{
  "type": "URL",
  "indicator": "https://www.husw.net/",
  "general": {
    "sections": [
      "general",
      "url_list",
      "http_scans",
      "screenshot"
    ],
    "indicator": "https://www.husw.net/",
    "type": "url",
    "type_title": "URL",
    "validation": [],
    "base_indicator": {
      "id": 4135002391,
      "indicator": "https://www.husw.net/",
      "type": "URL",
      "title": "",
      "description": "",
      "content": "",
      "access_type": "public",
      "access_reason": ""
    },
    "pulse_info": {
      "count": 1,
      "pulses": [
        {
          "id": "68d5f0ceef9edb23a8f2ffd0",
          "name": "Upatre hopefully no longer connected to National corporation & clients",
          "description": "Trojandownloader:Win32/Upatre: Affecting a National corporation with many thousands of clients.",
          "modified": "2025-10-25T18:00:56.070000",
          "created": "2025-09-26T01:47:58.344000",
          "tags": [
            "passive dns",
            "urls",
            "url add",
            "pulse pulses",
            "http",
            "hostname",
            "files domain",
            "files related",
            "pulses otx",
            "pulses",
            "ip address",
            "related nids",
            "files location",
            "united",
            "flag united",
            "ipv4 add",
            "pulse submit",
            "url analysis",
            "files",
            "reverse dns",
            "location united",
            "america flag",
            "status",
            "name servers",
            "creation date",
            "search",
            "expiration date",
            "hostname add",
            "date",
            "unknown ns",
            "domain",
            "registrar",
            "markmonitor",
            "showing",
            "present feb",
            "present jul",
            "aaaa",
            "domain related",
            "pulses none",
            "related tags",
            "dnssec",
            "domain add",
            "win32upatre sep",
            "entries",
            "next associated",
            "title",
            "body",
            "msie",
            "present aug",
            "backdoor",
            "mtb sep",
            "trojandropper",
            "asn as16509",
            "dynamicloader",
            "yara rule",
            "high",
            "medium",
            "yara detections",
            "upatre",
            "binary file",
            "dynamic",
            "write",
            "copy",
            "canada unknown",
            "location canada",
            "asn as852",
            "tags none",
            "welcome",
            "td tr",
            "north east",
            "online network",
            "dawson creek",
            "neonet title",
            "surf td",
            "neonet td",
            "service td",
            "contact",
            "click",
            "june",
            "show",
            "default",
            "present sep",
            "ip related",
            "expiration",
            "url http"
          ],
          "references": [],
          "public": 1,
          "adversary": "",
          "targeted_countries": [],
          "malware_families": [],
          "attack_ids": [
            {
              "id": "T1045",
              "name": "Software Packing",
              "display_name": "T1045 - Software Packing"
            }
          ],
          "industries": [],
          "TLP": "green",
          "cloned_from": null,
          "export_count": 2,
          "upvotes_count": 0,
          "downvotes_count": 0,
          "votes_count": 0,
          "locked": false,
          "pulse_source": "web",
          "validator_count": 0,
          "comment_count": 0,
          "follower_count": 0,
          "vote": 0,
          "author": {
            "username": "Q.Vashti",
            "id": "337942",
            "avatar_url": "https://otx.alienvault.com/assets/images/default-avatar.png",
            "is_subscribed": false,
            "is_following": false
          },
          "indicator_type_counts": {
            "URL": 679,
            "domain": 376,
            "hostname": 311,
            "FileHash-SHA256": 188,
            "email": 5,
            "FileHash-MD5": 113,
            "FileHash-SHA1": 110
          },
          "indicator_count": 1782,
          "is_author": false,
          "is_subscribing": null,
          "subscriber_count": 137,
          "modified_text": "176 days ago ",
          "is_modified": true,
          "groups": [],
          "in_group": false,
          "threat_hunter_scannable": true,
          "threat_hunter_has_agents": 1,
          "related_indicator_type": "URL",
          "related_indicator_is_active": 1
        }
      ],
      "references": [],
      "related": {
        "alienvault": {
          "adversary": [],
          "malware_families": [],
          "industries": [],
          "unique_indicators": 0
        },
        "other": {
          "adversary": [],
          "malware_families": [],
          "industries": [],
          "unique_indicators": 1801
        }
      }
    },
    "false_positive": [],
    "alexa": "http://www.alexa.com/siteinfo/husw.net",
    "whois": "http://whois.domaintools.com/husw.net",
    "domain": "husw.net",
    "hostname": "www.husw.net"
  },
  "geo": {},
  "geo_ipapicom": {},
  "pulse_count": 1,
  "pulses": [
    {
      "id": "68d5f0ceef9edb23a8f2ffd0",
      "name": "Upatre hopefully no longer connected to National corporation & clients",
      "description": "Trojandownloader:Win32/Upatre: Affecting a National corporation with many thousands of clients.",
      "modified": "2025-10-25T18:00:56.070000",
      "created": "2025-09-26T01:47:58.344000",
      "tags": [
        "passive dns",
        "urls",
        "url add",
        "pulse pulses",
        "http",
        "hostname",
        "files domain",
        "files related",
        "pulses otx",
        "pulses",
        "ip address",
        "related nids",
        "files location",
        "united",
        "flag united",
        "ipv4 add",
        "pulse submit",
        "url analysis",
        "files",
        "reverse dns",
        "location united",
        "america flag",
        "status",
        "name servers",
        "creation date",
        "search",
        "expiration date",
        "hostname add",
        "date",
        "unknown ns",
        "domain",
        "registrar",
        "markmonitor",
        "showing",
        "present feb",
        "present jul",
        "aaaa",
        "domain related",
        "pulses none",
        "related tags",
        "dnssec",
        "domain add",
        "win32upatre sep",
        "entries",
        "next associated",
        "title",
        "body",
        "msie",
        "present aug",
        "backdoor",
        "mtb sep",
        "trojandropper",
        "asn as16509",
        "dynamicloader",
        "yara rule",
        "high",
        "medium",
        "yara detections",
        "upatre",
        "binary file",
        "dynamic",
        "write",
        "copy",
        "canada unknown",
        "location canada",
        "asn as852",
        "tags none",
        "welcome",
        "td tr",
        "north east",
        "online network",
        "dawson creek",
        "neonet title",
        "surf td",
        "neonet td",
        "service td",
        "contact",
        "click",
        "june",
        "show",
        "default",
        "present sep",
        "ip related",
        "expiration",
        "url http"
      ],
      "references": [],
      "public": 1,
      "adversary": "",
      "targeted_countries": [],
      "malware_families": [],
      "attack_ids": [
        {
          "id": "T1045",
          "name": "Software Packing",
          "display_name": "T1045 - Software Packing"
        }
      ],
      "industries": [],
      "TLP": "green",
      "cloned_from": null,
      "export_count": 2,
      "upvotes_count": 0,
      "downvotes_count": 0,
      "votes_count": 0,
      "locked": false,
      "pulse_source": "web",
      "validator_count": 0,
      "comment_count": 0,
      "follower_count": 0,
      "vote": 0,
      "author": {
        "username": "Q.Vashti",
        "id": "337942",
        "avatar_url": "https://otx.alienvault.com/assets/images/default-avatar.png",
        "is_subscribed": false,
        "is_following": false
      },
      "indicator_type_counts": {
        "URL": 679,
        "domain": 376,
        "hostname": 311,
        "FileHash-SHA256": 188,
        "email": 5,
        "FileHash-MD5": 113,
        "FileHash-SHA1": 110
      },
      "indicator_count": 1782,
      "is_author": false,
      "is_subscribing": null,
      "subscriber_count": 137,
      "modified_text": "176 days ago ",
      "is_modified": true,
      "groups": [],
      "in_group": false,
      "threat_hunter_scannable": true,
      "threat_hunter_has_agents": 1,
      "related_indicator_type": "URL",
      "related_indicator_is_active": 1
    }
  ],
  "error": null,
  "vt": {
    "error": "VirusTotal rate limit reached. Try again shortly.",
    "indicator": "https://www.husw.net/",
    "type": "URL"
  },
  "abuseipdb": null,
  "urlhaus": {
    "indicator": "https://www.husw.net/",
    "type": "URL",
    "found": false,
    "verdict": "clean",
    "error": null
  },
  "from_cache": true,
  "_cached_at": 1776643874.3360794
}