{
  "type": "Domain",
  "indicator": "rammutual.com",
  "general": {
    "sections": [
      "general",
      "geo",
      "url_list",
      "passive_dns",
      "malware",
      "whois",
      "http_scans"
    ],
    "whois": "http://whois.domaintools.com/rammutual.com",
    "alexa": "http://www.alexa.com/siteinfo/rammutual.com",
    "indicator": "rammutual.com",
    "type": "domain",
    "type_title": "Domain",
    "validation": [],
    "base_indicator": {
      "id": 3728671815,
      "indicator": "rammutual.com",
      "type": "domain",
      "title": "",
      "description": "",
      "content": "",
      "access_type": "public",
      "access_reason": ""
    },
    "pulse_info": {
      "count": 1,
      "pulses": [
        {
          "id": "64c8a3cf44bafd49321c7560",
          "name": "Lockbit 3.0 ransomware",
          "description": "LockBit 3.0 is a ransomware malware that was first seen in June 2022 and has since become a significant cybersecurity threat to organizations worldwide. It uses a hybrid encryption approach with AES and RSA encryption algorithms and is known for its complexity and evasiveness. LockBit 3.0 is being used by multiple ransomware threat actor groups, including the LockBit gang, which has been behind numerous attacks and is now accepting Zcash for payments.",
          "modified": "2023-08-31T06:03:08.740000",
          "created": "2023-08-01T06:18:55.716000",
          "tags": [
            "sha256",
            "sha1"
          ],
          "references": [],
          "public": 1,
          "adversary": "",
          "targeted_countries": [],
          "malware_families": [
            {
              "id": "Ransom:Win32/LockBit",
              "display_name": "Ransom:Win32/LockBit",
              "target": "/malware/Ransom:Win32/LockBit"
            }
          ],
          "attack_ids": [],
          "industries": [],
          "TLP": "white",
          "cloned_from": null,
          "export_count": 65,
          "upvotes_count": 0,
          "downvotes_count": 0,
          "votes_count": 0,
          "locked": false,
          "pulse_source": "web",
          "validator_count": 0,
          "comment_count": 0,
          "follower_count": 0,
          "vote": 0,
          "author": {
            "username": "akhanafeer",
            "id": "195327",
            "avatar_url": "https://otx.alienvault.com/assets/images/default-avatar.png",
            "is_subscribed": false,
            "is_following": false
          },
          "indicator_type_counts": {
            "URL": 4,
            "FileHash-MD5": 22,
            "FileHash-SHA1": 14,
            "FileHash-SHA256": 19,
            "domain": 159,
            "hostname": 4
          },
          "indicator_count": 222,
          "is_author": false,
          "is_subscribing": null,
          "subscriber_count": 73,
          "modified_text": "1006 days ago ",
          "is_modified": true,
          "groups": [],
          "in_group": false,
          "threat_hunter_scannable": true,
          "threat_hunter_has_agents": 1,
          "related_indicator_type": "domain",
          "related_indicator_is_active": 1
        }
      ],
      "references": [],
      "related": {
        "alienvault": {
          "adversary": [],
          "malware_families": [],
          "industries": []
        },
        "other": {
          "adversary": [],
          "malware_families": [
            "Ransom:win32/lockbit"
          ],
          "industries": []
        }
      }
    },
    "false_positive": []
  },
  "geo": {},
  "geo_ipapicom": {},
  "pulse_count": 1,
  "pulses": [
    {
      "id": "64c8a3cf44bafd49321c7560",
      "name": "Lockbit 3.0 ransomware",
      "description": "LockBit 3.0 is a ransomware malware that was first seen in June 2022 and has since become a significant cybersecurity threat to organizations worldwide. It uses a hybrid encryption approach with AES and RSA encryption algorithms and is known for its complexity and evasiveness. LockBit 3.0 is being used by multiple ransomware threat actor groups, including the LockBit gang, which has been behind numerous attacks and is now accepting Zcash for payments.",
      "modified": "2023-08-31T06:03:08.740000",
      "created": "2023-08-01T06:18:55.716000",
      "tags": [
        "sha256",
        "sha1"
      ],
      "references": [],
      "public": 1,
      "adversary": "",
      "targeted_countries": [],
      "malware_families": [
        {
          "id": "Ransom:Win32/LockBit",
          "display_name": "Ransom:Win32/LockBit",
          "target": "/malware/Ransom:Win32/LockBit"
        }
      ],
      "attack_ids": [],
      "industries": [],
      "TLP": "white",
      "cloned_from": null,
      "export_count": 65,
      "upvotes_count": 0,
      "downvotes_count": 0,
      "votes_count": 0,
      "locked": false,
      "pulse_source": "web",
      "validator_count": 0,
      "comment_count": 0,
      "follower_count": 0,
      "vote": 0,
      "author": {
        "username": "akhanafeer",
        "id": "195327",
        "avatar_url": "https://otx.alienvault.com/assets/images/default-avatar.png",
        "is_subscribed": false,
        "is_following": false
      },
      "indicator_type_counts": {
        "URL": 4,
        "FileHash-MD5": 22,
        "FileHash-SHA1": 14,
        "FileHash-SHA256": 19,
        "domain": 159,
        "hostname": 4
      },
      "indicator_count": 222,
      "is_author": false,
      "is_subscribing": null,
      "subscriber_count": 73,
      "modified_text": "1006 days ago ",
      "is_modified": true,
      "groups": [],
      "in_group": false,
      "threat_hunter_scannable": true,
      "threat_hunter_has_agents": 1,
      "related_indicator_type": "domain",
      "related_indicator_is_active": 1
    }
  ],
  "error": null,
  "vt": {
    "error": "VirusTotal rate limit reached. Try again shortly.",
    "indicator": "rammutual.com",
    "type": "Domain"
  },
  "abuseipdb": null,
  "urlhaus": {
    "indicator": "rammutual.com",
    "found": false,
    "verdict": "clean",
    "urls": [],
    "error": null
  },
  "from_cache": true,
  "_cached_at": 1780406627.7000785
}