{
  "type": "URL",
  "indicator": "https://prebid.a-mo.net/favicon.ico",
  "general": {
    "sections": [
      "general",
      "url_list",
      "http_scans",
      "screenshot"
    ],
    "indicator": "https://prebid.a-mo.net/favicon.ico",
    "type": "url",
    "type_title": "URL",
    "validation": [
      {
        "source": "akamai",
        "message": "Akamai rank: #1047",
        "name": "Akamai Popular Domain"
      }
    ],
    "base_indicator": {
      "id": 4073981703,
      "indicator": "https://prebid.a-mo.net/favicon.ico",
      "type": "URL",
      "title": "",
      "description": "",
      "content": "",
      "access_type": "public",
      "access_reason": ""
    },
    "pulse_info": {
      "count": 1,
      "pulses": [
        {
          "id": "68435ff63dc5b9f2bcb15849",
          "name": "https://prebid.a-mo.net/a/c - unknown | malicious content delivery via parked domains | comes and goes",
          "description": "Unknown \n#netify #parked #parkingcrews # \nAdaptMX\nAmazon-02",
          "modified": "2025-07-06T21:04:43.991000",
          "created": "2025-06-06T21:39:02.641000",
          "tags": [
            "v3 serial",
            "number",
            "issuer",
            "cus cnamazon",
            "m02 oamazon",
            "validity",
            "subject public",
            "key info",
            "key algorithm",
            "key identifier",
            "x509v3 subject",
            "algorithm",
            "cus oamazon",
            "cnamazon rsa",
            "m03 validity",
            "thumbprint",
            "registrant",
            "record type",
            "ttl value",
            "ip address",
            "as autonomous",
            "system",
            "amazon02",
            "amazonaes",
            "value",
            "asn16509",
            "united",
            "frankfurt",
            "main",
            "germany",
            "screenshot",
            "cisco umbrella",
            "rank",
            "cisco",
            "umbrella rank",
            "resource path",
            "size",
            "type mimetype",
            "primary request",
            "b document",
            "b image",
            "general full",
            "url https",
            "protocol h2",
            "security tls",
            "france",
            "asn60558",
            "reverse dns",
            "software",
            "resource",
            "http",
            "phoenix nap",
            "verified",
            "ecdsa",
            "europeparis",
            "aes128gcm",
            "linux x8664",
            "khtml",
            "gecko",
            "encrypt",
            "amazon rsa",
            "november",
            "size xfer"
          ],
          "references": [],
          "public": 1,
          "adversary": "",
          "targeted_countries": [],
          "malware_families": [],
          "attack_ids": [
            {
              "id": "T1140",
              "name": "Deobfuscate/Decode Files or Information",
              "display_name": "T1140 - Deobfuscate/Decode Files or Information"
            }
          ],
          "industries": [],
          "TLP": "green",
          "cloned_from": null,
          "export_count": 22,
          "upvotes_count": 0,
          "downvotes_count": 0,
          "votes_count": 0,
          "locked": false,
          "pulse_source": "web",
          "validator_count": 0,
          "comment_count": 0,
          "follower_count": 0,
          "vote": 0,
          "author": {
            "username": "Q.Vashti",
            "id": "337942",
            "avatar_url": "https://otx.alienvault.com/assets/images/default-avatar.png",
            "is_subscribed": false,
            "is_following": false
          },
          "indicator_type_counts": {
            "domain": 6,
            "FileHash-MD5": 46,
            "FileHash-SHA1": 40,
            "FileHash-SHA256": 1228,
            "URL": 32,
            "hostname": 38,
            "CIDR": 3
          },
          "indicator_count": 1393,
          "is_author": false,
          "is_subscribing": null,
          "subscriber_count": 141,
          "modified_text": "331 days ago ",
          "is_modified": true,
          "groups": [],
          "in_group": false,
          "threat_hunter_scannable": true,
          "threat_hunter_has_agents": 1,
          "related_indicator_type": "URL",
          "related_indicator_is_active": 1
        }
      ],
      "references": [],
      "related": {
        "alienvault": {
          "adversary": [],
          "malware_families": [],
          "industries": [],
          "unique_indicators": 0
        },
        "other": {
          "adversary": [],
          "malware_families": [],
          "industries": [],
          "unique_indicators": 1568
        }
      }
    },
    "false_positive": [],
    "alexa": "http://www.alexa.com/siteinfo/a-mo.net",
    "whois": "http://whois.domaintools.com/a-mo.net",
    "domain": "a-mo.net",
    "hostname": "prebid.a-mo.net"
  },
  "geo": {},
  "geo_ipapicom": {},
  "pulse_count": 1,
  "pulses": [
    {
      "id": "68435ff63dc5b9f2bcb15849",
      "name": "https://prebid.a-mo.net/a/c - unknown | malicious content delivery via parked domains | comes and goes",
      "description": "Unknown \n#netify #parked #parkingcrews # \nAdaptMX\nAmazon-02",
      "modified": "2025-07-06T21:04:43.991000",
      "created": "2025-06-06T21:39:02.641000",
      "tags": [
        "v3 serial",
        "number",
        "issuer",
        "cus cnamazon",
        "m02 oamazon",
        "validity",
        "subject public",
        "key info",
        "key algorithm",
        "key identifier",
        "x509v3 subject",
        "algorithm",
        "cus oamazon",
        "cnamazon rsa",
        "m03 validity",
        "thumbprint",
        "registrant",
        "record type",
        "ttl value",
        "ip address",
        "as autonomous",
        "system",
        "amazon02",
        "amazonaes",
        "value",
        "asn16509",
        "united",
        "frankfurt",
        "main",
        "germany",
        "screenshot",
        "cisco umbrella",
        "rank",
        "cisco",
        "umbrella rank",
        "resource path",
        "size",
        "type mimetype",
        "primary request",
        "b document",
        "b image",
        "general full",
        "url https",
        "protocol h2",
        "security tls",
        "france",
        "asn60558",
        "reverse dns",
        "software",
        "resource",
        "http",
        "phoenix nap",
        "verified",
        "ecdsa",
        "europeparis",
        "aes128gcm",
        "linux x8664",
        "khtml",
        "gecko",
        "encrypt",
        "amazon rsa",
        "november",
        "size xfer"
      ],
      "references": [],
      "public": 1,
      "adversary": "",
      "targeted_countries": [],
      "malware_families": [],
      "attack_ids": [
        {
          "id": "T1140",
          "name": "Deobfuscate/Decode Files or Information",
          "display_name": "T1140 - Deobfuscate/Decode Files or Information"
        }
      ],
      "industries": [],
      "TLP": "green",
      "cloned_from": null,
      "export_count": 22,
      "upvotes_count": 0,
      "downvotes_count": 0,
      "votes_count": 0,
      "locked": false,
      "pulse_source": "web",
      "validator_count": 0,
      "comment_count": 0,
      "follower_count": 0,
      "vote": 0,
      "author": {
        "username": "Q.Vashti",
        "id": "337942",
        "avatar_url": "https://otx.alienvault.com/assets/images/default-avatar.png",
        "is_subscribed": false,
        "is_following": false
      },
      "indicator_type_counts": {
        "domain": 6,
        "FileHash-MD5": 46,
        "FileHash-SHA1": 40,
        "FileHash-SHA256": 1228,
        "URL": 32,
        "hostname": 38,
        "CIDR": 3
      },
      "indicator_count": 1393,
      "is_author": false,
      "is_subscribing": null,
      "subscriber_count": 141,
      "modified_text": "331 days ago ",
      "is_modified": true,
      "groups": [],
      "in_group": false,
      "threat_hunter_scannable": true,
      "threat_hunter_has_agents": 1,
      "related_indicator_type": "URL",
      "related_indicator_is_active": 1
    }
  ],
  "error": null,
  "vt": {
    "error": "VirusTotal rate limit reached. Try again shortly.",
    "indicator": "https://prebid.a-mo.net/favicon.ico",
    "type": "URL"
  },
  "abuseipdb": null,
  "urlhaus": {
    "indicator": "https://prebid.a-mo.net/favicon.ico",
    "type": "URL",
    "found": false,
    "verdict": "clean",
    "error": null
  },
  "from_cache": true,
  "_cached_at": 1780491323.4055135
}