1159,
        "URL": 1257,
        "domain": 1219,
        "hostname": 403,
        "CVE": 15
      },
      "indicator_count": 4965,
      "is_author": false,
      "is_subscribing": null,
      "subscriber_count": 228,
      "modified_text": "891 days ago ",
      "is_modified": true,
      "groups": [],
      "in_group": false,
      "threat_hunter_scannable": true,
      "threat_hunter_has_agents": 1,
      "related_indicator_type": "URL",
      "related_indicator_is_active": 1
    }
  ],
  "error": null,
  "vt": {
    "error": "VirusTotal rate limit reached. Try again shortly.",
    "indicator": "https://cryptocompete.com",
    "type": "URL"
  },
  "abuseipdb": null,
  "urlhaus": {
    "indicator": "https://cryptocompete.com",
    "type": "URL",
    "found": false,
    "verdict": "clean",
    "error": null
  },
  "from_cache": true,
  "_cached_at": 1780309038.2672524
}