{
    "count": 915,
    "indicators": [
        {
            "ioc_value": "malwarebit-check.com",
            "ioc_type": "other",
            "category": "Cryptocurrency",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 14:41:32",
            "last_seen": "2026-08-06 14:48:58"
        },
        {
            "ioc_value": "https:\/\/www.computerworld.com\/article\/2486903\/windows-malware-tries-to-infect-android-devices-connected-to-pcs.html",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:18",
            "last_seen": "2026-08-06 14:48:31"
        },
        {
            "ioc_value": "https:\/\/blog.malwarebytes.com\/cybercrime\/2015\/10\/bypassing-apples-gatekeeper\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:18",
            "last_seen": "2026-08-06 14:48:31"
        },
        {
            "ioc_value": "https:\/\/blog.malwarebytes.com\/cybercrime\/social-engineering-cybercrime\/2017\/03\/new-targeted-attack-saudi-arabia-government\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:18",
            "last_seen": "2026-08-06 14:48:31"
        },
        {
            "ioc_value": "https:\/\/www.isaca.org\/resources\/isaca-journal\/issues\/2017\/volume-6\/evasive-malware-tricks-how-malware-evades-detection-by-sandboxes",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:18",
            "last_seen": "2026-08-06 14:48:31"
        },
        {
            "ioc_value": "https:\/\/www.broadcom.com\/support\/security-center\/protection-bulletin\/birdyclient-malware-leverages-microsoft-graph-api-for-c-c-communication",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:18",
            "last_seen": "2026-08-06 14:48:31"
        },
        {
            "ioc_value": "https:\/\/airbus-cyber-security.com\/fileless-malware-behavioural-analysis-kovter-persistence\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:18",
            "last_seen": "2026-08-06 14:48:31"
        },
        {
            "ioc_value": "https:\/\/www.securityinbits.com\/malware-analysis\/parent-pid-spoofing-stage-2-ataware-ransomware-part-3",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:18",
            "last_seen": "2026-08-06 14:48:31"
        },
        {
            "ioc_value": "https:\/\/blog.malwarebytes.com\/cybercrime\/2013\/10\/hiding-in-plain-sight\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:18",
            "last_seen": "2026-08-06 14:48:31"
        },
        {
            "ioc_value": "https:\/\/www.bleepingcomputer.com\/news\/security\/new-godlua-malware-evades-traffic-monitoring-via-dns-over-https\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:18",
            "last_seen": "2026-08-06 14:48:31"
        },
        {
            "ioc_value": "https:\/\/www.malwarebytes.com\/blog\/news\/2019\/12\/theres-an-app-for-that-web-skimmers-found-on-paas-heroku",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:18",
            "last_seen": "2026-08-06 14:48:31"
        },
        {
            "ioc_value": "https:\/\/www.welivesecurity.com\/2018\/05\/25\/backswap-malware-empty-bank-accounts\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:18",
            "last_seen": "2026-08-06 14:48:31"
        },
        {
            "ioc_value": "https:\/\/www.intezer.com\/blog\/malware-analysis\/kud-i-enter-your-server-new-vulnerabilities-in-microsoft-azure\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:18",
            "last_seen": "2026-08-06 14:48:31"
        },
        {
            "ioc_value": "https:\/\/www.cyberscoop.com\/kevin-mandia-fireeye-u-s-malware-nice\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:18",
            "last_seen": "2026-08-06 14:48:31"
        },
        {
            "ioc_value": "https:\/\/securelist.com\/old-malware-tricks-to-bypass-detection-in-the-age-of-big-data\/78010\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:18",
            "last_seen": "2026-08-06 14:48:31"
        },
        {
            "ioc_value": "https:\/\/media.defense.gov\/2020\/Jun\/09\/2002313081\/-1\/-1\/0\/CSI-DETECT-AND-PREVENT-WEB-SHELL-MALWARE-20200422.PDF",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:18",
            "last_seen": "2026-08-06 14:48:31"
        },
        {
            "ioc_value": "https:\/\/web.archive.org\/web\/20220527112908\/https:\/\/www.riskiq.com\/blog\/labs\/ukraine-malware-infrastructure\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:18",
            "last_seen": "2026-08-06 14:48:31"
        },
        {
            "ioc_value": "https:\/\/www.microsoft.com\/en-us\/wdsi\/threats\/malware-encyclopedia-description?Name=TrojanSpy:Win32\/Ursnif.gen!I&threatId=-2147336918",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:18",
            "last_seen": "2026-08-06 14:48:31"
        },
        {
            "ioc_value": "https:\/\/volatility-labs.blogspot.com\/2012\/09\/movp-31-detecting-malware-hooks-in.html",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 6,
            "first_seen": "2026-08-06 13:09:18",
            "last_seen": "2026-08-06 14:48:31"
        },
        {
            "ioc_value": "https:\/\/blog.malwarebytes.com\/threat-intelligence\/2022\/01\/north-koreas-lazarus-apt-leverages-windows-update-client-github-in-latest-campaign\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:18",
            "last_seen": "2026-08-06 14:48:31"
        },
        {
            "ioc_value": "https:\/\/www.sentinelone.com\/blog\/how-malware-persists-on-macos\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:18",
            "last_seen": "2026-08-06 14:48:31"
        },
        {
            "ioc_value": "https:\/\/www.trendmicro.com\/vinfo\/us\/threat-encyclopedia\/malware\/troj_fakeav.gzd",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:18",
            "last_seen": "2026-08-06 14:48:31"
        },
        {
            "ioc_value": "https:\/\/www.fireeye.com\/blog\/threat-research\/2017\/07\/hawkeye-malware-distributed-in-phishing-campaign.html",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:18",
            "last_seen": "2026-08-06 14:48:31"
        },
        {
            "ioc_value": "https:\/\/www.microsoft.com\/en-us\/wdsi\/threats\/malware-encyclopedia-description?name=Backdoor:Win32\/Lamin.A",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:18",
            "last_seen": "2026-08-06 14:48:31"
        },
        {
            "ioc_value": "https:\/\/www.sans.org\/reading-room\/whitepapers\/forensics\/detecting-malware-sandbox-evasion-techniques-36667",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:18",
            "last_seen": "2026-08-06 14:48:31"
        },
        {
            "ioc_value": "https:\/\/baesystemsai.blogspot.com\/2015\/06\/new-mac-os-malware-exploits-mackeeper.html",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:18",
            "last_seen": "2026-08-06 14:48:31"
        },
        {
            "ioc_value": "https:\/\/blog.trendmicro.com\/trendlabs-security-intelligence\/poweliks-malware-hides-in-windows-registry\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:18",
            "last_seen": "2026-08-06 14:48:31"
        },
        {
            "ioc_value": "https:\/\/www.venafi.com\/blog\/growing-abuse-ssh-keys-commodity-malware-campaigns-now-equipped-ssh-capabilities",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:18",
            "last_seen": "2026-08-06 14:48:31"
        },
        {
            "ioc_value": "https:\/\/blog.malwarebytes.com\/researchers-corner\/2019\/09\/hacking-with-aws-incorporating-leaky-buckets-osint-workflow\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:18",
            "last_seen": "2026-08-06 14:48:31"
        },
        {
            "ioc_value": "https:\/\/www.malwarebytes.com\/blog\/news\/2020\/04\/new-agenttesla-variant-steals-wifi-credentials",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:18",
            "last_seen": "2026-08-06 14:48:31"
        },
        {
            "ioc_value": "https:\/\/www.bleepingcomputer.com\/news\/security\/hackers-steal-wifi-passwords-using-upgraded-agent-tesla-malware\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:18",
            "last_seen": "2026-08-06 14:48:31"
        },
        {
            "ioc_value": "https:\/\/intezer.com\/blog\/malware-analysis\/new-linux-backdoor-redxor-likely-operated-by-chinese-nation-state-actor\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:18",
            "last_seen": "2026-08-06 14:48:31"
        },
        {
            "ioc_value": "https:\/\/www.sans.org\/blog\/looking-at-mutex-objects-for-malware-discovery-indicators-of-compromise\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:18",
            "last_seen": "2026-08-06 14:48:31"
        },
        {
            "ioc_value": "https:\/\/isc.sans.edu\/diary\/How+Malware+Generates+Mutex+Names+to+Evade+Detection\/19429\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:18",
            "last_seen": "2026-08-06 14:48:31"
        },
        {
            "ioc_value": "https:\/\/isc.sans.edu\/forums\/diary\/new+rogueDHCP+server+malware\/6025\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:18",
            "last_seen": "2026-08-06 14:48:31"
        },
        {
            "ioc_value": "https:\/\/www.cadosecurity.com\/blog\/the-nine-lives-of-commando-cat-analysing-a-novel-malware-campaign-targeting-docker",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:18",
            "last_seen": "2026-08-06 14:48:31"
        },
        {
            "ioc_value": "https:\/\/www.bleepingcomputer.com\/news\/security\/hackers-abuse-windows-error-reporting-tool-to-deploy-malware\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:18",
            "last_seen": "2026-08-06 14:48:31"
        },
        {
            "ioc_value": "https:\/\/cyble.com\/blog\/threat-actor-targets-manufacturing-industry-with-malware\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:18",
            "last_seen": "2026-08-06 14:48:31"
        },
        {
            "ioc_value": "https:\/\/secureteam.co.uk\/2023\/01\/08\/windows-error-reporting-tool-abused-to-load-malware\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:18",
            "last_seen": "2026-08-06 14:48:31"
        },
        {
            "ioc_value": "https:\/\/www.bleepingcomputer.com\/news\/security\/new-nkabuse-malware-abuses-nkn-blockchain-for-stealthy-comms\/#google_vignette",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/www.ncsc.gov.uk\/files\/NCSC-Malware-Analysis-Report-Small-Sieve.pdf",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/researchcenter.paloaltonetworks.com\/2018\/07\/unit42-bisonal-malware-used-attacks-russia-south-korea\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 7,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/symantec-enterprise-blogs.security.com\/blogs\/threat-intelligence\/solarwinds-raindrop-malware",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/www.trellix.com\/blogs\/research\/qakbot-evolves-to-onenote-malware-distribution\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:18",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/arstechnica.com\/information-technology\/2014\/06\/active-malware-operation-let-attackers-sabotage-us-energy-industry\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:18",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/web.archive.org\/web\/20200428173819\/https:\/\/cofense.com\/upgrades-delivery-support-infrastructure-revenge-rat-malware-bigger-threat\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/blog.talosintelligence.com\/2017\/05\/konni-malware-under-radar-for-years.html",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/www.welivesecurity.com\/2022\/01\/25\/watering-hole-deploys-new-macos-malware-dazzlespy-asia\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/www.microsoft.com\/en-us\/security\/blog\/2025\/03\/11\/new-xcsset-malware-adds-new-obfuscation-persistence-techniques-to-infect-xcode-projects\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/blog.malwarebytes.com\/threat-intelligence\/2021\/08\/new-variant-of-konni-malware-used-in-campaign-targetting-russia\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/blog.malwarebytes.com\/detections\/osx-dubrobber\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/blog.qualys.com\/vulnerabilities-threat-research\/2022\/03\/01\/ukrainian-targets-hit-by-hermeticwiper-new-datawiper-malware",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/www.welivesecurity.com\/2022\/02\/24\/hermeticwiper-new-data-wiping-malware-hits-ukraine",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/unit42.paloaltonetworks.com\/packer-as-a-service-heartcrypt-malware\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/symantec-enterprise-blogs.security.com\/blogs\/threat-intelligence\/ukraine-wiper-malware-russia",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/www.crowdstrike.com\/blog\/how-crowdstrike-falcon-protects-against-wiper-malware-used-in-ukraine-attacks\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/www.bleepingcomputer.com\/news\/security\/killdisk-disk-wiping-malware-adds-ransomware-component\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 7,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/web.archive.org\/web\/20210719165945\/https:\/\/www.trendmicro.com\/en_us\/research\/15\/c\/ursnif-the-multifaceted-malware.html?_ga=2.165628854.808042651.1508120821-744063452.1505819992",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/blogs.juniper.net\/en-us\/threat-research\/covid-19-and-fmla-campaigns-used-to-install-new-icedid-banking-malware",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/blog.talosintelligence.com\/2021\/11\/kimsuky-abuses-blogs-delivers-malware.html",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:18",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/www.cyber.nj.gov\/threat-landscape\/malware\/trojans\/ursnif",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/blog.fortinet.com\/2016\/12\/16\/malicious-macro-bypasses-uac-to-elevate-privilege-for-fareit-malware",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:18",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/us.norton.com\/internetsecurity-malware-what-is-a-botnet.html",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:18",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/www.trendmicro.com\/en_us\/research\/21\/d\/iron-tiger-apt-updates-toolkit-with-evolved-sysupdate-malware-va.html",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 7,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/www.microsoft.com\/en-us\/wdsi\/threats\/malware-encyclopedia-description?Name=Backdoor:Win32\/Truvasys.A!dha",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/researchcenter.paloaltonetworks.com\/2018\/01\/unit42-vermin-quasar-rat-custom-malware-used-ukraine\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "http:\/\/www.secureworks.com\/cyber-threat-intelligence\/threats\/wiper-malware-analysis-attacking-korean-financial-sector\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/www.cybereason.com\/blog\/labs-proton-b-what-this-mac-malware-actually-does",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:18",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/www.microsoft.com\/en-us\/wdsi\/threats\/malware-encyclopedia-description?Name=Backdoor:Win32\/Coroxy.A&ThreatID=2147766831",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/blog.malwarebytes.com\/threat-analysis\/2017\/04\/new-osx-dok-malware-intercepts-web-traffic\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:18",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/www.kroll.com\/en\/publications\/cyber\/inside-the-systembc-malware-server",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/www.secureworks.com\/research\/skeleton-key-malware-analysis",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/blog.malwarebytes.com\/101\/2015\/07\/introduction-to-alternate-data-streams\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:18",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/www.microsoft.com\/en-us\/wdsi\/threats\/malware-encyclopedia-description?Name=Backdoor:Win64\/KnuckleTouch.A!dha&threatId=-2147067254",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/labs.sentinelone.com\/20-common-tools-techniques-used-by-macos-threat-actors-malware\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:18",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/www.mandiant.com\/resources\/telegram-malware-iranian-espionage",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "http:\/\/researchcenter.paloaltonetworks.com\/2016\/02\/new-malware-rover-targets-indian-ambassador-to-afghanistan\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/news.softpedia.com\/news\/cryptocurrency-mining-malware-discovered-targeting-seagate-nas-hard-drives-508119.shtml",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/securityaffairs.co\/wordpress\/88021\/apt\/croatia-government-silenttrinity-malware.html",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/blog.malwarebytes.com\/threat-analysis\/2012\/06\/you-dirty-rat-part-1-darkcomet\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/www.trendmicro.com\/vinfo\/us\/threat-encyclopedia\/malware\/DARKCOMET",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/www.splunk.com\/en_us\/blog\/security\/lamehug-ai-driven-malware-llm-cyber-intrusion-analysis.html",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/www.sentinelone.com\/blog\/four-distinct-families-of-lazarus-malware-target-apples-macos-platform\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/socradar.io\/blog\/iran-muddywater-dindoor-malware-us-networks\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/www.malwarebytes.com\/blog\/threat-intelligence\/2022\/08\/woody-rat-a-new-feature-rich-malware-spotted-in-the-wild",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/www.aquasec.com\/blog\/threat-alert-kinsing-malware-container-vulnerability\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:18",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/www.sentinelone.com\/labs\/20-common-tools-techniques-used-by-macos-threat-actors-malware\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:18",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/blogs.forcepoint.com\/security-labs\/playing-cat-mouse-introducing-felismus-malware",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/securityintelligence.com\/x-force\/wailingcrab-malware-misues-mqtt-messaging-protocol\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:18",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/blog.malwarebytes.com\/threat-analysis\/2020\/04\/new-agenttesla-variant-steals-wifi-credentials\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/www.netskope.com\/blog\/squirrelwaffle-new-malware-loader-delivering-cobalt-strike-and-qakbot",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/www.trendmicro.com\/vinfo\/us\/threat-encyclopedia\/malware\/tspy_trickload.n",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/www.radware.com\/blog\/security\/2018\/07\/micropsia-malware\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/unit42.paloaltonetworks.com\/lucifer-new-cryptojacking-and-ddos-hybrid-malware\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/www.microsoft.com\/en-us\/wdsi\/threats\/malware-encyclopedia-description?Name=Trojan:Win32\/Totbrick",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/www.spamhaus.com\/resource-center\/a-surge-of-malvertising-across-google-ads-is-distributing-dangerous-malware\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:18",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/www.trellix.com\/blogs\/research\/the-continued-evolution-of-the-darkgate-malware-as-a-service\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/www.proofpoint.com\/us\/threat-insight\/post\/lookback-malware-targets-united-states-utilities-sector-phishing-attacks",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 7,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/socket.dev\/blog\/lazarus-expands-malicious-npm-campaign-11-new-packages-add-malware-loaders-and-bitbucket",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/unit42.paloaltonetworks.com\/unit42-the-fractured-block-campaign-carrotbat-malware-used-to-deliver-malware-targeting-southeast-asia\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/www.kroll.com\/en\/publications\/cyber\/redlinestealer-malware",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/labs.sentinelone.com\/fin6-frameworkpos-point-of-sale-malware-analysis-internals-2\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/www.zdnet.com\/article\/sly-malware-author-hides-cryptomining-botnet-behind-ever-shifting-proxy-service\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/www.splunk.com\/en_us\/blog\/security\/shrinklocker-malware-abusing-bitlocker-to-lock-your-data.html",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/web.archive.org\/web\/20150311013500\/http:\/\/www.cyphort.com\/evilbunny-malware-instrumented-lua\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 7,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/www.microsoft.com\/en-us\/wdsi\/threats\/malware-encyclopedia-description?Name=Backdoor:Win32\/Wingbird.A!dha",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/www.sentinelone.com\/blog\/evilquest-a-new-macos-malware-rolls-ransomware-spyware-and-data-theft-into-one\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/www.deepinstinct.com\/blog\/bpfdoor-malware-evolves-stealthy-sniffing-backdoor-ups-its-game",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/blog.malwarebytes.com\/detections\/osx-thiefquest\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/blog.malwarebytes.com\/mac\/2020\/07\/mac-thiefquest-malware-may-not-be-ransomware-after-all\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/www.uptycs.com\/blog\/new-poc-exploit-backdoor-malware",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:18",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/www.microsoft.com\/security\/blog\/2021\/09\/27\/foggyweb-targeted-nobelium-malware-leads-to-persistent-backdoor\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/www.microsoft.com\/en-us\/security\/blog\/2022\/05\/19\/rise-in-xorddos-a-deeper-look-at-the-stealthy-ddos-malware-targeting-linux-devices\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:18",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/securelist.com\/chafer-used-remexi-malware\/89538\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 7,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/web.archive.org\/web\/20240608001937\/https:\/\/kjaer.io\/extension-malware\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:18",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/www.microsoft.com\/en-us\/security\/blog\/2020\/12\/10\/widespread-malware-campaign-seeks-to-silently-inject-ads-into-search-results-affects-multiple-browsers\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:18",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/www.cybereason.com\/blog\/information-stealing-malware-targeting-brazil-full-research",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/web.archive.org\/web\/20160303200515\/https:\/operationblockbuster.com\/wp-content\/uploads\/2016\/02\/Operation-Blockbuster-Destructive-Malware-Report.pdf",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/blog.malwarebytes.com\/threat-analysis\/2015\/11\/no-money-but-pony-from-a-mail-to-a-trojan-horse\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/www.proofpoint.com\/us\/threat-insight\/post\/leaked-ammyy-admin-source-code-turned-malware",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/researchcenter.paloaltonetworks.com\/2015\/09\/chinese-actors-use-3102-malware-in-attacks-on-us-government-and-eu-media\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/web.archive.org\/web\/20200125132645\/https:\/\/www.sans.org\/security-resources\/malwarefaq\/conficker-worm",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 6,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/news.softpedia.com\/news\/on-chernobyl-s-30th-anniversary-malware-shuts-down-german-nuclear-power-plant-503429.shtml",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 6,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/www.bleepingcomputer.com\/tutorials\/how-malware-hides-as-a-service\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:18",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/www.threatfabric.com\/blogs\/crocodilus-mobile-malware-evolving-fast-going-global",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 7,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/www.threatfabric.com\/blogs\/exposing-crocodilus-new-device-takeover-malware-targeting-android-devices",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 7,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/telefonicatech.com\/blog\/snip3-investigacion-malware",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/www.sentinelone.com\/labs\/socgholish-diversifies-and-expands-its-malware-staging-infrastructure-to-counter-defenders\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/www.picussecurity.com\/resource\/blog\/brickstorm-malware-unc5221-targets-tech-and-legal-sectors-in-the-united-states",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/web.archive.org\/web\/20230331162455\/https:\/\/www.thesafemac.com\/new-signed-malware-called-janicab\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/unit42.paloaltonetworks.com\/mac-malware-steals-cryptocurrency-exchanges-cookies\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/insight-jp.nttsecurity.com\/post\/102hf3q\/flagpro-the-new-malware-used-by-blacktech",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/www.flashpoint-intel.com\/blog\/fin7-revisited-inside-astra-panel-and-sqlrat-malware\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 7,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/www.sentinelone.com\/blog\/trail-osx-fairytale-adware-playing-malware\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:18",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/cyberscoop.com\/viasat-malware-wiper-acidrain\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/www.kandji.io\/blog\/malware-cuckoo-infostealer-spyware",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/unit42.paloaltonetworks.com\/acidbox-rare-malware\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:18",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "http:\/\/blog.talosintelligence.com\/2017\/09\/avast-distributes-malware.html",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/blog.malwarebytes.com\/threat-analysis\/2018\/10\/mac-cryptocurrency-ticker-app-installs-backdoors\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/www.fireeye.com\/blog\/threat-research\/2017\/05\/wannacry-malware-profile.html",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 6,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/www.intego.com\/mac-security-blog\/osxshlayer-new-mac-malware-comes-out-of-its-shell\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 7,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/securingtomorrow.mcafee.com\/other-blogs\/mcafee-labs\/stopping-malware-fake-virtual-machine\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:18",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/www.microsoft.com\/en-us\/wdsi\/threats\/malware-encyclopedia-description?Name=Ransom:Win32\/PlayCrypt.PA&ThreatID=2147830341",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/blog.malwarebytes.com\/threat-analysis\/2018\/04\/new-crossrider-variant-installs-configuration-profiles-on-macs\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/www.mcafee.com\/blogs\/other-blogs\/mcafee-labs\/gold-dragon-widens-olympics-malware-attacks-gains-permanent-presence-on-victims-systems\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/www.intego.com\/mac-security-blog\/new-osxshlayer-malware-variant-found-using-a-dirty-new-trick\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/blogs.jpcert.or.jp\/en\/2018\/03\/malware-tscooki-7aa0.html",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/unit42.paloaltonetworks.com\/russian-language-malspam-pushing-redaman-banking-malware\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/www.trustwave.com\/Resources\/SpiderLabs-Blog\/Shining-the-Spotlight-on-Cherry-Picker-PoS-Malware\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/unit42.paloaltonetworks.com\/babyshark-malware-part-two-attacks-continue-using-kimjongrat-and-pcrat\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 7,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/unit42.paloaltonetworks.com\/new-babyshark-malware-targets-u-s-national-security-think-tanks\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 9,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/www.bleepingcomputer.com\/news\/security\/new-latrodectus-malware-attacks-use-microsoft-cloudflare-themes\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/us-cert.cisa.gov\/sites\/default\/files\/documents\/MAR-17-352-01%20HatMan%20-%20Safety%20System%20Targeted%20Malware%20%28Update%20B%29.pdf",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/www.intezer.com\/blog\/research\/kaiji-new-chinese-linux-malware-turning-to-golang\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/blog.malwarebytes.com\/threat-intelligence\/2021\/04\/a-deep-dive-into-saint-bot-downloader\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/researchcenter.paloaltonetworks.com\/2018\/10\/unit42-nokki-almost-ties-the-knot-with-dogcall-reaper-group-uses-new-malware-to-deploy-rat\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/researchcenter.paloaltonetworks.com\/2018\/09\/unit42-new-konni-malware-attacking-eurasia-southeast-asia\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 7,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/blog.malwarebytes.com\/threat-analysis\/2017\/01\/new-mac-backdoor-using-antiquated-code\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 6,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/www.cybereason.com\/hubfs\/dam\/collateral\/reports\/11-2020-Chaes-e-commerce-malware-research.pdf",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/www.aquasec.com\/blog\/muhstik-malware-targets-message-queuing-services-applications\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/www.welivesecurity.com\/2022\/03\/15\/caddywiper-new-wiper-malware-discovered-ukraine",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/www.arbornetworks.com\/blog\/asert\/donot-team-leverages-new-modular-malware-framework-south-asia\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/blog.checkpoint.com\/2017\/04\/27\/osx-malware-catching-wants-read-https-traffic\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/securelist.com\/a-new-secret-stash-for-fileless-malware\/106393\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/www.ncsc.gov.uk\/files\/Cyclops-Blink-Malware-Analysis-Report.pdf",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/sysdig.com\/blog\/containers-read-only-fileless-malware\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/www.vmray.com\/cyber-security-blog\/osaminer-uses-applescripts-evade-detection-malware-analysis-spotlight\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/fortgale.com\/blog\/malware-analysis\/strelastealer-malware-analysis-2\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/www.mcafee.com\/blogs\/other-blogs\/mcafee-labs\/macro-malware-targets-macs\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:18",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/www.bleepingcomputer.com\/news\/security\/russian-hacker-pleads-guilty-for-role-in-infamous-linux-ebury-malware\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/www.anomali.com\/blog\/rocke-evolves-its-arsenal-with-a-new-malware-family-written-in-golang",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "http:\/\/www.malwarearchaeology.com\/s\/Windows-PowerShell-Logging-Cheat-Sheet-ver-June-2016-v2.pdf",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:18",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "http:\/\/www.thesafemac.com\/new-signed-malware-called-janicab\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:18",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/malware.news\/t\/using-outlook-forms-for-lateral-movement-and-persistence\/13746",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:18",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/blog.aquasec.com\/threat-alert-kinsing-malware-container-vulnerability",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 7,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/unit42.paloaltonetworks.com\/ukraine-cyber-conflict-cve-2021-32648-whispergate\/#whispergate-malware-family",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/www.microsoft.com\/security\/blog\/2022\/01\/15\/destructive-malware-targeting-ukrainian-organizations\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 8,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/www.esentire.com\/security-advisories\/notorious-cybercrime-gang-fin7-lands-malware-in-law-firm-using-fake-legal-complaint-against-jack-daniels-owner-brown-forman-inc",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "http:\/\/www.secureworks.com\/cyber-threat-intelligence\/threats\/sakula-malware-family\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/cloud.google.com\/blog\/topics\/threat-intelligence\/esxi-hypervisors-malware-persistence",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/www.malwarebytes.com\/blog\/threat-intelligence\/2021\/07\/avoslocker-enters-the-ransomware-scene-asks-for-partners",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 6,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/www.welivesecurity.com\/2016\/07\/06\/new-osxkeydnap-malware-hungry-credentials\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/www.kroll.com\/en\/insights\/publications\/malware-analysis-report-rawpos-malware",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/www.cyberbit.com\/blog\/endpoint-security\/malware-mitigation-when-direct-system-calls-are-used\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:18",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/www.cybereason.com\/blog\/dropping-anchor-from-a-trickbot-infection-to-the-discovery-of-the-anchor-malware",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 7,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/medium.com\/stage-2-security\/anchor-dns-malware-family-goes-cross-platform-d807ba13ca30",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/www.zdnet.com\/article\/confirmed-north-korean-malware-found-on-indian-nuclear-plants-network\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/www.secureworks.com\/research\/darktortilla-malware-analysis",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/www.cyberbit.com\/blog\/endpoint-security\/dtrack-apt-malware-found-in-nuclear-power-plant\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/blog.trendmicro.com\/trendlabs-security-intelligence\/skidmap-linux-malware-uses-rootkit-capabilities-to-hide-cryptocurrency-mining-payload\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/www.microsoft.com\/security\/blog\/2022\/04\/12\/tarrask-malware-uses-scheduled-tasks-for-defense-evasion\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/www.bleepingcomputer.com\/news\/security\/malware-found-in-arch-linux-aur-package-repository\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:18",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/www.malwaretech.com\/2013\/08\/powerloader-injection-something-truly.html",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/www.ncsc.gov.uk\/news\/joint-advisory-shows-new-sandworm-malware-cyclops-blink-replaces-vpnfilter",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 6,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/blogs.jpcert.or.jp\/en\/2017\/02\/chches-malware--93d6.html",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/www.trendmicro.de\/cloud-content\/us\/pdfs\/security-intelligence\/white-papers\/wp-cpl-malware.pdf",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/research.nccgroup.com\/2020\/06\/02\/in-depth-analysis-of-the-new-team9-malware-family\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/www.bleepingcomputer.com\/news\/security\/hacking-group-s-new-malware-abuses-google-and-facebook-services\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/www.carbonblack.com\/2019\/02\/12\/tau-threat-intelligence-notification-new-macos-malware-variant-of-shlayer-osx-discovered\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:18",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/www.trustwave.com\/en-us\/resources\/library\/documents\/the-golden-tax-department-and-the-emergence-of-goldenspy-malware\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/www.koi.ai\/blog\/glassworm-returns-new-wave-openvsx-malware-expose-attacker-infrastructure",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/www.bleepingcomputer.com\/news\/security\/blackwater-malware-abuses-cloudflare-workers-for-c2-communication\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:18",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/papers.put.as\/papers\/macosx\/2016\/RSA_OSX_Malware.pdf",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:18",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/www.intezer.com\/blog\/malware-analysis\/executable-linkable-format-101-part-2-symbols\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:18",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/blog.malwarebytes.com\/threat-analysis\/2015\/11\/a-technical-look-at-dyreza\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/blog.malwarebytes.com\/threat-analysis\/2016\/08\/smoke-loader-downloader-with-a-smokescreen-still-alive\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 7,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/nakedsecurity.sophos.com\/2015\/04\/20\/notes-from-sophoslabs-dyreza-the-malware-that-discriminates-against-old-computers\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "http:\/\/researchcenter.paloaltonetworks.com\/2015\/04\/unit-42-identifies-new-dragonok-backdoor-malware-deployed-against-japanese-targets\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/securelist.com\/the-tetrade-brazilian-banking-malware\/97779\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/www.intezer.com\/blog-hiddenwasp-malware-targeting-linux-systems\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/www.welivesecurity.com\/2023\/04\/26\/evasive-panda-apt-group-malware-updates-popular-chinese-software\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 7,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/www.trendmicro.com\/en_us\/research\/22\/l\/raspberry-robin-malware-targets-telecom-governments.html",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/www.blackhat.com\/docs\/us-15\/materials\/us-15-Wardle-Writing-Bad-A-Malware-For-OS-X.pdf",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:18",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/www.trendmicro.com\/en_us\/research\/20\/f\/xorddos-kaiji-botnet-malware-variants-target-exposed-docker-servers.html",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:18",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/blog.trendmicro.com\/trendlabs-security-intelligence\/new-banking-malware-uses-network-sniffing-for-data-theft\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/medium.com\/@chenerlich\/the-avast-abuser-metamorfo-banking-malware-hides-by-abusing-avast-executable-ac9b8b392767",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/support.malwarebytes.com\/docs\/DOC-2295",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/any.run\/cybersecurity-blog\/xloader-formbook-encryption-analysis-and-malware-decryption\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/researchcenter.paloaltonetworks.com\/2018\/06\/unit42-rancor-targeted-attacks-south-east-asia-using-plaintee-ddkong-malware-families\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 7,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/cloud.google.com\/blog\/topics\/threat-intelligence\/formbook-malware-distribution-campaigns\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/unit42.paloaltonetworks.com\/hamas-affiliate-ashen-lepus-uses-new-malware-suite-ashtag\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 9,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/www.anomali.com\/blog\/pulling-linux-rabbit-rabbot-malware-out-of-a-hat",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/www.trendmicro.com\/vinfo\/us\/threat-encyclopedia\/malware\/carberp",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/securelist.com\/iamtheking-and-the-slothfulmedia-malware-family\/99000\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/researchcenter.paloaltonetworks.com\/2017\/11\/unit42-new-malware-with-ties-to-sunorcal-discovered\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:30"
        },
        {
            "ioc_value": "https:\/\/threatvector.cylance.com\/en_us\/home\/el-machete-malware-attacks-cut-through-latam.html",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 7,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:29"
        },
        {
            "ioc_value": "https:\/\/hub.dragos.com\/hubfs\/Reports\/Dragos-FrostyGoop-ICS-Malware-Intel-Brief-0724_r2.pdf",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 6,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:29"
        },
        {
            "ioc_value": "https:\/\/www.nozominetworks.com\/blog\/protecting-against-frostygoop-bustleberm-malware",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 6,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:29"
        },
        {
            "ioc_value": "https:\/\/www.accenture.com\/t20181129T203820Z__w__\/us-en\/_acnmedia\/PDF-90\/Accenture-snakemackerel-delivers-zekapab-malware.pdf#zoom=50",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 7,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:29"
        },
        {
            "ioc_value": "https:\/\/www.pwc.com\/gx\/en\/issues\/cybersecurity\/cyber-threat-intelligence\/yellow-liderc-ships-its-scripts-delivers-imaploader-malware.html",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 7,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:29"
        },
        {
            "ioc_value": "https:\/\/media.defense.gov\/2020\/Aug\/13\/2002476465\/-1\/-1\/0\/CSA_DROVORUB_RUSSIAN_GRU_MALWARE_AUG_2020.PDF",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 9,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:29"
        },
        {
            "ioc_value": "https:\/\/blog.malwarebytes.com\/threat-analysis\/2021\/06\/kimsuky-apt-continues-to-target-south-korean-government-using-appleseed-backdoor\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 7,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:29"
        },
        {
            "ioc_value": "https:\/\/www.cisa.gov\/sites\/default\/files\/2023-05\/aa23-129a_snake_malware_2.pdf",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:29"
        },
        {
            "ioc_value": "https:\/\/www.broadcom.com\/support\/security-center\/protection-bulletin\/bookworm-malware-linked-to-fireant-aka-stately-tarurus-activity-observed-in-southeast-asia",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:29"
        },
        {
            "ioc_value": "https:\/\/www.leonardo.com\/documents\/20142\/10868623\/Malware+Technical+Insight+_Turla+%E2%80%9CPenquin_x64%E2%80%9D.pdf",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:29"
        },
        {
            "ioc_value": "https:\/\/blog.eclecticiq.com\/mustang-panda-apt-group-uses-european-commission-themed-lure-to-deliver-plugx-malware",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:29"
        },
        {
            "ioc_value": "https:\/\/www.trendmicro.com\/en_us\/research\/24\/i\/earth-preta-new-malware-and-strategies.html",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:29"
        },
        {
            "ioc_value": "https:\/\/www.proofpoint.com\/us\/blog\/threat-insight\/ta416-goes-ground-and-returns-golang-plugx-malware-loader",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 7,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:29"
        },
        {
            "ioc_value": "https:\/\/www.eenews.net\/articles\/the-inside-story-of-the-worlds-most-dangerous-malware\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 6,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:29"
        },
        {
            "ioc_value": "https:\/\/unit42.paloaltonetworks.com\/stately-taurus-uses-bookworm-malware\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:29"
        },
        {
            "ioc_value": "https:\/\/www.proofpoint.com\/us\/threat-insight\/post\/servhelper-and-flawedgrace-new-malware-introduced-ta505",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:29"
        },
        {
            "ioc_value": "https:\/\/unit42.paloaltonetworks.com\/updated-backconfig-malware-targeting-government-and-military-organizations\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 9,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:29"
        },
        {
            "ioc_value": "https:\/\/www.welivesecurity.com\/2021\/01\/12\/operation-spalax-targeted-malware-attacks-colombia\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:29"
        },
        {
            "ioc_value": "https:\/\/www.mandiant.com\/resources\/blog\/fortinet-malware-ecosystem",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 7,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:29"
        },
        {
            "ioc_value": "https:\/\/www.secureworks.com\/research\/mcmd-malware-analysis",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 6,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:29"
        },
        {
            "ioc_value": "https:\/\/www.secureworks.com\/research\/updated-karagany-malware-targets-energy-sector",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 6,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:29"
        },
        {
            "ioc_value": "https:\/\/blogs.microsoft.com\/on-the-issues\/2017\/12\/19\/microsoft-facebook-disrupt-zinc-malware-attack-protect-customers-internet-ongoing-cyberthreats\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 6,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:29"
        },
        {
            "ioc_value": "https:\/\/www.crowdstrike.com\/blog\/sunspot-malware-technical-analysis\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 7,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:29"
        },
        {
            "ioc_value": "https:\/\/www.microsoft.com\/security\/blog\/2021\/03\/04\/goldmax-goldfinder-sibot-analyzing-nobelium-malware\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 7,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:29"
        },
        {
            "ioc_value": "http:\/\/researchcenter.paloaltonetworks.com\/2017\/02\/unit42-menupass-returns-new-malware-new-attacks-japanese-academics-organizations\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:29"
        },
        {
            "ioc_value": "https:\/\/answers.microsoft.com\/windows\/forum\/windows_10-security\/part-of-windows-10-or-really-malware\/af715663-a34a-423c-850d-2a46f369a54c",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:29"
        },
        {
            "ioc_value": "http:\/\/researchcenter.paloaltonetworks.com\/2016\/10\/unit42-oilrig-malware-campaign-updates-toolset-and-expands-targets\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 6,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:29"
        },
        {
            "ioc_value": "https:\/\/arstechnica.com\/information-technology\/2007\/05\/malware-piggybacks-on-windows-background-intelligent-transfer-service\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:29"
        },
        {
            "ioc_value": "https:\/\/www.symantec.com\/connect\/blogs\/malware-update-windows-update",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:29"
        },
        {
            "ioc_value": "https:\/\/www.cybercom.mil\/Media\/News\/Article\/2897570\/iranian-intel-cyber-suite-of-malware-uses-open-source-tools\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 7,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:29"
        },
        {
            "ioc_value": "https:\/\/www.welivesecurity.com\/2014\/03\/18\/operation-windigo-the-vivisection-of-a-large-linux-server-side-credential-stealing-malware-campaign\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:29"
        },
        {
            "ioc_value": "https:\/\/blog.malwarebytes.com\/malwarebytes-news\/2020\/10\/silent-librarian-apt-phishing-attack\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:29"
        },
        {
            "ioc_value": "https:\/\/blog.malwarebytes.com\/threat-analysis\/2020\/06\/higaisa\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 7,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:29"
        },
        {
            "ioc_value": "https:\/\/www.fireeye.com\/blog\/threat-research\/2019\/01\/a-nasty-trick-from-credential-theft-malware-to-business-disruption.html",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 8,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:29"
        },
        {
            "ioc_value": "https:\/\/www.cybereason.com\/hubfs\/dam\/collateral\/reports\/Molerats-in-the-Cloud-New-Malware-Arsenal-Abuses-Cloud-Platforms-in-Middle-East-Espionage-Campaign.pdf",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:29"
        },
        {
            "ioc_value": "https:\/\/blog.google\/threat-analysis-group\/google-tag-coldriver-russian-phishing-malware\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 7,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:29"
        },
        {
            "ioc_value": "https:\/\/unit42.paloaltonetworks.com\/hildegard-malware-teamtnt\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 7,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:29"
        },
        {
            "ioc_value": "https:\/\/bi-zone.medium.com\/from-pentest-to-apt-attack-cybercriminal-group-fin7-disguises-its-malware-as-an-ethical-hackers-c23c9a75e319",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 6,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:29"
        },
        {
            "ioc_value": "https:\/\/web.archive.org\/web\/20211003035156\/https:\/\/www.malwarebytes.com\/resources\/files\/2021\/02\/lazyscripter.pdf",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:29"
        },
        {
            "ioc_value": "https:\/\/www.cyberscoop.com\/middle-eastern-hacking-group-using-finfisher-malware-conduct-international-espionage\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:29"
        },
        {
            "ioc_value": "https:\/\/www.malwarebytes.com\/blog\/news\/2021\/12\/sidecopy-apt-connecting-lures-to-victims-payloads-to-infrastructure",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:29"
        },
        {
            "ioc_value": "https:\/\/www.bleepingcomputer.com\/news\/microsoft\/microsoft-disables-dde-feature-in-word-to-prevent-further-malware-attacks\/",
            "ioc_type": "url",
            "category": "ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 5,
            "first_seen": "2026-08-06 13:09:17",
            "last_seen": "2026-08-06 14:48:29"
        },
        {
            "ioc_value": "https:\/\/github.com\/hamerderta\/lzxhcjhsdajfslfgdsgh\/releases\/download\/malware\/xeno.V1.3.55.exe",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 6,
            "first_seen": "2026-08-06 13:07:37",
            "last_seen": "2026-08-06 14:47:18"
        },
        {
            "ioc_value": "malware-hunter.census.shodan.io",
            "ioc_type": "other",
            "category": "IP Reputation",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 14:46:08",
            "last_seen": "2026-08-06 14:46:08"
        },
        {
            "ioc_value": "https:\/\/researchcenter.paloaltonetworks.com\/2016\/03\/banload-malware-affecting-brazil-exhibits-unusually-complex-infection-process\/",
            "ioc_type": "url",
            "category": "Malware Families",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:03",
            "last_seen": "2026-08-06 14:45:34"
        },
        {
            "ioc_value": "https:\/\/www.trendmicro.com\/vinfo\/us\/threat-encyclopedia\/malware\/banload",
            "ioc_type": "url",
            "category": "Malware Families",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:03",
            "last_seen": "2026-08-06 14:45:34"
        },
        {
            "ioc_value": "https:\/\/securingtomorrow.mcafee.com\/mcafee-labs\/banload-trojan-targets-brazilians-with-malware-downloads\/",
            "ioc_type": "url",
            "category": "Malware Families",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:03",
            "last_seen": "2026-08-06 14:45:34"
        },
        {
            "ioc_value": "https:\/\/github.com\/eset\/malware-ioc\/tree\/master\/especter",
            "ioc_type": "url",
            "category": "Malware Families",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:03",
            "last_seen": "2026-08-06 14:45:34"
        },
        {
            "ioc_value": "https:\/\/www.microsoft.com\/en-us\/wdsi\/threats\/malware-encyclopedia-description?Name=Worm%3AWin32%2FFadok.A",
            "ioc_type": "url",
            "category": "Malware Families",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:03",
            "last_seen": "2026-08-06 14:45:34"
        },
        {
            "ioc_value": "https:\/\/www.recordedfuture.com\/research\/uncovering-mintsloader-with-recorded-future-malware-intelligence-hunting",
            "ioc_type": "url",
            "category": "Threat Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:00",
            "last_seen": "2026-08-06 14:45:34"
        },
        {
            "ioc_value": "https:\/\/www.bleepingcomputer.com\/news\/security\/report-ties-north-korean-attacks-to-new-malware-linked-by-word-macros\/",
            "ioc_type": "url",
            "category": "Threat Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 4,
            "first_seen": "2026-08-06 13:12:59",
            "last_seen": "2026-08-06 14:45:34"
        },
        {
            "ioc_value": "https:\/\/phishme.com\/loki-bot-malware\/",
            "ioc_type": "url",
            "category": "Malware Families",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:03",
            "last_seen": "2026-08-06 14:45:34"
        },
        {
            "ioc_value": "http:\/\/blog.talosintelligence.com\/2017\/05\/konni-malware-under-radar-for-years.html",
            "ioc_type": "url",
            "category": "Malware Families",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:03",
            "last_seen": "2026-08-06 14:45:34"
        },
        {
            "ioc_value": "https:\/\/www.malwarebytes.com\/blog\/news\/2025\/04\/fake-social-security-statement-emails-trick-users-into-installing-remote-tool",
            "ioc_type": "url",
            "category": "Threat Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:00",
            "last_seen": "2026-08-06 14:45:34"
        },
        {
            "ioc_value": "https:\/\/blog.malwarebytes.com\/threat-analysis\/2020\/11\/malsmoke-operators-abandon-exploit-kits-in-favor-of-social-engineering-scheme\/",
            "ioc_type": "url",
            "category": "Threat Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:00",
            "last_seen": "2026-08-06 14:45:34"
        },
        {
            "ioc_value": "https:\/\/www.malwarebytes.com\/blog\/social-engineering\/2020\/09\/malvertising-campaigns-come-back-in-full-swing",
            "ioc_type": "url",
            "category": "Threat Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:00",
            "last_seen": "2026-08-06 14:45:34"
        },
        {
            "ioc_value": "https:\/\/www.trendmicro.com\/vinfo\/us\/threat-encyclopedia\/malware\/esile",
            "ioc_type": "url",
            "category": "Malware Families",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:03",
            "last_seen": "2026-08-06 14:45:34"
        },
        {
            "ioc_value": "https:\/\/www.cyber.nj.gov\/alerts-advisories\/gootloader-malware-platform-uses-sophisticated-techniques-to-deliver-malware",
            "ioc_type": "url",
            "category": "Malware Families",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:03",
            "last_seen": "2026-08-06 14:45:34"
        },
        {
            "ioc_value": "https:\/\/securityintelligence.com\/posts\/hive00117-fileless-malware-delivery-eastern-europe\/",
            "ioc_type": "url",
            "category": "Threat Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:00",
            "last_seen": "2026-08-06 14:45:34"
        },
        {
            "ioc_value": "http:\/\/blog.trendmicro.com\/trendlabs-security-intelligence\/look-js_powmet-completely-fileless-malware\/",
            "ioc_type": "url",
            "category": "Malware Families",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:03",
            "last_seen": "2026-08-06 14:45:34"
        },
        {
            "ioc_value": "https:\/\/www.cylance.com\/en_us\/blog\/threat-spotlight-is-fireball-adware-or-malware.html",
            "ioc_type": "url",
            "category": "Malware Families",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:03",
            "last_seen": "2026-08-06 14:45:34"
        },
        {
            "ioc_value": "https:\/\/www.malwarebytes.com\/blog\/news\/2018\/04\/fakeupdates-campaign-leverages-multiple-website-platforms",
            "ioc_type": "url",
            "category": "Malware Families",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:03",
            "last_seen": "2026-08-06 14:45:34"
        },
        {
            "ioc_value": "https:\/\/www.trendmicro.com\/en_us\/research\/23\/b\/tgtoxic-malware-targets-southeast-asia-android-users.html",
            "ioc_type": "url",
            "category": "Malware Families",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:03",
            "last_seen": "2026-08-06 14:45:34"
        },
        {
            "ioc_value": "https:\/\/blogs.blackberry.com\/en\/2022\/03\/threat-thursday-sunseed-malware",
            "ioc_type": "url",
            "category": "Malware Families",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:03",
            "last_seen": "2026-08-06 14:45:34"
        },
        {
            "ioc_value": "https:\/\/thehackernews.com\/search\/label\/Zusy%20Malware",
            "ioc_type": "url",
            "category": "Malware Families",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:03",
            "last_seen": "2026-08-06 14:45:34"
        },
        {
            "ioc_value": "http:\/\/blog.trendmicro.com\/trendlabs-security-intelligence\/the-tinbatinybanker-malware\/",
            "ioc_type": "url",
            "category": "Malware Families",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:03",
            "last_seen": "2026-08-06 14:45:34"
        },
        {
            "ioc_value": "https:\/\/www.bleepingcomputer.com\/news\/security\/wp-vcd-wordpress-malware-campaign-is-back\/",
            "ioc_type": "url",
            "category": "Malware Families",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:03",
            "last_seen": "2026-08-06 14:45:34"
        },
        {
            "ioc_value": "https:\/\/www.bleepingcomputer.com\/news\/security\/wp-vcd-wordpress-malware-spreads-via-nulled-wordpress-themes\/",
            "ioc_type": "url",
            "category": "Malware Families",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:03",
            "last_seen": "2026-08-06 14:45:34"
        },
        {
            "ioc_value": "https:\/\/www.bleepingcomputer.com\/news\/security\/quant-loader-is-now-bundled-with-other-crappy-malware\/",
            "ioc_type": "url",
            "category": "Malware Families",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:03",
            "last_seen": "2026-08-06 14:45:34"
        },
        {
            "ioc_value": "https:\/\/www.microsoft.com\/en-us\/security\/blog\/2026\/05\/19\/exposing-fox-tempest-a-malware-signing-service-operation\/",
            "ioc_type": "url",
            "category": "Threat Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:00",
            "last_seen": "2026-08-06 14:45:34"
        },
        {
            "ioc_value": "https:\/\/therecord.media\/microsoft-disrupts-fox-tempest-malware-signing-service",
            "ioc_type": "url",
            "category": "Threat Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:00",
            "last_seen": "2026-08-06 14:45:34"
        },
        {
            "ioc_value": "https:\/\/www.koi.ai\/blog\/4-million-browsers-infected-inside-shadypanda-7-year-malware-campaign",
            "ioc_type": "url",
            "category": "Threat Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:00",
            "last_seen": "2026-08-06 14:45:34"
        },
        {
            "ioc_value": "https:\/\/community.rsa.com\/community\/products\/netwitness\/blog\/2017\/12\/08\/gratefulpos-credit-card-stealing-malware-just-in-time-for-the-shopping-season",
            "ioc_type": "url",
            "category": "Malware Families",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:03",
            "last_seen": "2026-08-06 14:45:34"
        },
        {
            "ioc_value": "http:\/\/blog.trendmicro.com\/trendlabs-security-intelligence\/dissecting-prilex-cutlet-maker-atm-malware-families\/",
            "ioc_type": "url",
            "category": "Malware Families",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:03",
            "last_seen": "2026-08-06 14:45:34"
        },
        {
            "ioc_value": "http:\/\/thehackernews.com\/2015\/08\/elise-malware-hacking.html",
            "ioc_type": "url",
            "category": "Malware Families",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:03",
            "last_seen": "2026-08-06 14:45:34"
        },
        {
            "ioc_value": "https:\/\/www.malwarebytes.com\/blog\/threat-intelligence\/2022\/04\/colibri-loader-combines-task-scheduler-and-powershell-in-clever-persistence-technique",
            "ioc_type": "url",
            "category": "Malware Families",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:03",
            "last_seen": "2026-08-06 14:45:34"
        },
        {
            "ioc_value": "https:\/\/www.microsoft.com\/en-us\/security\/blog\/2026\/07\/31\/captivecrunch-midnight-blizzard-targets-travelers-worldwide-for-malware-delivery-and-credential-theft\/",
            "ioc_type": "url",
            "category": "Threat Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:00",
            "last_seen": "2026-08-06 14:45:34"
        },
        {
            "ioc_value": "https:\/\/securityintelligence.com\/android-malware-about-to-get-worse-gm-bot-source-code-leaked\/",
            "ioc_type": "url",
            "category": "Malware Families",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:03",
            "last_seen": "2026-08-06 14:45:34"
        },
        {
            "ioc_value": "https:\/\/www.welivesecurity.com\/2017\/09\/28\/monero-money-mining-malware\/",
            "ioc_type": "url",
            "category": "Malware Families",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:03",
            "last_seen": "2026-08-06 14:45:34"
        },
        {
            "ioc_value": "https:\/\/www.welivesecurity.com\/en\/podcasts\/eset-apt-activity-report-q4-2024q1-2025-malware-sharing-wipers-exploits\/",
            "ioc_type": "url",
            "category": "Threat Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:00",
            "last_seen": "2026-08-06 14:45:34"
        },
        {
            "ioc_value": "https:\/\/www.secureworks.com\/research\/sakula-malware-family",
            "ioc_type": "url",
            "category": "Malware Families",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:03",
            "last_seen": "2026-08-06 14:45:34"
        },
        {
            "ioc_value": "http:\/\/blog.jpcert.or.jp\/.s\/2018\/03\/malware-tscooki-7aa0.html",
            "ioc_type": "url",
            "category": "Malware Families",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:03",
            "last_seen": "2026-08-06 14:45:34"
        },
        {
            "ioc_value": "http:\/\/blog.trendmicro.com\/trendlabs-security-intelligence\/evilgrab-malware-family-used-in-targeted-attacks-in-asia\/",
            "ioc_type": "url",
            "category": "Malware Families",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:03",
            "last_seen": "2026-08-06 14:45:34"
        },
        {
            "ioc_value": "https:\/\/malware-research.org\/prepare-father-of-stuxnet-news-are-coming\/",
            "ioc_type": "url",
            "category": "Malware Families",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:03",
            "last_seen": "2026-08-06 14:45:34"
        },
        {
            "ioc_value": "https:\/\/www.peerlyst.com\/posts\/hack-lu-2016-recap-interesting-malware-no-i-m-not-kidding-by-marion-marschalek-claus-cramon",
            "ioc_type": "url",
            "category": "Malware Families",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:03",
            "last_seen": "2026-08-06 14:45:34"
        },
        {
            "ioc_value": "https:\/\/www.solvusoft.com\/en\/malware\/trojans\/downloader-fgo\/",
            "ioc_type": "url",
            "category": "Malware Families",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:03",
            "last_seen": "2026-08-06 14:45:34"
        },
        {
            "ioc_value": "https:\/\/www.aryaka.com\/blog\/batshade-vampire-bot-social-engineering-malware\/",
            "ioc_type": "url",
            "category": "Threat Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:00",
            "last_seen": "2026-08-06 14:45:34"
        },
        {
            "ioc_value": "https:\/\/www.csoonline.com\/article\/2132422\/malware-cybercrime\/cyberespionage-malware--miniflame--discovered.html",
            "ioc_type": "url",
            "category": "Malware Families",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:03",
            "last_seen": "2026-08-06 14:45:34"
        },
        {
            "ioc_value": "https:\/\/www.trendmicro.com\/vinfo\/dk\/threat-encyclopedia\/archive\/malware\/pe_ghotex.a-o",
            "ioc_type": "url",
            "category": "Malware Families",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:03",
            "last_seen": "2026-08-06 14:45:34"
        },
        {
            "ioc_value": "https:\/\/www.microsoft.com\/en-us\/wdsi\/threats\/malware-encyclopedia-description?Name=Trojan:Win32\/Shipup.G",
            "ioc_type": "url",
            "category": "Malware Families",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:03",
            "last_seen": "2026-08-06 14:45:34"
        },
        {
            "ioc_value": "https:\/\/www.microsoft.com\/en-us\/wdsi\/threats\/malware-encyclopedia-description?Name=Trojan%3AWin32%2FShipup.K",
            "ioc_type": "url",
            "category": "Malware Families",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:03",
            "last_seen": "2026-08-06 14:45:34"
        },
        {
            "ioc_value": "https:\/\/www.microsoft.com\/en-us\/wdsi\/threats\/malware-encyclopedia-description?Name=Worm:Win32\/Shipup.A",
            "ioc_type": "url",
            "category": "Malware Families",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:03",
            "last_seen": "2026-08-06 14:45:34"
        },
        {
            "ioc_value": "https:\/\/www.ncsc.gov.uk\/content\/files\/protected_files\/article_files\/Turla%20group%20using%20Neuron%20and%20Nautilus%20tools%20alongside%20Snake%20malware_0.pdf",
            "ioc_type": "url",
            "category": "Malware Families",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:03",
            "last_seen": "2026-08-06 14:45:34"
        },
        {
            "ioc_value": "https:\/\/www.bleepingcomputer.com\/news\/security\/goscanssh-malware-avoids-government-and-military-servers\/",
            "ioc_type": "url",
            "category": "Malware Families",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:03",
            "last_seen": "2026-08-06 14:45:34"
        },
        {
            "ioc_value": "https:\/\/blog.malwarebytes.org\/intelligence\/2012\/06\/you-dirty-rat-part-2-blackshades-net\/",
            "ioc_type": "url",
            "category": "Malware Families",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:03",
            "last_seen": "2026-08-06 14:45:34"
        },
        {
            "ioc_value": "https:\/\/www.trendmicro.com\/vinfo\/us\/threat-encyclopedia\/malware\/troj_sasfis.tl",
            "ioc_type": "url",
            "category": "Malware Families",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:03",
            "last_seen": "2026-08-06 14:45:34"
        },
        {
            "ioc_value": "https:\/\/www.sentinelone.com\/blog\/understanding-kjw0rm-malware-we-dive-in-to-the-tv5-cyber-attack\/",
            "ioc_type": "url",
            "category": "Malware Families",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:03",
            "last_seen": "2026-08-06 14:45:34"
        },
        {
            "ioc_value": "https:\/\/www.zdnet.com\/article\/hello-kitty-malware-targets-drupal-to-mine-for-cryptocurrency\/",
            "ioc_type": "url",
            "category": "Malware Families",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:03",
            "last_seen": "2026-08-06 14:45:34"
        },
        {
            "ioc_value": "https:\/\/en.wikipedia.org\/wiki\/Regin_(malware)",
            "ioc_type": "url",
            "category": "Malware Families",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:03",
            "last_seen": "2026-08-06 14:45:34"
        },
        {
            "ioc_value": "https:\/\/threatpost.com\/kitty-cryptomining-malware-cashes-in-on-drupalgeddon-2-0\/131668\/",
            "ioc_type": "url",
            "category": "Malware Families",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:03",
            "last_seen": "2026-08-06 14:45:34"
        },
        {
            "ioc_value": "https:\/\/cryptovest.com\/news\/hello-kitty-new-malware-me0ws-its-way-into-mining-monero\/",
            "ioc_type": "url",
            "category": "Malware Families",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:03",
            "last_seen": "2026-08-06 14:45:34"
        },
        {
            "ioc_value": "https:\/\/www.bleepingcomputer.com\/news\/gaming\/chinese-police-arrest-15-people-who-hid-malware-inside-pubg-cheat-apps\/",
            "ioc_type": "url",
            "category": "Malware Families",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:03",
            "last_seen": "2026-08-06 14:45:34"
        },
        {
            "ioc_value": "https:\/\/securingtomorrow.mcafee.com\/consumer\/consumer-threat-notices\/new-vpnfilter-malware-infects-routers\/",
            "ioc_type": "url",
            "category": "Malware Families",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:03",
            "last_seen": "2026-08-06 14:45:34"
        },
        {
            "ioc_value": "http:\/\/www.secureworks.com\/cyber-threat-intelligence\/threats\/skeleton-key-malware-analysis\/",
            "ioc_type": "url",
            "category": "Malware Families",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:03",
            "last_seen": "2026-08-06 14:45:34"
        },
        {
            "ioc_value": "https:\/\/www.bleepingcomputer.com\/news\/security\/lol-babayaga-wordpress-malware-updates-your-site\/",
            "ioc_type": "url",
            "category": "Malware Families",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:03",
            "last_seen": "2026-08-06 14:45:34"
        },
        {
            "ioc_value": "https:\/\/www.bleepingcomputer.com\/news\/security\/malware-that-hit-pyeongchang-olympics-deployed-in-new-attacks\/",
            "ioc_type": "url",
            "category": "Malware Families",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:03",
            "last_seen": "2026-08-06 14:45:34"
        },
        {
            "ioc_value": "https:\/\/unit42.paloaltonetworks.com\/matanbuchus-malware-as-a-service\/",
            "ioc_type": "url",
            "category": "Threat Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 4,
            "first_seen": "2026-08-06 13:13:00",
            "last_seen": "2026-08-06 14:45:34"
        },
        {
            "ioc_value": "https:\/\/www.fortinet.com\/blog\/threat-research\/russian-army-exhibition-decoy-leads-to-new-biskvit-malware.html",
            "ioc_type": "url",
            "category": "Malware Families",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:03",
            "last_seen": "2026-08-06 14:45:34"
        },
        {
            "ioc_value": "https:\/\/www.microsoft.com\/en-us\/wdsi\/threats\/malware-encyclopedia-description?Name=Win32%2Fsirefef",
            "ioc_type": "url",
            "category": "Malware Families",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:03",
            "last_seen": "2026-08-06 14:45:34"
        },
        {
            "ioc_value": "https:\/\/www.koi.ai\/blog\/whitecobra-vscode-cursor-extensions-malware",
            "ioc_type": "url",
            "category": "Threat Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:00",
            "last_seen": "2026-08-06 14:45:34"
        },
        {
            "ioc_value": "https:\/\/www.bleepingcomputer.com\/news\/security\/magentocore-malware-found-on-7-339-magento-stores\/",
            "ioc_type": "url",
            "category": "Malware Families",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:03",
            "last_seen": "2026-08-06 14:45:34"
        },
        {
            "ioc_value": "https:\/\/unit42.paloaltonetworks.com\/new-windows-based-malware-family-airstalk\/",
            "ioc_type": "url",
            "category": "Threat Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:00",
            "last_seen": "2026-08-06 14:45:34"
        },
        {
            "ioc_value": "https:\/\/www.proofpoint.com\/us\/exploring-bergard-old-malware-new-tricks",
            "ioc_type": "url",
            "category": "Threat Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 4,
            "first_seen": "2026-08-06 13:12:59",
            "last_seen": "2026-08-06 14:45:34"
        },
        {
            "ioc_value": "https:\/\/isovalent.com\/blog\/post\/voidlink-cloud-malware-detection\/",
            "ioc_type": "url",
            "category": "Threat Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:00",
            "last_seen": "2026-08-06 14:45:34"
        },
        {
            "ioc_value": "https:\/\/www.fireeye.com\/blog\/threat-research\/2016\/06\/irongate_ics_malware.html",
            "ioc_type": "url",
            "category": "Malware Families",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:03",
            "last_seen": "2026-08-06 14:45:34"
        },
        {
            "ioc_value": "https:\/\/www.bleepingcomputer.com\/news\/security\/new-chainshot-malware-found-by-cracking-512-bit-rsa-key\/",
            "ioc_type": "url",
            "category": "Malware Families",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:03",
            "last_seen": "2026-08-06 14:45:34"
        },
        {
            "ioc_value": "https:\/\/www.ncsc.gov.uk\/alerts\/indicators-compromise-malware-used-apt28",
            "ioc_type": "url",
            "category": "Malware Families",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:03",
            "last_seen": "2026-08-06 14:45:34"
        },
        {
            "ioc_value": "https:\/\/malware.dontneedcoffee.com\/2017\/10\/coalabot-http-ddos-bot.html",
            "ioc_type": "url",
            "category": "Malware Families",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:03",
            "last_seen": "2026-08-06 14:45:34"
        },
        {
            "ioc_value": "https:\/\/www.bleepingcomputer.com\/news\/security\/new-lamepyre-macos-malware-sends-screenshots-to-attacker\/",
            "ioc_type": "url",
            "category": "Malware Families",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:03",
            "last_seen": "2026-08-06 14:45:34"
        },
        {
            "ioc_value": "https:\/\/medium.com\/@quoscient\/golden-chickens-uncovering-a-malware-as-a-service-maas-provider-and-two-new-threat-actors-using-61cf0cb87648",
            "ioc_type": "url",
            "category": "Threat Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 4,
            "first_seen": "2026-08-06 13:13:00",
            "last_seen": "2026-08-06 14:45:34"
        },
        {
            "ioc_value": "https:\/\/www.microsoft.com\/en-us\/security\/blog\/2026\/03\/11\/contagious-interview-malware-delivered-through-fake-developer-job-interviews\/",
            "ioc_type": "url",
            "category": "Threat Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:00",
            "last_seen": "2026-08-06 14:45:34"
        },
        {
            "ioc_value": "https:\/\/www.bleepingcomputer.com\/news\/security\/stealthworker-malware-uses-windows-linux-bots-to-hack-websites\/",
            "ioc_type": "url",
            "category": "Malware Families",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:03",
            "last_seen": "2026-08-06 14:45:34"
        },
        {
            "ioc_value": "https:\/\/en.wikipedia.org\/wiki\/Mirai_(malware)",
            "ioc_type": "url",
            "category": "Malware Families",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:03",
            "last_seen": "2026-08-06 14:45:34"
        },
        {
            "ioc_value": "https:\/\/malware.lu\/assets\/files\/articles\/RAP003_KimJongRAT-Stealer_Analysis.1.0.pdf",
            "ioc_type": "url",
            "category": "Malware Families",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:03",
            "last_seen": "2026-08-06 14:45:34"
        },
        {
            "ioc_value": "https:\/\/en.wikipedia.org\/wiki\/Zeus_(malware)",
            "ioc_type": "url",
            "category": "Malware Families",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:03",
            "last_seen": "2026-08-06 14:45:34"
        },
        {
            "ioc_value": "https:\/\/unit42.paloaltonetworks.com\/unit42-new-malware-with-ties-to-sunorcal-discovered\/",
            "ioc_type": "url",
            "category": "Malware Families",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:03",
            "last_seen": "2026-08-06 14:45:34"
        },
        {
            "ioc_value": "https:\/\/citizenlab.ca\/2013\/08\/surtr-malware-family-targeting-the-tibetan-community\/",
            "ioc_type": "url",
            "category": "Malware Families",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:03",
            "last_seen": "2026-08-06 14:45:34"
        },
        {
            "ioc_value": "https:\/\/securityintelligence.com\/tag\/shiz-trojan-malware\/",
            "ioc_type": "url",
            "category": "Malware Families",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:03",
            "last_seen": "2026-08-06 14:45:34"
        },
        {
            "ioc_value": "https:\/\/www.bleepingcomputer.com\/news\/security\/new-ghostadmin-malware-used-for-data-theft-and-exfiltration\/",
            "ioc_type": "url",
            "category": "Malware Families",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:03",
            "last_seen": "2026-08-06 14:45:34"
        },
        {
            "ioc_value": "https:\/\/blog.malwarebytes.com\/threat-analysis\/2016\/11\/floki-bot-and-the-stealthy-dropper\/",
            "ioc_type": "url",
            "category": "Malware Families",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:03",
            "last_seen": "2026-08-06 14:45:34"
        },
        {
            "ioc_value": "https:\/\/www.bleepingcomputer.com\/news\/security\/deprimon-malware-registers-itself-as-a-windows-print-monitor\/",
            "ioc_type": "url",
            "category": "Malware Families",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:03",
            "last_seen": "2026-08-06 14:45:34"
        },
        {
            "ioc_value": "https:\/\/www.trendmicro.com\/vinfo\/us\/threat-encyclopedia\/malware\/elf_imeij.a",
            "ioc_type": "url",
            "category": "Malware Families",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:03",
            "last_seen": "2026-08-06 14:45:34"
        },
        {
            "ioc_value": "https:\/\/security.googleblog.com\/2017\/04\/an-investigation-of-chrysaor-malware-on.html",
            "ioc_type": "url",
            "category": "Malware Families",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:03",
            "last_seen": "2026-08-06 14:45:34"
        },
        {
            "ioc_value": "https:\/\/www.trendmicro.com\/en_us\/research\/25\/b\/updated-shadowpad-malware-leads-to-ransomware-deployment.html",
            "ioc_type": "url",
            "category": "Threat Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:00",
            "last_seen": "2026-08-06 14:45:34"
        },
        {
            "ioc_value": "https:\/\/blog.talosintelligence.com\/new-lua-based-malware-lucidrook\/",
            "ioc_type": "url",
            "category": "Threat Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:00",
            "last_seen": "2026-08-06 14:45:34"
        },
        {
            "ioc_value": "https:\/\/web-assets.esetstatic.com\/wls\/en\/papers\/white-papers\/gopherwhisper-burrow-full-malware.pdf",
            "ioc_type": "url",
            "category": "Threat Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:00",
            "last_seen": "2026-08-06 14:45:34"
        },
        {
            "ioc_value": "https:\/\/securityintelligence.com\/news\/ta505-delivers-new-gelup-malware-tool-flowerpippi-backdoor-via-spam-campaign\/",
            "ioc_type": "url",
            "category": "Malware Families",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:03",
            "last_seen": "2026-08-06 14:45:34"
        },
        {
            "ioc_value": "https:\/\/cloud.google.com\/blog\/topics\/threat-intelligence\/unc6692-social-engineering-custom-malware\/",
            "ioc_type": "url",
            "category": "Threat Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:00",
            "last_seen": "2026-08-06 14:45:34"
        },
        {
            "ioc_value": "https:\/\/blogs.jpcert.or.jp\/en\/2018\/07\/malware-wellmes-9b78.html",
            "ioc_type": "url",
            "category": "Malware Families",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:03",
            "last_seen": "2026-08-06 14:45:34"
        },
        {
            "ioc_value": "https:\/\/www.seqrite.com\/blog\/operation-hollowquill-russian-rd-networks-malware-pdf\/",
            "ioc_type": "url",
            "category": "Threat Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:00",
            "last_seen": "2026-08-06 14:45:34"
        },
        {
            "ioc_value": "https:\/\/www.aquasec.com\/blog\/pg_mem-a-malware-hidden-in-the-postgres-processes\/",
            "ioc_type": "url",
            "category": "Threat Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:00",
            "last_seen": "2026-08-06 14:45:34"
        },
        {
            "ioc_value": "https:\/\/blog.malwarebytes.com\/threat-analysis\/2016\/10\/trick-bot-dyrezas-successor\/",
            "ioc_type": "url",
            "category": "Malware Families",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:03",
            "last_seen": "2026-08-06 14:45:34"
        },
        {
            "ioc_value": "https:\/\/blog.fraudwatchinternational.com\/malware\/trickbot-malware-works",
            "ioc_type": "url",
            "category": "Malware Families",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:03",
            "last_seen": "2026-08-06 14:45:34"
        },
        {
            "ioc_value": "https:\/\/github.com\/citizenlab\/malware-indicators\/tree\/master\/202006_DarkBasin",
            "ioc_type": "url",
            "category": "Threat Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:00",
            "last_seen": "2026-08-06 14:45:33"
        },
        {
            "ioc_value": "https:\/\/www.rewterz.com\/rewterz-news\/rewterz-threat-advisory-ivanti-vpn-zero-days-weaponized-by-unc5221-threat-actors-to-deploy-multiple-malware-families-active-iocs\/",
            "ioc_type": "url",
            "category": "Threat Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:00",
            "last_seen": "2026-08-06 14:45:33"
        },
        {
            "ioc_value": "https:\/\/claroty.com\/team82\/research\/unpacking-the-blackjack-groups-fuxnet-malware",
            "ioc_type": "url",
            "category": "ICS ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 3,
            "first_seen": "2026-08-06 13:09:23",
            "last_seen": "2026-08-06 14:45:33"
        },
        {
            "ioc_value": "https:\/\/www.welivesecurity.com\/2015\/11\/11\/operation-buhtrap-malware-distributed-via-ammyy-com\/",
            "ioc_type": "url",
            "category": "Threat Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:12:59",
            "last_seen": "2026-08-06 14:45:33"
        },
        {
            "ioc_value": "https:\/\/blog.malwarebytes.com\/threat-analysis\/2020\/07\/chinese-apt-group-targets-india-and-hong-kong-using-new-variant-of-mgbot-malware",
            "ioc_type": "url",
            "category": "Threat Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:00",
            "last_seen": "2026-08-06 14:45:33"
        },
        {
            "ioc_value": "https:\/\/www.forcepoint.com\/blog\/security-labs\/highly-evasive-code-injection-awaits-user-interaction-delivering-malware",
            "ioc_type": "url",
            "category": "Threat Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:12:59",
            "last_seen": "2026-08-06 14:45:33"
        },
        {
            "ioc_value": "http:\/\/researchcenter.paloaltonetworks.com\/2015\/09\/chinese-actors-use-3102-malware-in-attacks-on-us-government-and-eu-media\/",
            "ioc_type": "url",
            "category": "Threat Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:12:59",
            "last_seen": "2026-08-06 14:45:33"
        },
        {
            "ioc_value": "https:\/\/github.com\/eset\/malware-ioc\/tree\/master\/xdspy\/",
            "ioc_type": "url",
            "category": "Threat Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:00",
            "last_seen": "2026-08-06 14:45:33"
        },
        {
            "ioc_value": "https:\/\/socradar.io\/threats-of-commercialized-malware-knotweed\/",
            "ioc_type": "url",
            "category": "Threat Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:00",
            "last_seen": "2026-08-06 14:45:33"
        },
        {
            "ioc_value": "https:\/\/www.microsoft.com\/en-us\/wdsi\/threats\/malware-encyclopedia-description?Name=Exploit:Python\/CVE-2024-1709.A!dha&ThreatID=2147903327",
            "ioc_type": "url",
            "category": "Threat Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:00",
            "last_seen": "2026-08-06 14:45:33"
        },
        {
            "ioc_value": "http:\/\/researchcenter.paloaltonetworks.com\/2016\/05\/prince-of-persia-infy-malware-active-in-decade-of-targeted-attacks\/",
            "ioc_type": "url",
            "category": "Threat Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:12:59",
            "last_seen": "2026-08-06 14:45:33"
        },
        {
            "ioc_value": "https:\/\/www.microsoft.com\/en-us\/security\/blog\/2023\/04\/11\/dev-0196-quadreams-kingspawn-malware-used-to-target-civil-society-in-europe-north-america-the-middle-east-and-southeast-asia\/",
            "ioc_type": "url",
            "category": "Threat Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:00",
            "last_seen": "2026-08-06 14:45:33"
        },
        {
            "ioc_value": "https:\/\/unit42.paloaltonetworks.com\/prince-of-persia-infy-malware-active-in-decade-of-targeted-attacks\/",
            "ioc_type": "url",
            "category": "Threat Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:12:59",
            "last_seen": "2026-08-06 14:45:33"
        },
        {
            "ioc_value": "https:\/\/www.mandiant.com\/resources\/blog\/unc4990-evolution-usb-malware",
            "ioc_type": "url",
            "category": "Threat Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:00",
            "last_seen": "2026-08-06 14:45:33"
        },
        {
            "ioc_value": "https:\/\/www.bleepingcomputer.com\/news\/security\/lazarus-group-deploys-its-first-mac-malware-in-cryptocurrency-exchange-hack\/",
            "ioc_type": "url",
            "category": "Threat Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:12:59",
            "last_seen": "2026-08-06 14:45:33"
        },
        {
            "ioc_value": "https:\/\/www.microsoft.com\/en-us\/security\/blog\/2021\/07\/15\/protecting-customers-from-a-private-sector-offensive-actor-using-0-day-exploits-and-devilstongue-malware\/",
            "ioc_type": "url",
            "category": "Threat Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:00",
            "last_seen": "2026-08-06 14:45:33"
        },
        {
            "ioc_value": "https:\/\/socradar.io\/new-gootloader-variant-gootbot-changes-the-game-in-malware-tactics\/",
            "ioc_type": "url",
            "category": "Threat Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:00",
            "last_seen": "2026-08-06 14:45:33"
        },
        {
            "ioc_value": "https:\/\/blog.malwarebytes.com\/threat-analysis\/2019\/03\/the-advanced-persistent-threat-files-lazarus-group\/",
            "ioc_type": "url",
            "category": "Threat Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:12:59",
            "last_seen": "2026-08-06 14:45:33"
        },
        {
            "ioc_value": "https:\/\/blogs.blackberry.com\/en\/2022\/06\/threat-thursday-china-based-apt-plays-auto-updater-card-to-deliver-windealer-malware",
            "ioc_type": "url",
            "category": "Threat Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:00",
            "last_seen": "2026-08-06 14:45:33"
        },
        {
            "ioc_value": "https:\/\/iranthreats.github.io\/resources\/macdownloader-macos-malware\/",
            "ioc_type": "url",
            "category": "Threat Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:12:59",
            "last_seen": "2026-08-06 14:45:33"
        },
        {
            "ioc_value": "https:\/\/news.sophos.com\/en-us\/2020\/12\/21\/how-sunburst-malware-does-defense-evasion\/",
            "ioc_type": "url",
            "category": "Threat Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:00",
            "last_seen": "2026-08-06 14:45:33"
        },
        {
            "ioc_value": "https:\/\/www.microsoft.com\/security\/blog\/2021\/03\/04\/goldmax-goldfinder-sibot-analyzing-nobelium-malware",
            "ioc_type": "url",
            "category": "Threat Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:00",
            "last_seen": "2026-08-06 14:45:33"
        },
        {
            "ioc_value": "https:\/\/www.theregister.co.uk\/2019\/04\/10\/lazarus_group_malware\/",
            "ioc_type": "url",
            "category": "Threat Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:12:59",
            "last_seen": "2026-08-06 14:45:33"
        },
        {
            "ioc_value": "https:\/\/blog.google\/threat-analysis-group\/google-tag-coldriver-russian-phishing-malware",
            "ioc_type": "url",
            "category": "Threat Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:12:59",
            "last_seen": "2026-08-06 14:45:33"
        },
        {
            "ioc_value": "https:\/\/cybersecurity.att.com\/blogs\/labs-research\/teamtnt-delivers-malware-with-new-detection-evasion-tool",
            "ioc_type": "url",
            "category": "Threat Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:00",
            "last_seen": "2026-08-06 14:45:33"
        },
        {
            "ioc_value": "https:\/\/www.redpacketsecurity.com\/operation-poisoned-news-hong-kong-users-targeted-with-mobile-malware-via-local-news-links\/?utm_source=rss&utm_medium=rss&utm_campaign=operation-poisoned-news-hong-kong-users-targeted-with-mobile-malware-via-local-news-links",
            "ioc_type": "url",
            "category": "Threat Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:00",
            "last_seen": "2026-08-06 14:45:33"
        },
        {
            "ioc_value": "https:\/\/www.lacework.com\/blog\/androxghost-the-python-malware-exploiting-your-aws-keys\/",
            "ioc_type": "url",
            "category": "Threat Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:00",
            "last_seen": "2026-08-06 14:45:33"
        },
        {
            "ioc_value": "https:\/\/www.googlecloudcommunity.com\/gc\/Community-Blog\/Finding-Malware-Unveiling-NUMOZYLOD-with-Google-Security\/ba-p\/789551",
            "ioc_type": "url",
            "category": "Threat Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:00",
            "last_seen": "2026-08-06 14:45:33"
        },
        {
            "ioc_value": "https:\/\/cyware.com\/news\/hildegard-teamtnts-new-feature-rich-malware-targeting-kubernetes-6587eb45",
            "ioc_type": "url",
            "category": "Threat Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:00",
            "last_seen": "2026-08-06 14:45:33"
        },
        {
            "ioc_value": "https:\/\/web.archive.org\/web\/20160527050022\/https:\/\/www.symantec.com\/connect\/blogs\/swift-attackers-malware-linked-more-financial-attacks",
            "ioc_type": "url",
            "category": "Threat Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:12:59",
            "last_seen": "2026-08-06 14:45:33"
        },
        {
            "ioc_value": "https:\/\/www.welivesecurity.com\/2018\/07\/09\/certificates-stolen-taiwanese-tech-companies-plead-malware-campaign\/",
            "ioc_type": "url",
            "category": "Threat Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:00",
            "last_seen": "2026-08-06 14:45:33"
        },
        {
            "ioc_value": "https:\/\/symantec-blogs.broadcom.com\/blogs\/threat-intelligence\/fastcash-lazarus-atm-malware",
            "ioc_type": "url",
            "category": "Threat Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:12:59",
            "last_seen": "2026-08-06 14:45:33"
        },
        {
            "ioc_value": "https:\/\/www.welivesecurity.com\/2019\/05\/14\/plead-malware-mitm-asus-webstorage\/",
            "ioc_type": "url",
            "category": "Threat Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:00",
            "last_seen": "2026-08-06 14:45:33"
        },
        {
            "ioc_value": "https:\/\/www.symantec.com\/connect\/blogs\/attackers-target-dozens-global-banks-new-malware",
            "ioc_type": "url",
            "category": "Threat Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:12:59",
            "last_seen": "2026-08-06 14:45:33"
        },
        {
            "ioc_value": "https:\/\/unit42.paloaltonetworks.com\/unit42-rancor-targeted-attacks-south-east-asia-using-plaintee-ddkong-malware-families\/",
            "ioc_type": "url",
            "category": "Threat Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:12:59",
            "last_seen": "2026-08-06 14:45:33"
        },
        {
            "ioc_value": "https:\/\/blog.talosintelligence.com\/moonpeak-malware-infrastructure-north-korea\/",
            "ioc_type": "url",
            "category": "Threat Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:00",
            "last_seen": "2026-08-06 14:45:33"
        },
        {
            "ioc_value": "https:\/\/malware.news\/t\/playstation-5-hacked-twice\/54441\/1",
            "ioc_type": "url",
            "category": "Threat Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:00",
            "last_seen": "2026-08-06 14:45:33"
        },
        {
            "ioc_value": "https:\/\/github.com\/eset\/malware-research\/tree\/master\/oceanlotus",
            "ioc_type": "url",
            "category": "Threat Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:12:59",
            "last_seen": "2026-08-06 14:45:33"
        },
        {
            "ioc_value": "https:\/\/blogs.jpcert.or.jp\/en\/2020\/08\/Lazarus-malware.html",
            "ioc_type": "url",
            "category": "Threat Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:12:59",
            "last_seen": "2026-08-06 14:45:33"
        },
        {
            "ioc_value": "https:\/\/www.accenture.com\/us-en\/blogs\/blogs-pond-loach-delivers-badcake-malware",
            "ioc_type": "url",
            "category": "Threat Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:12:59",
            "last_seen": "2026-08-06 14:45:33"
        },
        {
            "ioc_value": "https:\/\/deform.co\/hacker-group-caracal-kitten-targets-kdp-activists-with-malware\/",
            "ioc_type": "url",
            "category": "Threat Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:00",
            "last_seen": "2026-08-06 14:45:33"
        },
        {
            "ioc_value": "https:\/\/securityintelligence.com\/meet-goznym-the-banking-malware-offspring-of-gozi-isfb-and-nymaim\/",
            "ioc_type": "url",
            "category": "Threat Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:00",
            "last_seen": "2026-08-06 14:45:33"
        },
        {
            "ioc_value": "https:\/\/blogs.jpcert.or.jp\/en\/2021\/01\/Lazarus_malware2.html",
            "ioc_type": "url",
            "category": "Threat Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:12:59",
            "last_seen": "2026-08-06 14:45:33"
        },
        {
            "ioc_value": "https:\/\/blog.malwarebytes.com\/threat-analysis\/2020\/07\/chinese-apt-group-targets-india-and-hong-kong-using-new-variant-of-mgbot-malware\/",
            "ioc_type": "url",
            "category": "Threat Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:00",
            "last_seen": "2026-08-06 14:45:33"
        },
        {
            "ioc_value": "https:\/\/www.europol.europa.eu\/newsroom\/news\/goznym-malware-cybercriminal-network-dismantled-in-international-operation",
            "ioc_type": "url",
            "category": "Threat Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:00",
            "last_seen": "2026-08-06 14:45:33"
        },
        {
            "ioc_value": "https:\/\/therecord.media\/hackers-using-follina-windows-zero-day-to-spread-qbot-malware\/",
            "ioc_type": "url",
            "category": "Threat Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:00",
            "last_seen": "2026-08-06 14:45:33"
        },
        {
            "ioc_value": "https:\/\/www.malwarebytes.com\/blog\/news\/2021\/12\/was-threat-actor-kax17-de-anonymizing-the-tor-network\/amp",
            "ioc_type": "url",
            "category": "Threat Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:00",
            "last_seen": "2026-08-06 14:45:33"
        },
        {
            "ioc_value": "https:\/\/www.netscout.com\/blog\/asert\/donot-team-leverages-new-modular-malware-framework-south-asia",
            "ioc_type": "url",
            "category": "Threat Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:12:59",
            "last_seen": "2026-08-06 14:45:33"
        },
        {
            "ioc_value": "https:\/\/blogs.blackberry.com\/en\/2021\/08\/blackberry-prevents-threat-actor-group-ta575-and-dridex-malware",
            "ioc_type": "url",
            "category": "Threat Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:00",
            "last_seen": "2026-08-06 14:45:33"
        },
        {
            "ioc_value": "https:\/\/web.archive.org\/web\/20160710180729\/https:\/\/www.bluecoat.com\/security-blog\/2014-12-09\/blue-coat-exposes-%E2%80%9C-inception-framework%E2%80%9D-very-sophisticated-layered-malware",
            "ioc_type": "url",
            "category": "Threat Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:12:59",
            "last_seen": "2026-08-06 14:45:33"
        },
        {
            "ioc_value": "https:\/\/www.riskiq.com\/blog\/external-threat-management\/yanbian-gang-malware-distribution\/",
            "ioc_type": "url",
            "category": "Threat Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:00",
            "last_seen": "2026-08-06 14:45:33"
        },
        {
            "ioc_value": "https:\/\/www.proofpoint.com\/us\/blog\/threat-insight\/ta575-uses-squid-game-lures-distribute-dridex-malware",
            "ioc_type": "url",
            "category": "Threat Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:00",
            "last_seen": "2026-08-06 14:45:33"
        },
        {
            "ioc_value": "https:\/\/www.zdnet.com\/article\/ta575-criminal-group-using-squid-game-lures-for-dridex-malware\/",
            "ioc_type": "url",
            "category": "Threat Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:00",
            "last_seen": "2026-08-06 14:45:33"
        },
        {
            "ioc_value": "https:\/\/www.root9b.com\/sites\/default\/files\/whitepapers\/PoS%20Malware%20ShellTea%20PoSlurp.pdf",
            "ioc_type": "url",
            "category": "Threat Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:12:59",
            "last_seen": "2026-08-06 14:45:33"
        },
        {
            "ioc_value": "https:\/\/www.trendmicro.com\/en_us\/research\/18\/f\/fakespy-android-information-stealing-malware-targets-japanese-and-korean-speaking-users.html",
            "ioc_type": "url",
            "category": "Threat Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:00",
            "last_seen": "2026-08-06 14:45:33"
        },
        {
            "ioc_value": "https:\/\/blog.trendmicro.com\/trendlabs-security-intelligence\/mobile-malware-gang-steals-millions-from-south-korean-users\/",
            "ioc_type": "url",
            "category": "Threat Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:00",
            "last_seen": "2026-08-06 14:45:33"
        },
        {
            "ioc_value": "https:\/\/securelist.com\/tomiris-called-they-want-their-turla-malware-back\/109552\/",
            "ioc_type": "url",
            "category": "Threat Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:00",
            "last_seen": "2026-08-06 14:45:33"
        },
        {
            "ioc_value": "https:\/\/www.trendmicro.com\/en_us\/research\/22\/j\/tracking-earth-aughiskys-malware-and-changes.html",
            "ioc_type": "url",
            "category": "Threat Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:00",
            "last_seen": "2026-08-06 14:45:33"
        },
        {
            "ioc_value": "https:\/\/dragos.com\/resource\/trisis-analyzing-safety-system-targeting-malware\/",
            "ioc_type": "url",
            "category": "Threat Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:00",
            "last_seen": "2026-08-06 14:45:33"
        },
        {
            "ioc_value": "https:\/\/www.dragos.com\/blog\/industry-news\/chernovite-pipedream-malware-targeting-industrial-control-systems\/",
            "ioc_type": "url",
            "category": "Threat Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:00",
            "last_seen": "2026-08-06 14:45:33"
        },
        {
            "ioc_value": "https:\/\/motherboard.vice.com\/read\/meet-babar-a-new-malware-almost-certainly-created-by-france",
            "ioc_type": "url",
            "category": "Threat Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:12:59",
            "last_seen": "2026-08-06 14:45:33"
        },
        {
            "ioc_value": "https:\/\/www.cylance.com\/en_us\/blog\/el-machete-malware-attacks-cut-through-latam.html",
            "ioc_type": "url",
            "category": "Threat Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:12:59",
            "last_seen": "2026-08-06 14:45:33"
        },
        {
            "ioc_value": "https:\/\/aptnotes.malwareconfig.com\/web\/viewer.html?file=..\/APTnotes\/2014\/apt28.pdf",
            "ioc_type": "url",
            "category": "Threat Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:12:59",
            "last_seen": "2026-08-06 14:45:33"
        },
        {
            "ioc_value": "https:\/\/www.accenture.com\/us-en\/blogs\/blogs-snakemackerel-delivers-zekapab-malware",
            "ioc_type": "url",
            "category": "Threat Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:12:59",
            "last_seen": "2026-08-06 14:45:33"
        },
        {
            "ioc_value": "https:\/\/web.archive.org\/web\/20141016080249\/http:\/\/www.symantec.com\/connect\/blogs\/security-vendors-take-action-against-hidden-lynx-malware",
            "ioc_type": "url",
            "category": "Threat Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:12:59",
            "last_seen": "2026-08-06 14:45:33"
        },
        {
            "ioc_value": "https:\/\/www.trendmicro.com\/en_us\/research\/22\/a\/investigating-apt36-or-earth-karkaddans-attack-chain-and-malware.html",
            "ioc_type": "url",
            "category": "Threat Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:12:59",
            "last_seen": "2026-08-06 14:45:33"
        },
        {
            "ioc_value": "https:\/\/securelist.com\/ios-exploit-chain-deploys-lightspy-malware\/96407\/",
            "ioc_type": "url",
            "category": "Mobile ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 4,
            "first_seen": "2026-08-06 13:09:20",
            "last_seen": "2026-08-06 14:45:33"
        },
        {
            "ioc_value": "http:\/\/blog.trendmicro.com\/trendlabs-security-intelligence\/osx_dok-mac-malware-emmental-hijacks-user-network-traffic\/",
            "ioc_type": "url",
            "category": "Threat Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:00",
            "last_seen": "2026-08-06 14:45:33"
        },
        {
            "ioc_value": "https:\/\/www.proofpoint.com\/us\/blog\/threat-insight\/copacabana-barcelona-cross-continental-threat-brazilian-banking-malware",
            "ioc_type": "url",
            "category": "Threat Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:00",
            "last_seen": "2026-08-06 14:45:33"
        },
        {
            "ioc_value": "https:\/\/unit42.paloaltonetworks.com\/malware-used-by-rocke-group-evolves-to-evade-detection-by-cloud-security-products\/",
            "ioc_type": "url",
            "category": "Threat Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:00",
            "last_seen": "2026-08-06 14:45:33"
        },
        {
            "ioc_value": "https:\/\/www.microsoft.com\/en-us\/security\/blog\/2023\/09\/12\/malware-distributor-storm-0324-facilitates-ransomware-access\/",
            "ioc_type": "url",
            "category": "Threat Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:00",
            "last_seen": "2026-08-06 14:45:33"
        },
        {
            "ioc_value": "https:\/\/www.bleepingcomputer.com\/news\/security\/windows-task-scheduler-zero-day-exploited-by-malware\/",
            "ioc_type": "url",
            "category": "Threat Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:12:59",
            "last_seen": "2026-08-06 14:45:33"
        },
        {
            "ioc_value": "https:\/\/www.accenture.com\/t20181129T203820Z__w__\/us-en\/_acnmedia\/PDF-90\/Accenture-snakemackerel-delivers-zekapab-malware.pdf",
            "ioc_type": "url",
            "category": "Threat Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:12:59",
            "last_seen": "2026-08-06 14:45:33"
        },
        {
            "ioc_value": "https:\/\/research.checkpoint.com\/2025\/nimbus-manticore-deploys-new-malware-targeting-europe",
            "ioc_type": "url",
            "category": "Threat Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:00",
            "last_seen": "2026-08-06 14:45:33"
        },
        {
            "ioc_value": "https:\/\/blog.checkpoint.com\/research\/iranian-threat-actor-nimbus-manticore-expands-campaigns-into-europe-with-advanced-malware-and-fake-job-lures\/",
            "ioc_type": "url",
            "category": "Threat Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:00",
            "last_seen": "2026-08-06 14:45:33"
        },
        {
            "ioc_value": "http:\/\/blog.jpcert.or.jp\/2017\/08\/detecting-datper-malware-from-proxy-logs.html",
            "ioc_type": "url",
            "category": "Threat Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:12:59",
            "last_seen": "2026-08-06 14:45:33"
        },
        {
            "ioc_value": "https:\/\/www.crowdstrike.com\/blog\/ironman-deep-panda-uses-sakula-malware-target-organizations-multiple-sectors\/",
            "ioc_type": "url",
            "category": "Threat Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:12:59",
            "last_seen": "2026-08-06 14:45:33"
        },
        {
            "ioc_value": "https:\/\/socprime.com\/blog\/smokeloader-malware-detection-uac-0006-hackers-launch-a-wave-of-phishing-attacks-against-ukraine-targeting-accountants\/",
            "ioc_type": "url",
            "category": "Threat Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:00",
            "last_seen": "2026-08-06 14:45:33"
        },
        {
            "ioc_value": "https:\/\/socprime.com\/blog\/latest-threats\/detect-smokeloader-malware-uac-0006-strikes-again-to-target-ukraine-in-a-series-of-phishing-attacks\/",
            "ioc_type": "url",
            "category": "Threat Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:00",
            "last_seen": "2026-08-06 14:45:33"
        },
        {
            "ioc_value": "https:\/\/www.welivesecurity.com\/2022\/10\/20\/domestic-kitten-campaign-spying-iranian-citizens-furball-malware\/",
            "ioc_type": "url",
            "category": "Threat Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:12:59",
            "last_seen": "2026-08-06 14:45:33"
        },
        {
            "ioc_value": "https:\/\/socprime.com\/blog\/smokeloader-malware-detection-uac-0006-group-reemerges-to-launch-phishing-attacks-against-ukraine-using-financial-subject-lures\/",
            "ioc_type": "url",
            "category": "Threat Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:00",
            "last_seen": "2026-08-06 14:45:33"
        },
        {
            "ioc_value": "https:\/\/quointelligence.eu\/2020\/09\/apt28-zebrocy-malware-campaign-nato-theme\/",
            "ioc_type": "url",
            "category": "Threat Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:12:59",
            "last_seen": "2026-08-06 14:45:33"
        },
        {
            "ioc_value": "https:\/\/www.bleepingcomputer.com\/news\/security\/us-arrests-chinese-man-involved-with-sakula-malware-used-in-opm-and-anthem-hacks\/",
            "ioc_type": "url",
            "category": "Threat Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:12:59",
            "last_seen": "2026-08-06 14:45:33"
        },
        {
            "ioc_value": "https:\/\/securityaffairs.co\/wordpress\/138933\/malware\/ransomexx-ransomware-rust-language.html",
            "ioc_type": "url",
            "category": "Threat Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:00",
            "last_seen": "2026-08-06 14:45:33"
        },
        {
            "ioc_value": "https:\/\/unit42.paloaltonetworks.com\/unit-42-identifies-new-dragonok-backdoor-malware-deployed-against-japanese-targets\/",
            "ioc_type": "url",
            "category": "Threat Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:12:59",
            "last_seen": "2026-08-06 14:45:33"
        },
        {
            "ioc_value": "https:\/\/www.cybersecurity-insiders.com\/rapidly-evolving-iot-malware-enemybot-now-targeting-content-management-system-servers-and-android-devices\/?utm_source=rss&utm_medium=rss&utm_campaign=rapidly-evolving-iot-malware-enemybot-now-targeting-content-management-system-servers-and-android-devices",
            "ioc_type": "url",
            "category": "Threat Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:00",
            "last_seen": "2026-08-06 14:45:33"
        },
        {
            "ioc_value": "https:\/\/www.phnompenhpost.com\/national\/kingdom-targeted-new-malware",
            "ioc_type": "url",
            "category": "Threat Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:12:59",
            "last_seen": "2026-08-06 14:45:33"
        },
        {
            "ioc_value": "https:\/\/blog.malwarebytes.com\/threat-intelligence\/2021\/12\/sidecopy-apt-connecting-lures-to-victims-payloads-to-infrastructure\/",
            "ioc_type": "url",
            "category": "Threat Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:00",
            "last_seen": "2026-08-06 14:45:33"
        },
        {
            "ioc_value": "https:\/\/www.hackread.com\/nsa-data-dump-shadowbrokers-expose-unitedrake-malware\/",
            "ioc_type": "url",
            "category": "Threat Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:00",
            "last_seen": "2026-08-06 14:45:33"
        },
        {
            "ioc_value": "https:\/\/www.enigmasoftware.com\/fuxneticsmalware-removal\/",
            "ioc_type": "url",
            "category": "Threat Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:00",
            "last_seen": "2026-08-06 14:45:33"
        },
        {
            "ioc_value": "https:\/\/www.bleepingcomputer.com\/news\/security\/hookads-malvertising-installing-malware-via-the-fallout-exploit-kit\/",
            "ioc_type": "url",
            "category": "Threat Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:00",
            "last_seen": "2026-08-06 14:45:33"
        },
        {
            "ioc_value": "https:\/\/www.securityweek.com\/destructive-ics-malware-fuxnet-used-by-ukraine-against-russian-infrastructure\/",
            "ioc_type": "url",
            "category": "Threat Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:00",
            "last_seen": "2026-08-06 14:45:33"
        },
        {
            "ioc_value": "https:\/\/www.mandiant.com\/resources\/blog\/esxi-hypervisors-malware-persistence",
            "ioc_type": "url",
            "category": "Threat Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:00",
            "last_seen": "2026-08-06 14:45:33"
        },
        {
            "ioc_value": "https:\/\/www.rewterz.com\/rewterz-news\/rewterz-threat-alert-gimmick-malware-active-iocs",
            "ioc_type": "url",
            "category": "Threat Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:00",
            "last_seen": "2026-08-06 14:45:33"
        },
        {
            "ioc_value": "https:\/\/blog.checkpoint.com\/2022\/03\/07\/lapsus-ransomware-gang-uses-stolen-source-code-to-disguise-malware-files-as-trustworthy-check-point-customers-remain-protected\/",
            "ioc_type": "url",
            "category": "Threat Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:00",
            "last_seen": "2026-08-06 14:45:33"
        },
        {
            "ioc_value": "https:\/\/telegra.ph\/Discover-Malware-Android-03-26",
            "ioc_type": "url",
            "category": "Threat Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:00",
            "last_seen": "2026-08-06 14:45:33"
        },
        {
            "ioc_value": "https:\/\/www.cybereason.com\/blog\/threat-actor-ta505-targets-financial-enterprises-using-lolbins-and-a-new-backdoor-malware",
            "ioc_type": "url",
            "category": "Threat Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:00",
            "last_seen": "2026-08-06 14:45:33"
        },
        {
            "ioc_value": "https:\/\/threatpost.com\/ta505-servhelper-malware\/140792\/",
            "ioc_type": "url",
            "category": "Threat Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:00",
            "last_seen": "2026-08-06 14:45:33"
        },
        {
            "ioc_value": "https:\/\/blog.malwarebytes.com\/threat-intelligence\/2022\/04\/new-uac-0056-activity-theres-a-go-elephant-in-the-room\/",
            "ioc_type": "url",
            "category": "Threat Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:00",
            "last_seen": "2026-08-06 14:45:33"
        },
        {
            "ioc_value": "https:\/\/www.intezer.com\/blog\/research\/elephant-malware-targeting-ukrainian-orgs\/",
            "ioc_type": "url",
            "category": "Threat Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:00",
            "last_seen": "2026-08-06 14:45:33"
        },
        {
            "ioc_value": "https:\/\/www.engadget.com\/2017\/06\/07\/russian-malware-hidden-britney-spears-instagram\/",
            "ioc_type": "url",
            "category": "Threat Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:12:59",
            "last_seen": "2026-08-06 14:45:33"
        },
        {
            "ioc_value": "https:\/\/unit42.paloaltonetworks.com\/unit42-oilrig-malware-campaign-updates-toolset-and-expands-targets\/",
            "ioc_type": "url",
            "category": "Threat Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:12:59",
            "last_seen": "2026-08-06 14:45:33"
        },
        {
            "ioc_value": "https:\/\/www.zdnet.com\/article\/this-hacking-gang-just-updated-the-malware-it-uses-against-uk-targets\/",
            "ioc_type": "url",
            "category": "Threat Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:12:59",
            "last_seen": "2026-08-06 14:45:33"
        },
        {
            "ioc_value": "https:\/\/www.proofpoint.com\/us\/threat-insight\/post\/ta2101-plays-government-imposter-distribute-malware-german-italian-and-us",
            "ioc_type": "url",
            "category": "Threat Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 3,
            "first_seen": "2026-08-06 13:13:00",
            "last_seen": "2026-08-06 14:45:33"
        },
        {
            "ioc_value": "https:\/\/www.malwarebytes.com\/blog\/threat-intelligence\/2023\/11\/associated-press-espn-cbs-among-top-sites-serving-fake-virus-alerts",
            "ioc_type": "url",
            "category": "Threat Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:00",
            "last_seen": "2026-08-06 14:45:33"
        },
        {
            "ioc_value": "https:\/\/www.systemtek.co.uk\/2018\/07\/luoxk-malware-exploiting-cve-2018-2893\/",
            "ioc_type": "url",
            "category": "Threat Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:00",
            "last_seen": "2026-08-06 14:45:33"
        },
        {
            "ioc_value": "https:\/\/www.sentinelone.com\/labs\/wip19-espionage-new-chinese-apt-targets-it-service-providers-and-telcos-with-signed-malware\/",
            "ioc_type": "url",
            "category": "Threat Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:00",
            "last_seen": "2026-08-06 14:45:33"
        },
        {
            "ioc_value": "https:\/\/www.kaspersky.com\/resource-center\/threats\/crouching-yeti-energetic-bear-malware-threat",
            "ioc_type": "url",
            "category": "Threat Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:12:59",
            "last_seen": "2026-08-06 14:45:33"
        },
        {
            "ioc_value": "https:\/\/www.sans.org\/reading-room\/whitepapers\/ICS\/impact-dragonfly-malware-industrial-control-systems-36672",
            "ioc_type": "url",
            "category": "Threat Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:12:59",
            "last_seen": "2026-08-06 14:45:33"
        },
        {
            "ioc_value": "https:\/\/unit42.paloaltonetworks.com\/unit42-menupass-returns-new-malware-new-attacks-japanese-academics-organizations\/",
            "ioc_type": "url",
            "category": "Threat Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:12:59",
            "last_seen": "2026-08-06 14:45:33"
        },
        {
            "ioc_value": "https:\/\/www.proofpoint.com\/us\/threat-insight\/post\/threat-actor-profile-ta542-banker-malware-distribution-service",
            "ioc_type": "url",
            "category": "Threat Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:00",
            "last_seen": "2026-08-06 14:45:33"
        },
        {
            "ioc_value": "https:\/\/www.malwarebytes.com\/blog\/threat-intelligence\/2023\/05\/redstinger",
            "ioc_type": "url",
            "category": "Threat Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:00",
            "last_seen": "2026-08-06 14:45:33"
        },
        {
            "ioc_value": "https:\/\/socprime.com\/blog\/somnia-malware-detection-uac-0118-aka-frwl-launches-cyber-attacks-against-organizations-in-ukraine-using-enhanced-malware-strains\/",
            "ioc_type": "url",
            "category": "Threat Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:00",
            "last_seen": "2026-08-06 14:45:33"
        },
        {
            "ioc_value": "https:\/\/www.threatconnect.com\/blog\/kasperagent-malware-campaign\/",
            "ioc_type": "url",
            "category": "Threat Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:12:59",
            "last_seen": "2026-08-06 14:45:33"
        },
        {
            "ioc_value": "https:\/\/socprime.com\/blog\/vermin-uac-0020-hacking-collective-hits-ukrainian-government-and-military-with-spectr-malware\/",
            "ioc_type": "url",
            "category": "Threat Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:00",
            "last_seen": "2026-08-06 14:45:33"
        },
        {
            "ioc_value": "https:\/\/www.trendmicro.com\/en_us\/research\/20\/k\/analysis-of-kinsing-malwares-use-of-rootkit.html",
            "ioc_type": "url",
            "category": "Threat Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:00",
            "last_seen": "2026-08-06 14:45:33"
        },
        {
            "ioc_value": "https:\/\/www.proofpoint.com\/us\/threat-insight\/post\/urlzone-top-malware-japan-while-emotet-and-line-phishing-round-out-landscape-0",
            "ioc_type": "url",
            "category": "Threat Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:00",
            "last_seen": "2026-08-06 14:45:33"
        },
        {
            "ioc_value": "https:\/\/www.proofpoint.com\/us\/threat-insight\/post\/threat-actor-profile-ta544-targets-geographies-italy-japan-range-malware",
            "ioc_type": "url",
            "category": "Threat Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:00",
            "last_seen": "2026-08-06 14:45:33"
        },
        {
            "ioc_value": "https:\/\/unit42.paloaltonetworks.com\/operation-ke3chang-resurfaces-with-new-tidepool-malware\/",
            "ioc_type": "url",
            "category": "Threat Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:12:59",
            "last_seen": "2026-08-06 14:45:33"
        },
        {
            "ioc_value": "https:\/\/www.malwarebytes.com\/blog\/news\/2024\/06\/was-t-mobile-compromised-by-a-zero-day-in-jira",
            "ioc_type": "url",
            "category": "Threat Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:00",
            "last_seen": "2026-08-06 14:45:33"
        },
        {
            "ioc_value": "https:\/\/www.ncsc.gov.uk\/static-assets\/documents\/malware-analysis-reports\/jolly-jellyfish\/NCSC-MAR-Jolly-Jellyfish.pdf",
            "ioc_type": "url",
            "category": "Threat Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:13:00",
            "last_seen": "2026-08-06 14:45:33"
        },
        {
            "ioc_value": "https:\/\/threatpost.com\/fileless-malware-campaigns-tied-to-same-attacker\/124369\/",
            "ioc_type": "url",
            "category": "Threat Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:12:59",
            "last_seen": "2026-08-06 14:45:33"
        },
        {
            "ioc_value": "https:\/\/threatvector.cylance.com\/en_us\/home\/digitally-signed-malware-targeting-gaming-companies.html",
            "ioc_type": "url",
            "category": "Threat Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:12:59",
            "last_seen": "2026-08-06 14:45:33"
        },
        {
            "ioc_value": "SecuriteInfo.com.Win64.Malware",
            "ioc_type": "other",
            "category": "Malware Attribution",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:11:31",
            "last_seen": "2026-08-06 14:44:08"
        },
        {
            "ioc_value": "https:\/\/www.team-cymru.com\/post\/fingerprinting-malware-c2s-with-tags",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:11:11",
            "last_seen": "2026-08-06 14:43:52"
        },
        {
            "ioc_value": "https:\/\/www.zscaler.com\/blogs\/security-research\/nodeloader-exposed-node-js-malware-evading-detection",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:11:10",
            "last_seen": "2026-08-06 14:43:52"
        },
        {
            "ioc_value": "https:\/\/www.activecountermeasures.com\/malware-of-the-day-tunneled-c2-beaconing\/",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:11:10",
            "last_seen": "2026-08-06 14:43:52"
        },
        {
            "ioc_value": "https:\/\/research.checkpoint.com\/2025\/minecraft-mod-malware-stargazers\/",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:11:11",
            "last_seen": "2026-08-06 14:43:52"
        },
        {
            "ioc_value": "https:\/\/www.trendmicro.com\/en_us\/research\/25\/a\/how-cracks-and-installers-bring-malware-to-your-device.html",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:11:10",
            "last_seen": "2026-08-06 14:43:52"
        },
        {
            "ioc_value": "https:\/\/github.com\/eset\/malware-ioc\/tree\/master\/ransomhub",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:11:10",
            "last_seen": "2026-08-06 14:43:52"
        },
        {
            "ioc_value": "https:\/\/www.malware-traffic-analysis.net\/2025\/09\/24\/index.html",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:11:11",
            "last_seen": "2026-08-06 14:43:52"
        },
        {
            "ioc_value": "https:\/\/x.com\/malwareforme\/status\/1809257799387361422",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:11:10",
            "last_seen": "2026-08-06 14:43:52"
        },
        {
            "ioc_value": "https:\/\/github.com\/Gi7w0rm\/MalwareConfigLists\/commit\/e9038b523a2787127643bec36e30377c44d92927",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:11:09",
            "last_seen": "2026-08-06 14:43:51"
        },
        {
            "ioc_value": "https:\/\/www.malwarebytes.com\/blog\/threat-intelligence\/2023\/10\/the-forgotten-malvertising-campaign",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:11:10",
            "last_seen": "2026-08-06 14:43:51"
        },
        {
            "ioc_value": "https:\/\/twitter.com\/malware_traffic\/status\/1732437588059832338",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:11:10",
            "last_seen": "2026-08-06 14:43:51"
        },
        {
            "ioc_value": "https:\/\/github.com\/executemalware\/Malware-IOCs\/blob\/main\/2023-09-15%20AsyncRAT%20IOCs",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:11:09",
            "last_seen": "2026-08-06 14:43:51"
        },
        {
            "ioc_value": "https:\/\/threatfox.abuse.ch\/browse\/malware\/vbs.vbrevshell\/",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:11:10",
            "last_seen": "2026-08-06 14:43:51"
        },
        {
            "ioc_value": "https:\/\/threatfox.abuse.ch\/browse\/malware\/win.empire_downloader\/",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:11:10",
            "last_seen": "2026-08-06 14:43:51"
        },
        {
            "ioc_value": "https:\/\/github.com\/executemalware\/Malware-IOCs\/blob\/main\/2023-09-27%20SocGholish_Lumma%20IOCs",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:11:10",
            "last_seen": "2026-08-06 14:43:51"
        },
        {
            "ioc_value": "https:\/\/twitter.com\/malware_traffic\/status\/1567296860439678980",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:11:09",
            "last_seen": "2026-08-06 14:43:50"
        },
        {
            "ioc_value": "https:\/\/threatfox.abuse.ch\/browse\/malware\/win.ave_maria\/",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:11:09",
            "last_seen": "2026-08-06 14:43:50"
        },
        {
            "ioc_value": "https:\/\/news.sophos.com\/en-us\/2021\/09\/01\/fake-pirated-software-sites-serve-up-malware-droppers-as-a-service\/",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:11:09",
            "last_seen": "2026-08-06 14:43:50"
        },
        {
            "ioc_value": "https:\/\/github.com\/executemalware\/Malware-IOCs\/blob\/main\/2022-07-26%20Remcos%20IOCs",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:11:09",
            "last_seen": "2026-08-06 14:43:50"
        },
        {
            "ioc_value": "https:\/\/github.com\/executemalware\/Malware-IOCs\/blob\/main\/2022-07-29%20Lokibot%20IOCs",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:11:09",
            "last_seen": "2026-08-06 14:43:50"
        },
        {
            "ioc_value": "Win.Malware.Johnnie",
            "ioc_type": "other",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:11:09",
            "last_seen": "2026-08-06 14:43:50"
        },
        {
            "ioc_value": "https:\/\/github.com\/executemalware\/Malware-IOCs\/blob\/main\/2022-08-02%20Remcos%20IOCs",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:11:09",
            "last_seen": "2026-08-06 14:43:50"
        },
        {
            "ioc_value": "https:\/\/github.com\/executemalware\/Malware-IOCs\/blob\/main\/2023-07-24%20DarkGate%20IOCs",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:11:09",
            "last_seen": "2026-08-06 14:43:50"
        },
        {
            "ioc_value": "https:\/\/securelist.com\/uncommon-infection-and-malware-propagation-methods\/107640\/",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:11:09",
            "last_seen": "2026-08-06 14:43:50"
        },
        {
            "ioc_value": "https:\/\/twitter.com\/malware_traffic\/status\/1600944054610821120",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:11:09",
            "last_seen": "2026-08-06 14:43:50"
        },
        {
            "ioc_value": "https:\/\/github.com\/executemalware\/Malware-IOCs\/blob\/main\/2022-08-10%20NetWire%20IOCs",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:11:09",
            "last_seen": "2026-08-06 14:43:50"
        },
        {
            "ioc_value": "https:\/\/www.zscaler.com\/blogs\/security-research\/statc-stealer-decoding-elusive-malware-threat",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:11:09",
            "last_seen": "2026-08-06 14:43:50"
        },
        {
            "ioc_value": "https:\/\/github.com\/executemalware\/Malware-IOCs\/blob\/main\/2022-05-09%20Redline%20IOCs",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:11:09",
            "last_seen": "2026-08-06 14:43:50"
        },
        {
            "ioc_value": "https:\/\/github.com\/0xToxin\/Malware-IOCs\/blob\/main\/Agent%20Tesla\/AgentTesla-%2017082022",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:11:09",
            "last_seen": "2026-08-06 14:43:50"
        },
        {
            "ioc_value": "https:\/\/github.com\/executemalware\/Malware-IOCs\/blob\/main\/2022-05-19%20Remcos%20IOCs",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:11:09",
            "last_seen": "2026-08-06 14:43:50"
        },
        {
            "ioc_value": "https:\/\/www.malware-traffic-analysis.net\/2022\/10\/12\/index.html",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:11:09",
            "last_seen": "2026-08-06 14:43:50"
        },
        {
            "ioc_value": "https:\/\/github.com\/0xToxin\/Malware-IOCs\/blob\/main\/Remcos%20RAT\/Remcos%20-%2024082022",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:11:09",
            "last_seen": "2026-08-06 14:43:50"
        },
        {
            "ioc_value": "https:\/\/github.com\/executemalware\/Malware-IOCs\/blob\/main\/2022-02-10%20Remcos%20IOCs",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:11:09",
            "last_seen": "2026-08-06 14:43:50"
        },
        {
            "ioc_value": "https:\/\/twitter.com\/MalwarePotato\/status\/1612764382429351939",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:11:09",
            "last_seen": "2026-08-06 14:43:50"
        },
        {
            "ioc_value": "https:\/\/twitter.com\/malware_traffic\/status\/1615824551686070278",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:11:09",
            "last_seen": "2026-08-06 14:43:50"
        },
        {
            "ioc_value": "https:\/\/twitter.com\/vxremalware\/status\/1636863275395686401",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:11:09",
            "last_seen": "2026-08-06 14:43:50"
        },
        {
            "ioc_value": "https:\/\/github.com\/Gi7w0rm\/MalwareConfigLists\/commit\/2f951a74a5ba88b341ce63a29c0714bdd5c210a1",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:11:09",
            "last_seen": "2026-08-06 14:43:50"
        },
        {
            "ioc_value": "https:\/\/github.com\/executemalware\/Malware-IOCs\/blob\/main\/2022-06-20%20Formbook%20IOCs",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:11:09",
            "last_seen": "2026-08-06 14:43:50"
        },
        {
            "ioc_value": "https:\/\/www.fortinet.com\/blog\/threat-research\/malware-disguised-as-document-ukraine-energoatom-delivers-havoc-demon-backdoor",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:11:09",
            "last_seen": "2026-08-06 14:43:50"
        },
        {
            "ioc_value": "https:\/\/github.com\/executemalware\/Malware-IOCs\/blob\/main\/2022-06-24%20AveMaria_Warzone%20RAT%20IOCs",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:11:09",
            "last_seen": "2026-08-06 14:43:50"
        },
        {
            "ioc_value": "https:\/\/github.com\/executemalware\/Malware-IOCs\/blob\/main\/2021-08-19%20Remcos%20RAT%20IOCs%202",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:11:09",
            "last_seen": "2026-08-06 14:43:50"
        },
        {
            "ioc_value": "https:\/\/github.com\/executemalware\/Malware-IOCs\/blob\/main\/2022-06-23%20Remcos%20IOCs",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:11:09",
            "last_seen": "2026-08-06 14:43:50"
        },
        {
            "ioc_value": "https:\/\/github.com\/executemalware\/Malware-IOCs\/blob\/main\/2021-09-15%20Remcos%20IOCs",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:11:09",
            "last_seen": "2026-08-06 14:43:50"
        },
        {
            "ioc_value": "https:\/\/github.com\/executemalware\/Malware-IOCs\/blob\/main\/2022-01-19%20Remcos%20IOCs",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:11:09",
            "last_seen": "2026-08-06 14:43:50"
        },
        {
            "ioc_value": "https:\/\/github.com\/executemalware\/Malware-IOCs\/blob\/main\/2021-11-08%20Vjw0rm%20IOCs",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:11:09",
            "last_seen": "2026-08-06 14:43:50"
        },
        {
            "ioc_value": "https:\/\/twitter.com\/malware_traffic\/status\/1351631078549811203",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:11:08",
            "last_seen": "2026-08-06 14:43:49"
        },
        {
            "ioc_value": "https:\/\/twitter.com\/executemalware\/status\/1260947413474381824",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:11:08",
            "last_seen": "2026-08-06 14:43:49"
        },
        {
            "ioc_value": "https:\/\/twitter.com\/malware_traffic\/status\/1277619624243314688",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:11:08",
            "last_seen": "2026-08-06 14:43:49"
        },
        {
            "ioc_value": "https:\/\/twitter.com\/executemalware\/status\/1364373989049524226",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:11:08",
            "last_seen": "2026-08-06 14:43:49"
        },
        {
            "ioc_value": "https:\/\/twitter.com\/executemalware\/status\/1390331263043739648",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:11:09",
            "last_seen": "2026-08-06 14:43:49"
        },
        {
            "ioc_value": "https:\/\/twitter.com\/malware_traffic\/status\/1390373738084982786",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:11:09",
            "last_seen": "2026-08-06 14:43:49"
        },
        {
            "ioc_value": "https:\/\/threatresearch.ext.hp.com\/javascript-malware-dispensing-rats-into-the-wild\/",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:11:09",
            "last_seen": "2026-08-06 14:43:49"
        },
        {
            "ioc_value": "https:\/\/threatfox.abuse.ch\/browse\/malware\/win.socelars\/",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:11:08",
            "last_seen": "2026-08-06 14:43:49"
        },
        {
            "ioc_value": "https:\/\/twitter.com\/malware_traffic\/status\/1321182175916679168",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:11:08",
            "last_seen": "2026-08-06 14:43:49"
        },
        {
            "ioc_value": "https:\/\/www.threatweb.com\/access\/Malware-URLs-High_Confidence_BL.txt",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:11:09",
            "last_seen": "2026-08-06 14:43:49"
        },
        {
            "ioc_value": "https:\/\/twitter.com\/malware_traffic\/status\/1357058816580403202",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:11:08",
            "last_seen": "2026-08-06 14:43:49"
        },
        {
            "ioc_value": "https:\/\/twitter.com\/malware_traffic\/status\/1331634103591063552",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:11:08",
            "last_seen": "2026-08-06 14:43:49"
        },
        {
            "ioc_value": "https:\/\/blog.sucuri.net\/2020\/11\/css-js-steganography-in-fake-flash-player-update-malware.html",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:11:08",
            "last_seen": "2026-08-06 14:43:49"
        },
        {
            "ioc_value": "https:\/\/twitter.com\/malware_traffic\/status\/1288968378951106560",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:11:08",
            "last_seen": "2026-08-06 14:43:49"
        },
        {
            "ioc_value": "https:\/\/blog.malwarebytes.com\/threat-analysis\/2020\/02\/domen-toolkit-gets-back-to-work-with-new-malvertising-campaign\/",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:11:08",
            "last_seen": "2026-08-06 14:43:49"
        },
        {
            "ioc_value": "https:\/\/twitter.com\/malware_traffic\/status\/1272973262788734977",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:11:08",
            "last_seen": "2026-08-06 14:43:49"
        },
        {
            "ioc_value": "https:\/\/twitter.com\/malware_traffic\/status\/1359585588240875529",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:11:08",
            "last_seen": "2026-08-06 14:43:49"
        },
        {
            "ioc_value": "https:\/\/unit42.paloaltonetworks.com\/script-based-malware\/",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:11:08",
            "last_seen": "2026-08-06 14:43:49"
        },
        {
            "ioc_value": "https:\/\/blogs.juniper.net\/en-us\/threat-research\/new-pastebin-like-service-used-in-multiple-malware-campaigns",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:11:08",
            "last_seen": "2026-08-06 14:43:49"
        },
        {
            "ioc_value": "https:\/\/blog.virustotal.com\/2022\/01\/monitoring-malware-abusing-cve-2020-1599.html",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:11:09",
            "last_seen": "2026-08-06 14:43:49"
        },
        {
            "ioc_value": "https:\/\/twitter.com\/malware_traffic\/status\/1216882597789360134",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:11:08",
            "last_seen": "2026-08-06 14:43:48"
        },
        {
            "ioc_value": "https:\/\/twitter.com\/DissectMalware\/status\/1006784787854581760",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:11:08",
            "last_seen": "2026-08-06 14:43:48"
        },
        {
            "ioc_value": "https:\/\/twitter.com\/malware_traffic\/status\/1217791790423650304",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:11:08",
            "last_seen": "2026-08-06 14:43:48"
        },
        {
            "ioc_value": "https:\/\/twitter.com\/malware_traffic\/status\/1146503887215636480",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:11:07",
            "last_seen": "2026-08-06 14:43:48"
        },
        {
            "ioc_value": "https:\/\/twitter.com\/malware_traffic\/status\/1237070035841175562",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:11:08",
            "last_seen": "2026-08-06 14:43:48"
        },
        {
            "ioc_value": "https:\/\/twitter.com\/malware_traffic\/status\/1129758980585283584",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:11:07",
            "last_seen": "2026-08-06 14:43:48"
        },
        {
            "ioc_value": "https:\/\/twitter.com\/malware_traffic\/status\/1237109406288011264",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:11:08",
            "last_seen": "2026-08-06 14:43:48"
        },
        {
            "ioc_value": "https:\/\/twitter.com\/malware_traffic\/status\/1190026665952497667",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:11:08",
            "last_seen": "2026-08-06 14:43:48"
        },
        {
            "ioc_value": "https:\/\/intezer.com\/blog-linux-rekoobe-operating-with-new-undetected-malware-samples",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:11:08",
            "last_seen": "2026-08-06 14:43:48"
        },
        {
            "ioc_value": "https:\/\/twitter.com\/MalwarePatrol\/status\/1139758944224731141",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:11:07",
            "last_seen": "2026-08-06 14:43:48"
        },
        {
            "ioc_value": "https:\/\/twitter.com\/MalwareTechBlog\/status\/1190730471321112577",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:11:08",
            "last_seen": "2026-08-06 14:43:48"
        },
        {
            "ioc_value": "https:\/\/twitter.com\/malware_traffic\/status\/856924240158896128",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:11:07",
            "last_seen": "2026-08-06 14:43:48"
        },
        {
            "ioc_value": "https:\/\/threatvector.cylance.com\/en_us\/home\/threat-spotlight-analyzing-azorult-infostealer-malware.html",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:11:08",
            "last_seen": "2026-08-06 14:43:48"
        },
        {
            "ioc_value": "https:\/\/twitter.com\/malware_traffic\/status\/1148330383634812933",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:11:07",
            "last_seen": "2026-08-06 14:43:48"
        },
        {
            "ioc_value": "https:\/\/twitter.com\/malware_traffic\/status\/1141083006574178304",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:11:07",
            "last_seen": "2026-08-06 14:43:48"
        },
        {
            "ioc_value": "https:\/\/www.reddit.com\/r\/sysadmin\/comments\/aswr03\/anyone_identify_this_miner_or_malware\/",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:11:08",
            "last_seen": "2026-08-06 14:43:48"
        },
        {
            "ioc_value": "https:\/\/github.com\/advanced-threat-research\/IOCs\/blob\/master\/2015\/2015-05-18-malware-spreads-facebook-tag-scam\/malware-spreads-facebook-tag-scam.csv",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:11:08",
            "last_seen": "2026-08-06 14:43:48"
        },
        {
            "ioc_value": "https:\/\/malwarebreakdown.com\/2017\/07\/24\/the-seamless-campaign-drops-ramnit-follow-up-malware-azorult-stealer-smoke-loader-etc\/",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:11:08",
            "last_seen": "2026-08-06 14:43:48"
        },
        {
            "ioc_value": "https:\/\/twitter.com\/executemalware\/status\/1141882448063737857",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:11:07",
            "last_seen": "2026-08-06 14:43:48"
        },
        {
            "ioc_value": "https:\/\/twitter.com\/casual_malware\/status\/1239760321021128706",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:11:08",
            "last_seen": "2026-08-06 14:43:48"
        },
        {
            "ioc_value": "https:\/\/twitter.com\/DissectMalware\/status\/1142979828339150850",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:11:07",
            "last_seen": "2026-08-06 14:43:48"
        },
        {
            "ioc_value": "https:\/\/twitter.com\/MalwarePatrol\/status\/1133417154009870337",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:11:07",
            "last_seen": "2026-08-06 14:43:48"
        },
        {
            "ioc_value": "https:\/\/twitter.com\/MalwarePatrol\/status\/1133054765573844993",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:11:07",
            "last_seen": "2026-08-06 14:43:48"
        },
        {
            "ioc_value": "https:\/\/twitter.com\/malware_traffic\/status\/1209638262970748929",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:11:08",
            "last_seen": "2026-08-06 14:43:48"
        },
        {
            "ioc_value": "https:\/\/twitter.com\/MalwarePatrol\/status\/1132692376848281600",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:11:07",
            "last_seen": "2026-08-06 14:43:48"
        },
        {
            "ioc_value": "https:\/\/zerophagemalware.com\/2018\/01\/23\/maldoc-rtf-drop-loda-logger\/",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:11:08",
            "last_seen": "2026-08-06 14:43:48"
        },
        {
            "ioc_value": "https:\/\/twitter.com\/executemalware\/status\/1125818675519459328",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:11:07",
            "last_seen": "2026-08-06 14:43:48"
        },
        {
            "ioc_value": "https:\/\/twitter.com\/malware_traffic\/status\/1166114783676051456",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:11:08",
            "last_seen": "2026-08-06 14:43:48"
        },
        {
            "ioc_value": "https:\/\/twitter.com\/malware_traffic\/status\/988589136163622912",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:11:08",
            "last_seen": "2026-08-06 14:43:48"
        },
        {
            "ioc_value": "https:\/\/twitter.com\/malware_traffic\/status\/1241072162750029825",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:11:08",
            "last_seen": "2026-08-06 14:43:48"
        },
        {
            "ioc_value": "https:\/\/blog.malwarebytes.com\/threat-analysis\/2018\/04\/fakeupdates-campaign-leverages-multiple-website-platforms\/",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:11:08",
            "last_seen": "2026-08-06 14:43:48"
        },
        {
            "ioc_value": "https:\/\/twitter.com\/MalwarePatrol\/status\/1134141928541446146",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:11:07",
            "last_seen": "2026-08-06 14:43:48"
        },
        {
            "ioc_value": "https:\/\/twitter.com\/DissectMalware\/status\/1126384963497205762",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:11:07",
            "last_seen": "2026-08-06 14:43:48"
        },
        {
            "ioc_value": "https:\/\/twitter.com\/DissectMalware\/status\/1069507395448184833",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:11:07",
            "last_seen": "2026-08-06 14:43:48"
        },
        {
            "ioc_value": "https:\/\/twitter.com\/malware_traffic\/status\/1143624752956940288",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:11:07",
            "last_seen": "2026-08-06 14:43:48"
        },
        {
            "ioc_value": "https:\/\/twitter.com\/MalwarePatrol\/status\/1135410287992025088",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:11:07",
            "last_seen": "2026-08-06 14:43:48"
        },
        {
            "ioc_value": "https:\/\/twitter.com\/MalwarePatrol\/status\/1140664914417205249",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:11:07",
            "last_seen": "2026-08-06 14:43:48"
        },
        {
            "ioc_value": "https:\/\/twitter.com\/malware_traffic\/status\/1210343558705795074",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:11:08",
            "last_seen": "2026-08-06 14:43:48"
        },
        {
            "ioc_value": "https:\/\/twitter.com\/malware_traffic\/status\/1169312743956066305",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:11:08",
            "last_seen": "2026-08-06 14:43:48"
        },
        {
            "ioc_value": "https:\/\/twitter.com\/malware_traffic\/status\/1169358788748615680",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:11:08",
            "last_seen": "2026-08-06 14:43:48"
        },
        {
            "ioc_value": "https:\/\/twitter.com\/malware_traffic\/status\/1157037634167984128",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:11:07",
            "last_seen": "2026-08-06 14:43:48"
        },
        {
            "ioc_value": "https:\/\/twitter.com\/malware_traffic\/status\/1136682537005305858",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:11:07",
            "last_seen": "2026-08-06 14:43:48"
        },
        {
            "ioc_value": "https:\/\/twitter.com\/malware_traffic\/status\/1136690489757974538",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:11:07",
            "last_seen": "2026-08-06 14:43:48"
        },
        {
            "ioc_value": "https:\/\/twitter.com\/malware_traffic\/status\/810966197881671680",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:11:07",
            "last_seen": "2026-08-06 14:43:48"
        },
        {
            "ioc_value": "http:\/\/malware-traffic-analysis.net\/2016\/12\/19\/index.html",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:11:07",
            "last_seen": "2026-08-06 14:43:48"
        },
        {
            "ioc_value": "https:\/\/twitter.com\/MalwarePatrol\/status\/1137041033609584640",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:11:07",
            "last_seen": "2026-08-06 14:43:48"
        },
        {
            "ioc_value": "https:\/\/twitter.com\/malware_traffic\/status\/1160988600391086081",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:11:08",
            "last_seen": "2026-08-06 14:43:48"
        },
        {
            "ioc_value": "https:\/\/www.malware-traffic-analysis.net\/2017\/12\/22\/index.html",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:11:07",
            "last_seen": "2026-08-06 14:43:48"
        },
        {
            "ioc_value": "https:\/\/twitter.com\/malware_traffic\/status\/1128019457966735360",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:11:07",
            "last_seen": "2026-08-06 14:43:48"
        },
        {
            "ioc_value": "https:\/\/twitter.com\/malware_traffic\/status\/1145793372126416897",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:11:07",
            "last_seen": "2026-08-06 14:43:48"
        },
        {
            "ioc_value": "https:\/\/twitter.com\/malware_traffic\/status\/1110176575922864128",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:11:07",
            "last_seen": "2026-08-06 14:43:47"
        },
        {
            "ioc_value": "https:\/\/twitter.com\/malware_traffic\/status\/1049407739619880961",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:11:07",
            "last_seen": "2026-08-06 14:43:47"
        },
        {
            "ioc_value": "https:\/\/www.malware-traffic-analysis.net\/2018\/10\/12\/index.html",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:11:07",
            "last_seen": "2026-08-06 14:43:47"
        },
        {
            "ioc_value": "https:\/\/twitter.com\/malware_traffic\/status\/766412267063607296",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:11:07",
            "last_seen": "2026-08-06 14:43:47"
        },
        {
            "ioc_value": "https:\/\/twitter.com\/malware_traffic\/status\/1117811800395767808",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:11:07",
            "last_seen": "2026-08-06 14:43:47"
        },
        {
            "ioc_value": "https:\/\/cofense.com\/latest-software-functionality-abuse-url-internet-shortcut-files-abused-deliver-malware\/",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:11:07",
            "last_seen": "2026-08-06 14:43:47"
        },
        {
            "ioc_value": "Win.Malware.Tovkater",
            "ioc_type": "other",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:11:07",
            "last_seen": "2026-08-06 14:43:47"
        },
        {
            "ioc_value": "https:\/\/www.threatcrowd.org\/malware.php?md5=86f8834b945bbb2968260d6fcf26b951",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:11:07",
            "last_seen": "2026-08-06 14:43:47"
        },
        {
            "ioc_value": "https:\/\/twitter.com\/executemalware\/status\/999034066258284545",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:11:07",
            "last_seen": "2026-08-06 14:43:47"
        },
        {
            "ioc_value": "https:\/\/twitter.com\/malware_traffic\/status\/1119021844416405504",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:11:07",
            "last_seen": "2026-08-06 14:43:47"
        },
        {
            "ioc_value": "https:\/\/twitter.com\/malware_traffic\/status\/1053494383708844032",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:11:07",
            "last_seen": "2026-08-06 14:43:47"
        },
        {
            "ioc_value": "https:\/\/twitter.com\/DissectMalware\/status\/1111511953061621760",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:11:07",
            "last_seen": "2026-08-06 14:43:47"
        },
        {
            "ioc_value": "https:\/\/www.malware-traffic-analysis.net\/2018\/10\/19\/index.html",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:11:07",
            "last_seen": "2026-08-06 14:43:47"
        },
        {
            "ioc_value": "Win.Malware.Shadowbrokers",
            "ioc_type": "other",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:11:07",
            "last_seen": "2026-08-06 14:43:47"
        },
        {
            "ioc_value": "https:\/\/twitter.com\/casual_malware\/status\/1107101098714656768",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:11:07",
            "last_seen": "2026-08-06 14:43:47"
        },
        {
            "ioc_value": "https:\/\/reaqta.com\/2019\/04\/ave_maria-malware-part1\/",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:11:07",
            "last_seen": "2026-08-06 14:43:47"
        },
        {
            "ioc_value": "https:\/\/twitter.com\/malware_traffic\/status\/1111049259305046016",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:11:07",
            "last_seen": "2026-08-06 14:43:47"
        },
        {
            "ioc_value": "https:\/\/twitter.com\/malware_traffic\/status\/1121097028426194944",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:11:07",
            "last_seen": "2026-08-06 14:43:47"
        },
        {
            "ioc_value": "https:\/\/twitter.com\/malware_traffic\/status\/1101164760647847936",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:11:07",
            "last_seen": "2026-08-06 14:43:47"
        },
        {
            "ioc_value": "https:\/\/twitter.com\/malware_traffic\/status\/1061039473448734722",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:11:07",
            "last_seen": "2026-08-06 14:43:47"
        },
        {
            "ioc_value": "https:\/\/twitter.com\/malware_traffic\/status\/1083771485997670400",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:11:07",
            "last_seen": "2026-08-06 14:43:47"
        },
        {
            "ioc_value": "https:\/\/twitter.com\/DissectMalware\/status\/1042276512886599680",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:11:07",
            "last_seen": "2026-08-06 14:43:47"
        },
        {
            "ioc_value": "https:\/\/twitter.com\/malware_traffic\/status\/1113586907655680001",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:11:07",
            "last_seen": "2026-08-06 14:43:47"
        },
        {
            "ioc_value": "https:\/\/twitter.com\/malware_traffic\/status\/1113975722773831680",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:11:07",
            "last_seen": "2026-08-06 14:43:47"
        },
        {
            "ioc_value": "https:\/\/www.bromium.com\/mapping-malware-distribution-network\/",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:11:07",
            "last_seen": "2026-08-06 14:43:47"
        },
        {
            "ioc_value": "Win.Malware.Autoit",
            "ioc_type": "other",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:11:07",
            "last_seen": "2026-08-06 14:43:47"
        },
        {
            "ioc_value": "https:\/\/github.com\/DoctorWebLtd\/malware-iocs\/tree\/master\/Trojan.Click3.27430",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:11:07",
            "last_seen": "2026-08-06 14:43:47"
        },
        {
            "ioc_value": "Win.Malware.Vobfus",
            "ioc_type": "other",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:11:07",
            "last_seen": "2026-08-06 14:43:47"
        },
        {
            "ioc_value": "Doc.Malware.Emooodldr",
            "ioc_type": "other",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:11:07",
            "last_seen": "2026-08-06 14:43:47"
        },
        {
            "ioc_value": "https:\/\/twitter.com\/malware_traffic\/status\/767852827200761856",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:11:07",
            "last_seen": "2026-08-06 14:43:47"
        },
        {
            "ioc_value": "amos-malware.ru",
            "ioc_type": "other",
            "category": "Scam",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 4,
            "first_seen": "2026-08-06 13:08:39",
            "last_seen": "2026-08-06 14:42:11"
        },
        {
            "ioc_value": "https:\/\/www.whiteops.com\/blog\/terracotta-android-malware-a-technical-study",
            "ioc_type": "url",
            "category": "Mobile ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:09:20",
            "last_seen": "2026-08-06 14:41:54"
        },
        {
            "ioc_value": "https:\/\/blog.trendmicro.com\/trendlabs-security-intelligence\/user-beware-rooting-malware-found-in-3rd-party-app-stores\/",
            "ioc_type": "url",
            "category": "Mobile ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:09:20",
            "last_seen": "2026-08-06 14:41:54"
        },
        {
            "ioc_value": "https:\/\/www.bleepingcomputer.com\/news\/security\/android-malware-escobar-steals-your-google-authenticator-mfa-codes\/",
            "ioc_type": "url",
            "category": "Mobile ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:09:20",
            "last_seen": "2026-08-06 14:41:54"
        },
        {
            "ioc_value": "https:\/\/www.trendmicro.com\/en_us\/research\/17\/l\/new-gnatspy-mobile-malware-family-discovered.html",
            "ioc_type": "url",
            "category": "Mobile ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:09:20",
            "last_seen": "2026-08-06 14:41:54"
        },
        {
            "ioc_value": "https:\/\/www.proofpoint.com\/us\/blog\/threat-insight\/flubot-android-malware-spreading-rapidly-through-europe-may-hit-us-soon",
            "ioc_type": "url",
            "category": "Mobile ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:09:20",
            "last_seen": "2026-08-06 14:41:54"
        },
        {
            "ioc_value": "https:\/\/www.welivesecurity.com\/2019\/02\/08\/first-clipper-malware-google-play\/",
            "ioc_type": "url",
            "category": "Mobile ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:09:20",
            "last_seen": "2026-08-06 14:41:54"
        },
        {
            "ioc_value": "http:\/\/researchcenter.paloaltonetworks.com\/2015\/08\/keyraider-ios-malware-steals-over-225000-apple-accounts-to-create-free-app-utopia\/",
            "ioc_type": "url",
            "category": "Mobile ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:09:20",
            "last_seen": "2026-08-06 14:41:54"
        },
        {
            "ioc_value": "https:\/\/www.trendmicro.com\/en_us\/research\/23\/g\/cherryblos-and-faketrade-android-malware-involved-in-scam-campai.html",
            "ioc_type": "url",
            "category": "Mobile ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:09:20",
            "last_seen": "2026-08-06 14:41:54"
        },
        {
            "ioc_value": "https:\/\/media.blackhat.com\/us-13\/US-13-Lau-Mactans-Injecting-Malware-into-iOS-Devices-via-Malicious-Chargers-WP.pdf",
            "ioc_type": "url",
            "category": "Mobile ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:09:20",
            "last_seen": "2026-08-06 14:41:54"
        },
        {
            "ioc_value": "https:\/\/medium.com\/s2wblog\/detailed-analysis-of-docswap-malware-disguised-as-security-document-viewer-218a728c36ff",
            "ioc_type": "url",
            "category": "Mobile ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:09:20",
            "last_seen": "2026-08-06 14:41:54"
        },
        {
            "ioc_value": "https:\/\/blog.zecops.com\/research\/how-ios-malware-can-spy-on-users-silently\/",
            "ioc_type": "url",
            "category": "Mobile ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:09:20",
            "last_seen": "2026-08-06 14:41:54"
        },
        {
            "ioc_value": "https:\/\/www.trendmicro.com\/en_us\/research\/22\/a\/tianyspy-malware-uses-smishing-disguised-as-message-from-telco.html",
            "ioc_type": "url",
            "category": "Mobile ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:09:20",
            "last_seen": "2026-08-06 14:41:54"
        },
        {
            "ioc_value": "https:\/\/www.cleafy.com\/cleafy-labs\/sova-malware-is-back-and-is-evolving-rapidly",
            "ioc_type": "url",
            "category": "Mobile ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:09:20",
            "last_seen": "2026-08-06 14:41:54"
        },
        {
            "ioc_value": "https:\/\/www.cyber.nj.gov\/threat-landscape\/malware\/trojans\/bankbot-spy-banker",
            "ioc_type": "url",
            "category": "Mobile ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:09:20",
            "last_seen": "2026-08-06 14:41:54"
        },
        {
            "ioc_value": "http:\/\/blog.trendmicro.com\/trendlabs-security-intelligence\/android-malware-uses-blog-posts-as-cc\/",
            "ioc_type": "url",
            "category": "Mobile ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:09:20",
            "last_seen": "2026-08-06 14:41:54"
        },
        {
            "ioc_value": "https:\/\/www.fortinet.com\/blog\/threat-research\/new-wave-bianlian-malware.html",
            "ioc_type": "url",
            "category": "Mobile ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 3,
            "first_seen": "2026-08-06 13:09:20",
            "last_seen": "2026-08-06 14:41:54"
        },
        {
            "ioc_value": "https:\/\/www.trendmicro.com\/en_za\/research\/21\/g\/strongpity-apt-group-deploys-android-malware-for-the-first-time.html",
            "ioc_type": "url",
            "category": "Mobile ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:09:20",
            "last_seen": "2026-08-06 14:41:54"
        },
        {
            "ioc_value": "https:\/\/www.welivesecurity.com\/2020\/05\/22\/insidious-android-malware-gives-up-all-malicious-features-but-one-gain-stealth\/",
            "ioc_type": "url",
            "category": "Mobile ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:09:20",
            "last_seen": "2026-08-06 14:41:54"
        },
        {
            "ioc_value": "https:\/\/www.cyber.nj.gov\/threat-profiles\/android-malware-variants\/bankbot-spybanker",
            "ioc_type": "url",
            "category": "Mobile ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:09:20",
            "last_seen": "2026-08-06 14:41:54"
        },
        {
            "ioc_value": "https:\/\/www.eset.com\/uk\/about\/newsroom\/press-releases\/first-clipper-malware-discovered-on-google-play-1\/",
            "ioc_type": "url",
            "category": "Mobile ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:09:20",
            "last_seen": "2026-08-06 14:41:54"
        },
        {
            "ioc_value": "https:\/\/news.sophos.com\/en-us\/2017\/04\/13\/android-malware-anti-emulation-techniques\/",
            "ioc_type": "url",
            "category": "Mobile ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:09:20",
            "last_seen": "2026-08-06 14:41:54"
        },
        {
            "ioc_value": "https:\/\/www.tripwire.com\/state-of-security\/security-data-protection\/android-malware-sms\/",
            "ioc_type": "url",
            "category": "Mobile ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:09:20",
            "last_seen": "2026-08-06 14:41:54"
        },
        {
            "ioc_value": "https:\/\/www.cyberscoop.com\/android-malware-motion-detection-trend-micro\/",
            "ioc_type": "url",
            "category": "Mobile ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:09:20",
            "last_seen": "2026-08-06 14:41:54"
        },
        {
            "ioc_value": "https:\/\/www.threatfabric.com\/blogs\/ginp_a_malware_patchwork_borrowing_from_anubis.html",
            "ioc_type": "url",
            "category": "Mobile ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:09:20",
            "last_seen": "2026-08-06 14:41:54"
        },
        {
            "ioc_value": "http:\/\/arstechnica.com\/security\/2017\/01\/virulent-android-malware-returns-gets-2-million-downloads-on-google-play\/",
            "ioc_type": "url",
            "category": "Mobile ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:09:20",
            "last_seen": "2026-08-06 14:41:54"
        },
        {
            "ioc_value": "https:\/\/www.cloudmark.com\/en\/blog\/malware\/tanglebot-new-advanced-sms-malware-targets-mobile-users-across-us-and-canada-covid-19",
            "ioc_type": "url",
            "category": "Mobile ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:09:20",
            "last_seen": "2026-08-06 14:41:54"
        },
        {
            "ioc_value": "https:\/\/www.blackberry.com\/us\/en\/pdfviewer?file=\/content\/dam\/blackberry-com\/asset\/enterprise\/pdf\/direct\/mobile-malware-report.pdf",
            "ioc_type": "url",
            "category": "Mobile ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:09:20",
            "last_seen": "2026-08-06 14:41:54"
        },
        {
            "ioc_value": "https:\/\/web.archive.org\/web\/20240226125457\/https:\/research.checkpoint.com\/2020\/hamas-android-malware-on-idf-soldiers-this-is-how-it-happened\/",
            "ioc_type": "url",
            "category": "Mobile ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:09:20",
            "last_seen": "2026-08-06 14:41:54"
        },
        {
            "ioc_value": "https:\/\/www.cyfirma.com\/outofband\/apt-bahamut-attacks-indian-intelligence-operative-using-android-malware\/",
            "ioc_type": "url",
            "category": "Mobile ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:09:20",
            "last_seen": "2026-08-06 14:41:54"
        },
        {
            "ioc_value": "https:\/\/www.forbes.com\/sites\/zakdoffman\/2019\/08\/16\/dangerous-new-android-trojan-hides-from-malware-researchers-and-taunts-them-on-twitter\/#1563fef26d9c",
            "ioc_type": "url",
            "category": "Mobile ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:09:20",
            "last_seen": "2026-08-06 14:41:54"
        },
        {
            "ioc_value": "https:\/\/www.trendmicro.com\/vinfo\/us\/threat-encyclopedia\/malware\/ANDROIDOS_ANSERVER.A",
            "ioc_type": "url",
            "category": "Mobile ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:09:20",
            "last_seen": "2026-08-06 14:41:54"
        },
        {
            "ioc_value": "https:\/\/news.trendmicro.com\/2021\/08\/17\/flytrap-android-malware-is-taking-over-facebook-accounts-protect-yourself-with-a-malware-scanner\/",
            "ioc_type": "url",
            "category": "Mobile ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:09:20",
            "last_seen": "2026-08-06 14:41:54"
        },
        {
            "ioc_value": "https:\/\/www.fireeye.com\/blog\/threat-research\/2016\/04\/rumms-android-malware.html",
            "ioc_type": "url",
            "category": "Mobile ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:09:20",
            "last_seen": "2026-08-06 14:41:54"
        },
        {
            "ioc_value": "https:\/\/android-developers.googleblog.com\/2017\/04\/an-investigation-of-chrysaor-malware-on.html",
            "ioc_type": "url",
            "category": "Mobile ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:09:20",
            "last_seen": "2026-08-06 14:41:54"
        },
        {
            "ioc_value": "https:\/\/www.zimperium.com\/blog\/flytrap-android-malware-compromises-thousands-of-facebook-accounts\/",
            "ioc_type": "url",
            "category": "Mobile ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:09:20",
            "last_seen": "2026-08-06 14:41:54"
        },
        {
            "ioc_value": "https:\/\/www.microsoft.com\/security\/blog\/2020\/10\/08\/sophisticated-new-android-malware-marks-the-latest-evolution-of-mobile-ransomware\/",
            "ioc_type": "url",
            "category": "Mobile ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:09:20",
            "last_seen": "2026-08-06 14:41:54"
        },
        {
            "ioc_value": "https:\/\/www.sentinelone.com\/labs\/arid-viper-apts-nest-of-spyc23-malware-continues-to-target-android-devices\/",
            "ioc_type": "url",
            "category": "Mobile ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:09:20",
            "last_seen": "2026-08-06 14:41:54"
        },
        {
            "ioc_value": "https:\/\/cyble.com\/blog\/mobile-malware-app-anubis-strikes-again-continues-to-lure-users-disguised-as-a-fake-antivirus\/",
            "ioc_type": "url",
            "category": "Mobile ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:09:20",
            "last_seen": "2026-08-06 14:41:54"
        },
        {
            "ioc_value": "https:\/\/www.trendmicro.com\/en_us\/research\/19\/a\/google-play-apps-drop-anubis-banking-malware-use-motion-based-evasion-tactics.html",
            "ioc_type": "url",
            "category": "Mobile ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:09:20",
            "last_seen": "2026-08-06 14:41:54"
        },
        {
            "ioc_value": "https:\/\/blog.zimperium.com\/how-zimperiums-z9-detected-unknown-mobile-malware-overlooked-by-the-av-industry\/",
            "ioc_type": "url",
            "category": "Mobile ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:09:20",
            "last_seen": "2026-08-06 14:41:54"
        },
        {
            "ioc_value": "https:\/\/web.archive.org\/web\/20180618225805\/https:\/\/www.wandera.com\/reddrop-malware\/",
            "ioc_type": "url",
            "category": "Mobile ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:09:20",
            "last_seen": "2026-08-06 14:41:54"
        },
        {
            "ioc_value": "https:\/\/unit42.paloaltonetworks.com\/yispecter-first-ios-malware-attacks-non-jailbroken-ios-devices-by-abusing-private-apis\/",
            "ioc_type": "url",
            "category": "Mobile ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:09:20",
            "last_seen": "2026-08-06 14:41:54"
        },
        {
            "ioc_value": "https:\/\/www.lookout.com\/documents\/threat-reports\/us\/lookout-uyghur-malware-tr-us.pdf",
            "ioc_type": "url",
            "category": "Mobile ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:09:20",
            "last_seen": "2026-08-06 14:41:54"
        },
        {
            "ioc_value": "https:\/\/www.zscaler.com\/blogs\/security-research\/super-mario-run-malware-2-droidjack-rat",
            "ioc_type": "url",
            "category": "Mobile ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:09:20",
            "last_seen": "2026-08-06 14:41:54"
        },
        {
            "ioc_value": "https:\/\/research.checkpoint.com\/2019\/agent-smith-a-new-species-of-mobile-malware\/",
            "ioc_type": "url",
            "category": "Mobile ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:09:20",
            "last_seen": "2026-08-06 14:41:54"
        },
        {
            "ioc_value": "https:\/\/research.checkpoint.com\/2021\/new-wormable-android-malware-spreads-by-creating-auto-replies-to-messages-in-whatsapp\/",
            "ioc_type": "url",
            "category": "Mobile ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:09:20",
            "last_seen": "2026-08-06 14:41:54"
        },
        {
            "ioc_value": "https:\/\/www.merklescience.com\/blog\/the-godfather-android-malware-threat-under-the-lens",
            "ioc_type": "url",
            "category": "Mobile ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:09:20",
            "last_seen": "2026-08-06 14:41:54"
        },
        {
            "ioc_value": "https:\/\/blog.checkpoint.com\/2017\/05\/25\/judy-malware-possibly-largest-malware-campaign-found-google-play\/",
            "ioc_type": "url",
            "category": "Mobile ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:09:20",
            "last_seen": "2026-08-06 14:41:54"
        },
        {
            "ioc_value": "https:\/\/blog.talosintelligence.com\/2018\/07\/Mobile-Malware-Campaign-uses-Malicious-MDM.html",
            "ioc_type": "url",
            "category": "Mobile ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:09:20",
            "last_seen": "2026-08-06 14:41:54"
        },
        {
            "ioc_value": "https:\/\/securelist.com\/dvmap-the-first-android-malware-with-code-injection\/78648\/",
            "ioc_type": "url",
            "category": "Mobile ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:09:20",
            "last_seen": "2026-08-06 14:41:54"
        },
        {
            "ioc_value": "http:\/\/arstechnica.com\/security\/2016\/07\/virulent-auto-rooting-malware-takes-control-of-10-million-android-devices\/",
            "ioc_type": "url",
            "category": "Mobile ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:09:20",
            "last_seen": "2026-08-06 14:41:54"
        },
        {
            "ioc_value": "https:\/\/www.welivesecurity.com\/2019\/06\/17\/malware-google-permissions-2fa-bypass\/",
            "ioc_type": "url",
            "category": "Mobile ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:09:20",
            "last_seen": "2026-08-06 14:41:54"
        },
        {
            "ioc_value": "http:\/\/blog.trendmicro.com\/trendlabs-security-intelligence\/cybercriminals-improve-android-malware-stealth-routines-with-obad\/",
            "ioc_type": "url",
            "category": "Mobile ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:09:20",
            "last_seen": "2026-08-06 14:41:54"
        },
        {
            "ioc_value": "https:\/\/promon.io\/security-news\/fjordphantom-android-malware",
            "ioc_type": "url",
            "category": "Mobile ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:09:20",
            "last_seen": "2026-08-06 14:41:54"
        },
        {
            "ioc_value": "https:\/\/www.nowsecure.com\/blog\/2017\/05\/25\/android-overlay-malware-system-alert-window-permission\/",
            "ioc_type": "url",
            "category": "Mobile ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:09:20",
            "last_seen": "2026-08-06 14:41:54"
        },
        {
            "ioc_value": "http:\/\/blog.checkpoint.com\/2017\/01\/24\/charger-malware\/",
            "ioc_type": "url",
            "category": "Mobile ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:09:20",
            "last_seen": "2026-08-06 14:41:54"
        },
        {
            "ioc_value": "https:\/\/securelist.com\/mobile-malware-evolution-2013\/58335\/",
            "ioc_type": "url",
            "category": "Mobile ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:09:20",
            "last_seen": "2026-08-06 14:41:54"
        },
        {
            "ioc_value": "https:\/\/web.archive.org\/web\/20221114031945\/https:\/\/blog.cyble.com\/2022\/10\/27\/drinik-malware-returns-with-advanced-capabilities-targeting-indian-taxpayers\/",
            "ioc_type": "url",
            "category": "Mobile ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:09:20",
            "last_seen": "2026-08-06 14:41:54"
        },
        {
            "ioc_value": "https:\/\/www.lookout.com\/blog\/lookout-discovers-global-rooting-malware-campaign",
            "ioc_type": "url",
            "category": "Mobile ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:09:20",
            "last_seen": "2026-08-06 14:41:54"
        },
        {
            "ioc_value": "http:\/\/researchcenter.paloaltonetworks.com\/2015\/09\/novel-malware-xcodeghost-modifies-xcode-infects-apple-ios-apps-and-hits-app-store\/",
            "ioc_type": "url",
            "category": "Mobile ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:09:20",
            "last_seen": "2026-08-06 14:41:54"
        },
        {
            "ioc_value": "https:\/\/cyble.com\/blog\/chameleon-a-new-android-malware-spotted-in-the-wild\/",
            "ioc_type": "url",
            "category": "Mobile ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:09:20",
            "last_seen": "2026-08-06 14:41:54"
        },
        {
            "ioc_value": "https:\/\/researchcenter.paloaltonetworks.com\/2014\/11\/wirelurker-new-era-os-x-ios-malware\/",
            "ioc_type": "url",
            "category": "Mobile ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:09:20",
            "last_seen": "2026-08-06 14:41:54"
        },
        {
            "ioc_value": "http:\/\/blog.checkpoint.com\/2015\/09\/21\/braintest-a-new-level-of-sophistication-in-mobile-malware\/",
            "ioc_type": "url",
            "category": "Mobile ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:09:20",
            "last_seen": "2026-08-06 14:41:54"
        },
        {
            "ioc_value": "amosmalware.run",
            "ioc_type": "other",
            "category": "Scam",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:08:39",
            "last_seen": "2026-08-06 14:41:07"
        },
        {
            "ioc_value": "https:\/\/twitter.com\/malware_traffic\/status\/1592262598195646464",
            "ioc_type": "url",
            "category": "Malware Attribution",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:07:44",
            "last_seen": "2026-08-06 14:40:05"
        },
        {
            "ioc_value": "malwaredomainlist.com",
            "ioc_type": "other",
            "category": "IP Blocklists",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 4,
            "first_seen": "2026-08-06 13:07:12",
            "last_seen": "2026-08-06 14:39:27"
        },
        {
            "ioc_value": "http:\/\/www.malwaredomainlist.com)",
            "ioc_type": "url",
            "category": "IP Blocklists",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:07:12",
            "last_seen": "2026-08-06 14:39:27"
        },
        {
            "ioc_value": "http:\/\/www.malwaredomainlist.com\/",
            "ioc_type": "url",
            "category": "IP Blocklists",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:07:12",
            "last_seen": "2026-08-06 14:39:27"
        },
        {
            "ioc_value": "http:\/\/www.malwaredomainlist.com\/hostslist\/ip.txt",
            "ioc_type": "url",
            "category": "IP Blocklists",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:07:12",
            "last_seen": "2026-08-06 14:39:27"
        },
        {
            "ioc_value": "http:\/\/iplists.firehol.org\/?ipset=malwaredomainlist",
            "ioc_type": "url",
            "category": "IP Blocklists",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:07:12",
            "last_seen": "2026-08-06 14:39:27"
        },
        {
            "ioc_value": "http:\/\/urandom.us.to\/report.php?ip=&info=&tag=malware&out=txt&submit=go",
            "ioc_type": "url",
            "category": "IP Blocklists",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:05:04",
            "last_seen": "2026-08-06 14:37:19"
        },
        {
            "ioc_value": "http:\/\/iplists.firehol.org\/?ipset=urandomusto_malware",
            "ioc_type": "url",
            "category": "IP Blocklists",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 2,
            "first_seen": "2026-08-06 13:05:04",
            "last_seen": "2026-08-06 14:37:19"
        },
        {
            "ioc_value": "https:\/\/github.com\/albertzsigovits\/malware-notes\/tree\/master\/Ransomware-Windows-Yanluowang",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:02",
            "last_seen": "2026-08-06 13:13:02"
        },
        {
            "ioc_value": "https:\/\/securityaffairs.com\/170717\/malware\/veeam-backup-replication-flaw-frag-ransomware.html",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:02",
            "last_seen": "2026-08-06 13:13:02"
        },
        {
            "ioc_value": "https:\/\/www.bleepingcomputer.com\/news\/security\/kraken-ransomware-distributed-via-malware-infected-installers\/",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:02",
            "last_seen": "2026-08-06 13:13:02"
        },
        {
            "ioc_value": "https:\/\/any.run\/malware-trends\/fargo",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:02",
            "last_seen": "2026-08-06 13:13:02"
        },
        {
            "ioc_value": "https:\/\/www.trendmicro.com\/vinfo\/be\/threat-encyclopedia\/malware\/ransom.win32.darkrace.thcofbd",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:02",
            "last_seen": "2026-08-06 13:13:02"
        },
        {
            "ioc_value": "https:\/\/zerophagemalware.com\/2017\/10\/13\/rig-ek-via-malvertising-drops-a-miner\/",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:02",
            "last_seen": "2026-08-06 13:13:02"
        },
        {
            "ioc_value": "https:\/\/quorumcyber.com\/malware-reports\/3am-ransomware-report\/",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:02",
            "last_seen": "2026-08-06 13:13:02"
        },
        {
            "ioc_value": "https:\/\/www.trendmicro.com\/en_us\/research\/19\/j\/anubis-malware-family-returns-with-new-variants.html",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:02",
            "last_seen": "2026-08-06 13:13:02"
        },
        {
            "ioc_value": "https:\/\/cyble.com\/blog\/crosslock-ransomware-emerges-new-golang-based-malware-on-the-horizon",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:02",
            "last_seen": "2026-08-06 13:13:02"
        },
        {
            "ioc_value": "https:\/\/wwwMicrosoft.com\/en-us\/wdsi\/threats\/malware-encyclopedia-description?Name=Ransom%3AWin64%2FKnight.ZB!MTB",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:02",
            "last_seen": "2026-08-06 13:13:02"
        },
        {
            "ioc_value": "https:\/\/www.quorumcyber.com\/malware-reports\/knight-ransomware-report\/",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:02",
            "last_seen": "2026-08-06 13:13:02"
        },
        {
            "ioc_value": "https:\/\/www.trendmicro.com\/vinfo\/us\/threat-encyclopedia\/malware\/ransom.win32.arcrypter.a",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:02",
            "last_seen": "2026-08-06 13:13:02"
        },
        {
            "ioc_value": "https:\/\/www.infosecinstitute.com\/resources\/malware-analysis\/astralocker-releases-the-ransomware-decryptors\/",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:02",
            "last_seen": "2026-08-06 13:13:02"
        },
        {
            "ioc_value": "http:\/\/www.nyxbone.com\/malware\/venusLocker.html",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:01",
            "last_seen": "2026-08-06 13:13:01"
        },
        {
            "ioc_value": "https:\/\/github.com\/Haxrein\/Malware-Analysis-Reports\/blob\/main\/darkside_ransomware_technical_analysis_report.pdf",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:01",
            "last_seen": "2026-08-06 13:13:01"
        },
        {
            "ioc_value": "http:\/\/www.nyxbone.com\/malware\/Virlock.html",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:01",
            "last_seen": "2026-08-06 13:13:01"
        },
        {
            "ioc_value": "https:\/\/github.com\/sisoma2\/malware_analysis\/tree\/master\/blackmatter",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:01",
            "last_seen": "2026-08-06 13:13:01"
        },
        {
            "ioc_value": "https:\/\/blog.malwarebytes.org\/threat-analysis\/2016\/03\/maktub-locker-beautiful-and-dangerous\/",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:01",
            "last_seen": "2026-08-06 13:13:01"
        },
        {
            "ioc_value": "https:\/\/www.trendmicro.com\/vinfo\/us\/threat-encyclopedia\/malware\/ransom.win32.crylock.h",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:01",
            "last_seen": "2026-08-06 13:13:01"
        },
        {
            "ioc_value": "https:\/\/www.zdnet.com\/article\/revil-ransomware-gang-acquires-kpot-malware\/",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:01",
            "last_seen": "2026-08-06 13:13:01"
        },
        {
            "ioc_value": "https:\/\/www.microsoft.com\/en-us\/wdsi\/threats\/malware-encyclopedia-description?Name=ransom:win32\/wadhrama.c&ThreatID=2147730655",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:01",
            "last_seen": "2026-08-06 13:13:01"
        },
        {
            "ioc_value": "http:\/\/www.nyxbone.com\/malware\/CryptoMix.html",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:01",
            "last_seen": "2026-08-06 13:13:01"
        },
        {
            "ioc_value": "http:\/\/www.nyxbone.com\/malware\/virus-encoder.html",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:01",
            "last_seen": "2026-08-06 13:13:01"
        },
        {
            "ioc_value": "https:\/\/github.com\/k-vitali\/Malware-Misc-RE\/blob\/master\/2020-01-26-ragnarok-cfg-vk.notes.raw",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:01",
            "last_seen": "2026-08-06 13:13:01"
        },
        {
            "ioc_value": "https:\/\/github.com\/albertzsigovits\/malware-notes\/blob\/master\/Snatch.md",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:01",
            "last_seen": "2026-08-06 13:13:01"
        },
        {
            "ioc_value": "https:\/\/blog.malwarebytes.com\/threat-spotlight\/2021\/03\/pysa-the-ransomware-attacking-schools",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:01",
            "last_seen": "2026-08-06 13:13:01"
        },
        {
            "ioc_value": "https:\/\/www.cadosecurity.com\/resources-for-dfir-professionals-responding-to-whispergate-malware\/",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:01",
            "last_seen": "2026-08-06 13:13:01"
        },
        {
            "ioc_value": "http:\/\/www.nyxbone.com\/malware\/Mircop.html",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:01",
            "last_seen": "2026-08-06 13:13:01"
        },
        {
            "ioc_value": "https:\/\/github.com\/albertzsigovits\/malware-notes\/blob\/master\/Nemty.md",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:01",
            "last_seen": "2026-08-06 13:13:01"
        },
        {
            "ioc_value": "https:\/\/raw.githubusercontent.com\/k-vitali\/Malware-Misc-RE\/master\/2019-08-24-nemty-ransomware-notes.vk.raw",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:01",
            "last_seen": "2026-08-06 13:13:01"
        },
        {
            "ioc_value": "https:\/\/www.crowdstrike.com\/blog\/financial-motivation-drives-golang-malware-adoption\/",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:01",
            "last_seen": "2026-08-06 13:13:01"
        },
        {
            "ioc_value": "https:\/\/www.elastic.co\/security-labs\/cuba-ransomware-malware-analysis",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:01",
            "last_seen": "2026-08-06 13:13:01"
        },
        {
            "ioc_value": "http:\/\/nyxbone.com\/malware\/Mobef.html",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:01",
            "last_seen": "2026-08-06 13:13:01"
        },
        {
            "ioc_value": "https:\/\/www.vmware.com\/content\/dam\/digitalmarketing\/vmware\/en\/pdf\/docs\/vmw-exposing-malware-in-linux-based-multi-cloud-environments.pdf",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:01",
            "last_seen": "2026-08-06 13:13:01"
        },
        {
            "ioc_value": "http:\/\/nyxbone.com\/images\/articulos\/malware\/mobef\/0.png",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:01",
            "last_seen": "2026-08-06 13:13:01"
        },
        {
            "ioc_value": "https:\/\/blog.amossys.fr\/sodinokibi-malware-analysis.html",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:01",
            "last_seen": "2026-08-06 13:13:01"
        },
        {
            "ioc_value": "https:\/\/blog.malwarebytes.com\/threat-analysis\/2020\/11\/german-users-targeted-with-gootkit-banker-or-revil-ransomware\/",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:01",
            "last_seen": "2026-08-06 13:13:01"
        },
        {
            "ioc_value": "https:\/\/blog.malwarebytes.com\/threat-analysis\/2017\/05\/jaff-ransomware-analysis\/",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:01",
            "last_seen": "2026-08-06 13:13:01"
        },
        {
            "ioc_value": "https:\/\/blog.cisecurity.org\/malware-analysis-report-nemucod-ransomware\/",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:01",
            "last_seen": "2026-08-06 13:13:01"
        },
        {
            "ioc_value": "https:\/\/blog.malwarebytes.com\/threat-spotlight\/2016\/05\/cryptxxx-ransomware-now-steals-more\/",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:01",
            "last_seen": "2026-08-06 13:13:01"
        },
        {
            "ioc_value": "https:\/\/securityaffairs.co\/wordpress\/119306\/malware\/lv-ransomware-repurposed-revil-binary.html",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:01",
            "last_seen": "2026-08-06 13:13:01"
        },
        {
            "ioc_value": "https:\/\/intezer.com\/blog\/linux\/elf-malware-analysis-101-linux-threats-no-longer-an-afterthought",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:01",
            "last_seen": "2026-08-06 13:13:01"
        },
        {
            "ioc_value": "https:\/\/www.nozominetworks.com\/blog\/how-to-analyze-malware-for-technical-writing\/",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:01",
            "last_seen": "2026-08-06 13:13:01"
        },
        {
            "ioc_value": "https:\/\/intel471.com\/blog\/malware-before-ransomware-trojan-information-stealer-cobalt-strike",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:01",
            "last_seen": "2026-08-06 13:13:01"
        },
        {
            "ioc_value": "https:\/\/blog.malwarebytes.com\/threat-intelligence\/2021\/07\/avoslocker-enters-the-ransomware-scene-asks-for-partners",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:01",
            "last_seen": "2026-08-06 13:13:01"
        },
        {
            "ioc_value": "https:\/\/blog.malwarebytes.com\/threat-analysis\/2021\/07\/avoslocker-enters-the-ransomware-scene-asks-for-partners\/",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:01",
            "last_seen": "2026-08-06 13:13:01"
        },
        {
            "ioc_value": "https:\/\/www.intezer.com\/blog\/malware-analysis\/when-viruses-mutate-did-suncrypt-ransomware-evolve-from-qnapcrypt",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:01",
            "last_seen": "2026-08-06 13:13:01"
        },
        {
            "ioc_value": "http:\/\/www.nyxbone.com\/malware\/odcodc.html",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:01",
            "last_seen": "2026-08-06 13:13:01"
        },
        {
            "ioc_value": "http:\/\/www.malwareremovalguides.info\/decrypt-files-with-decrypt_mblblock-exe-decrypt-protect\/",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:01",
            "last_seen": "2026-08-06 13:13:01"
        },
        {
            "ioc_value": "http:\/\/www.nyxbone.com\/images\/articulos\/malware\/odcodc\/1c.png",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:01",
            "last_seen": "2026-08-06 13:13:01"
        },
        {
            "ioc_value": "http:\/\/www.nyxbone.com\/malware\/DEDCryptor.html",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:01",
            "last_seen": "2026-08-06 13:13:01"
        },
        {
            "ioc_value": "https:\/\/blog.malwarebytes.org\/threat-analysis\/2016\/02\/dma-locker-a-new-ransomware-but-no-reason-to-panic\/",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:01",
            "last_seen": "2026-08-06 13:13:01"
        },
        {
            "ioc_value": "https:\/\/www.zdnet.com\/article\/the-malware-that-usually-installs-ransomware-and-you-need-to-remove-right-away\/",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:01",
            "last_seen": "2026-08-06 13:13:01"
        },
        {
            "ioc_value": "https:\/\/cocomelonc.github.io\/tutorial\/2022\/04\/02\/malware-injection-18.html",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:01",
            "last_seen": "2026-08-06 13:13:01"
        },
        {
            "ioc_value": "https:\/\/blog.malwarebytes.org\/threat-analysis\/2016\/02\/dma-locker-strikes-back\/",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:01",
            "last_seen": "2026-08-06 13:13:01"
        },
        {
            "ioc_value": "https:\/\/blog.malwarebytes.com\/cybercrime\/2017\/02\/decrypting-after-a-findzip-ransomware-infection\/",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:01",
            "last_seen": "2026-08-06 13:13:01"
        },
        {
            "ioc_value": "http:\/\/www.nyxbone.com\/malware\/Domino.html",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:01",
            "last_seen": "2026-08-06 13:13:01"
        },
        {
            "ioc_value": "http:\/\/nyxbone.com\/malware\/Anubis.html",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:01",
            "last_seen": "2026-08-06 13:13:01"
        },
        {
            "ioc_value": "https:\/\/blog.malwarebytes.org\/threat-analysis\/2016\/04\/petya-ransomware\/",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:01",
            "last_seen": "2026-08-06 13:13:01"
        },
        {
            "ioc_value": "https:\/\/raw.githubusercontent.com\/k-vitali\/Malware-Misc-RE\/master\/2022-05-01-revil-reborn-ransom.vk.cfg.txt",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:01",
            "last_seen": "2026-08-06 13:13:01"
        },
        {
            "ioc_value": "https:\/\/resources.malwarebytes.com\/files\/2020\/02\/2020_State-of-Malware-Report.pdf",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:01",
            "last_seen": "2026-08-06 13:13:01"
        },
        {
            "ioc_value": "https:\/\/github.com\/Dump-GUY\/Malware-analysis-and-Reverse-engineering\/blob\/main\/NightSky_Ransomware%E2%80%93just_a_Rook_RW_fork_in_VMProtect_suit\/NightSky_Ransomware%E2%80%93just_a_Rook_RW_fork_in_VMProtect_suit.md",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:01",
            "last_seen": "2026-08-06 13:13:01"
        },
        {
            "ioc_value": "http:\/\/www.nyxbone.com\/malware\/pokemonGO.html",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:01",
            "last_seen": "2026-08-06 13:13:01"
        },
        {
            "ioc_value": "https:\/\/raw.githubusercontent.com\/stamparm\/maltrail\/master\/trails\/static\/malware\/hitler_ransomware.txt",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:01",
            "last_seen": "2026-08-06 13:13:01"
        },
        {
            "ioc_value": "https:\/\/securityaffairs.co\/wordpress\/98694\/malware\/sodinokibi-kenneth-cole-data-breach.html",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:01",
            "last_seen": "2026-08-06 13:13:01"
        },
        {
            "ioc_value": "http:\/\/researchcenter.paloaltonetworks.com\/2016\/07\/unit42-powerware-ransomware-spoofing-locky-malware-family\/",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:01",
            "last_seen": "2026-08-06 13:13:01"
        },
        {
            "ioc_value": "https:\/\/blog.malwarebytes.com\/threat-analysis\/2016\/11\/princess-ransomware\/",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:01",
            "last_seen": "2026-08-06 13:13:01"
        },
        {
            "ioc_value": "https:\/\/blog.lexfo.fr\/lockbit-malware.html",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:01",
            "last_seen": "2026-08-06 13:13:01"
        },
        {
            "ioc_value": "https:\/\/github.com\/albertzsigovits\/malware-notes\/blob\/master\/Maze.md",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:01",
            "last_seen": "2026-08-06 13:13:01"
        },
        {
            "ioc_value": "https:\/\/github.com\/albertzsigovits\/malware-notes\/blob\/master\/Ransomware\/Maze.md",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:01",
            "last_seen": "2026-08-06 13:13:01"
        },
        {
            "ioc_value": "https:\/\/github.com\/albertzsigovits\/malware-notes\/blob\/master\/Ransomware\/Lockbit.md",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:01",
            "last_seen": "2026-08-06 13:13:01"
        },
        {
            "ioc_value": "https:\/\/intel471.com\/blog\/privateloader-malware",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:01",
            "last_seen": "2026-08-06 13:13:01"
        },
        {
            "ioc_value": "https:\/\/thehackernews.com\/2022\/05\/malware-analysis-trickbot.html",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:01",
            "last_seen": "2026-08-06 13:13:01"
        },
        {
            "ioc_value": "https:\/\/github.com\/rivitna\/Malware\/tree\/main\/Hive",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:01",
            "last_seen": "2026-08-06 13:13:01"
        },
        {
            "ioc_value": "http:\/\/www.nyxbone.com\/malware\/radamant.html",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:01",
            "last_seen": "2026-08-06 13:13:01"
        },
        {
            "ioc_value": "https:\/\/unit42.paloaltonetworks.com\/bumblebee-malware-projector-libra\/",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:01",
            "last_seen": "2026-08-06 13:13:01"
        },
        {
            "ioc_value": "https:\/\/securityaffairs.co\/wordpress\/127826\/malware\/egregor-sekhmet-decryption-keys.html",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:01",
            "last_seen": "2026-08-06 13:13:01"
        },
        {
            "ioc_value": "https:\/\/seguranca-informatica.pt\/malware-analysis-details-on-lockbit-ransomware\/",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:01",
            "last_seen": "2026-08-06 13:13:01"
        },
        {
            "ioc_value": "http:\/\/www.nyxbone.com\/malware\/CryptoHasYou.html",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:01",
            "last_seen": "2026-08-06 13:13:01"
        },
        {
            "ioc_value": "http:\/\/www.nyxbone.com\/malware\/Razy(German).html",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:01",
            "last_seen": "2026-08-06 13:13:01"
        },
        {
            "ioc_value": "https:\/\/github.com\/hasherezade\/malware_analysis\/tree\/master\/7ev3n",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:01",
            "last_seen": "2026-08-06 13:13:01"
        },
        {
            "ioc_value": "http:\/\/nyxbone.com\/malware\/Razy.html",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:01",
            "last_seen": "2026-08-06 13:13:01"
        },
        {
            "ioc_value": "http:\/\/www.nyxbone.com\/malware\/7ev3n-HONE$T.html",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:01",
            "last_seen": "2026-08-06 13:13:01"
        },
        {
            "ioc_value": "https:\/\/www.bankinfosecurity.com\/cybercrime-moves-conti-ransomware-absorbs-trickbot-malware-a-18573",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:01",
            "last_seen": "2026-08-06 13:13:01"
        },
        {
            "ioc_value": "https:\/\/www.cyfirma.com\/outofband\/malware-research-on-atomsilo-ransomware\/",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:01",
            "last_seen": "2026-08-06 13:13:01"
        },
        {
            "ioc_value": "http:\/\/www.nyxbone.com\/malware\/RemindMe.html",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:01",
            "last_seen": "2026-08-06 13:13:01"
        },
        {
            "ioc_value": "https:\/\/www.bleepingcomputer.com\/news\/security\/conti-ransomware-gang-takes-over-trickbot-malware-operation\/",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:01",
            "last_seen": "2026-08-06 13:13:01"
        },
        {
            "ioc_value": "https:\/\/seguranca-informatica.pt\/ragnar-locker-malware-analysis\/",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:01",
            "last_seen": "2026-08-06 13:13:01"
        },
        {
            "ioc_value": "https:\/\/blog.malwarebytes.org\/threat-analysis\/2016\/04\/rokku-ransomware\/",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:01",
            "last_seen": "2026-08-06 13:13:01"
        },
        {
            "ioc_value": "https:\/\/twitter.com\/malwarebread\/status\/804714048499621888",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:01",
            "last_seen": "2026-08-06 13:13:01"
        },
        {
            "ioc_value": "https:\/\/malwarebreakdown.com\/2017\/03\/16\/sage-2-2-ransomware-from-good-man-gate",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:01",
            "last_seen": "2026-08-06 13:13:01"
        },
        {
            "ioc_value": "https:\/\/malwarebreakdown.com\/2017\/03\/10\/finding-a-good-man\/",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:01",
            "last_seen": "2026-08-06 13:13:01"
        },
        {
            "ioc_value": "http:\/\/www.nyxbone.com\/malware\/hibuddy.html",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:01",
            "last_seen": "2026-08-06 13:13:01"
        },
        {
            "ioc_value": "https:\/\/blog.malwarebytes.com\/wp-content\/uploads\/2020\/11\/Sekhmet_ransom_note.png",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:01",
            "last_seen": "2026-08-06 13:13:01"
        },
        {
            "ioc_value": "https:\/\/blog.malwarebytes.com\/detections\/ransom-sekhmet\/",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:01",
            "last_seen": "2026-08-06 13:13:01"
        },
        {
            "ioc_value": "https:\/\/www.bleepingcomputer.com\/news\/security\/revil-ransomware-returns-new-malware-sample-confirms-gang-is-back\/",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:01",
            "last_seen": "2026-08-06 13:13:01"
        },
        {
            "ioc_value": "https:\/\/www.certego.net\/en\/news\/malware-tales-ftcode\/",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:01",
            "last_seen": "2026-08-06 13:13:01"
        },
        {
            "ioc_value": "http:\/\/www.malware-traffic-analysis.net\/2016\/02\/03\/index2.html",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:01",
            "last_seen": "2026-08-06 13:13:01"
        },
        {
            "ioc_value": "https:\/\/blog.malwarebytes.com\/threat-analysis\/2016\/06\/satana-ransomware\/",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:01",
            "last_seen": "2026-08-06 13:13:01"
        },
        {
            "ioc_value": "http:\/\/www.nyxbone.com\/malware\/BadBlock.html",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:01",
            "last_seen": "2026-08-06 13:13:01"
        },
        {
            "ioc_value": "http:\/\/www.nyxbone.com\/malware\/Serpico.html",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:01",
            "last_seen": "2026-08-06 13:13:01"
        },
        {
            "ioc_value": "http:\/\/www.nyxbone.com\/images\/articulos\/malware\/badblock\/5.png",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:01",
            "last_seen": "2026-08-06 13:13:01"
        },
        {
            "ioc_value": "http:\/\/www.nyxbone.com\/malware\/RaaS.html",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:01",
            "last_seen": "2026-08-06 13:13:01"
        },
        {
            "ioc_value": "https:\/\/cyberintelmag.com\/malware-viruses\/payloadbin-ransomware-attributed-to-evil-corp",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:01",
            "last_seen": "2026-08-06 13:13:01"
        },
        {
            "ioc_value": "http:\/\/www.nyxbone.com\/malware\/chineseRansom.html",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:01",
            "last_seen": "2026-08-06 13:13:01"
        },
        {
            "ioc_value": "https:\/\/www.certego.net\/en\/news\/malware-tales-sodinokibi\/",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:01",
            "last_seen": "2026-08-06 13:13:01"
        },
        {
            "ioc_value": "https:\/\/www.trellix.com\/en-us\/about\/newsroom\/stories\/threat-labs\/the-sound-of-malware.html",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:01",
            "last_seen": "2026-08-06 13:13:01"
        },
        {
            "ioc_value": "https:\/\/blog.malwarebytes.com\/wp-content\/uploads\/2020\/06\/ransomnote.png",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:01",
            "last_seen": "2026-08-06 13:13:01"
        },
        {
            "ioc_value": "http:\/\/www.nyxbone.com\/malware\/SkidLocker.html",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:01",
            "last_seen": "2026-08-06 13:13:01"
        },
        {
            "ioc_value": "https:\/\/blog.malwarebytes.com\/malwarebytes-news\/2021\/02\/clop-targets-execs-ransomware-tactics-get-another-new-twist",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:01",
            "last_seen": "2026-08-06 13:13:01"
        },
        {
            "ioc_value": "https:\/\/github.com\/Finch4\/Malware-Analysis-Reports\/tree\/master\/MountLocker",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:01",
            "last_seen": "2026-08-06 13:13:01"
        },
        {
            "ioc_value": "https:\/\/blog.malwarebytes.com\/threat-spotlight\/2020\/07\/threat-spotlight-wastedlocker-customized-ransomware\/",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:01",
            "last_seen": "2026-08-06 13:13:01"
        },
        {
            "ioc_value": "https:\/\/www.cronup.com\/post\/de-ataque-con-malware-a-incidente-de-ransomware",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:01",
            "last_seen": "2026-08-06 13:13:01"
        },
        {
            "ioc_value": "http:\/\/nyxbone.com\/malware\/BlackShades.html",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:01",
            "last_seen": "2026-08-06 13:13:01"
        },
        {
            "ioc_value": "http:\/\/nyxbone.com\/malware\/SNSLocker.html",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:01",
            "last_seen": "2026-08-06 13:13:01"
        },
        {
            "ioc_value": "http:\/\/www.nyxbone.com\/malware\/jobcrypter.html",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:01",
            "last_seen": "2026-08-06 13:13:01"
        },
        {
            "ioc_value": "http:\/\/nyxbone.com\/images\/articulos\/malware\/snslocker\/16.png",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:01",
            "last_seen": "2026-08-06 13:13:01"
        },
        {
            "ioc_value": "https:\/\/github.com\/albertzsigovits\/malware-notes\/blob\/master\/Clop.md",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:01",
            "last_seen": "2026-08-06 13:13:01"
        },
        {
            "ioc_value": "https:\/\/github.com\/albertzsigovits\/malware-notes\/blob\/master\/Ransomware\/Clop.md",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:01",
            "last_seen": "2026-08-06 13:13:01"
        },
        {
            "ioc_value": "http:\/\/www.nyxbone.com\/malware\/brazilianRansom.html",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:01",
            "last_seen": "2026-08-06 13:13:01"
        },
        {
            "ioc_value": "http:\/\/www.nyxbone.com\/images\/articulos\/malware\/brazilianRansom\/0.png",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:01",
            "last_seen": "2026-08-06 13:13:01"
        },
        {
            "ioc_value": "http:\/\/www.nyxbone.com\/malware\/Strictor.html",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:01",
            "last_seen": "2026-08-06 13:13:01"
        },
        {
            "ioc_value": "https:\/\/blog.malwarebytes.org\/threat-analysis\/2016\/03\/cerber-ransomware-new-but-mature\/",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:01",
            "last_seen": "2026-08-06 13:13:01"
        },
        {
            "ioc_value": "https:\/\/www.fortinet.com\/blog\/threat-research\/new-wave-bianlian-malware",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:01",
            "last_seen": "2026-08-06 13:13:01"
        },
        {
            "ioc_value": "https:\/\/www.threatfabric.com\/blogs\/bianlian_from_rags_to_riches_the_malware_dropper_that_had_a_dream.html",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:01",
            "last_seen": "2026-08-06 13:13:01"
        },
        {
            "ioc_value": "https:\/\/blog.malwarebytes.org\/threat-analysis\/2015\/12\/inside-chimera-ransomware-the-first-doxingware-in-wild\/",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:01",
            "last_seen": "2026-08-06 13:13:01"
        },
        {
            "ioc_value": "http:\/\/www.nyxbone.com\/malware\/koreanRansom.html",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:01",
            "last_seen": "2026-08-06 13:13:01"
        },
        {
            "ioc_value": "https:\/\/malware.wikia.org\/wiki\/Tellyouthepass",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:01",
            "last_seen": "2026-08-06 13:13:01"
        },
        {
            "ioc_value": "https:\/\/www.endgame.com\/blog\/your-package-has-been-successfully-encrypted-teslacrypt-41a-and-malware-attack-chain",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:01",
            "last_seen": "2026-08-06 13:13:01"
        },
        {
            "ioc_value": "http:\/\/www.nyxbone.com\/malware\/KozyJozy.html",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:01",
            "last_seen": "2026-08-06 13:13:01"
        },
        {
            "ioc_value": "https:\/\/blog.malwarebytes.com\/threat-spotlight\/2021\/03\/hellokitty-when-cyberpunk-met-cy-purr-crime\/",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:01",
            "last_seen": "2026-08-06 13:13:01"
        },
        {
            "ioc_value": "http:\/\/www.nyxbone.com\/malware\/Crypren.html",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:01",
            "last_seen": "2026-08-06 13:13:01"
        },
        {
            "ioc_value": "http:\/\/www.nyxbone.com\/images\/articulos\/malware\/crypren\/0.png",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:01",
            "last_seen": "2026-08-06 13:13:01"
        },
        {
            "ioc_value": "https:\/\/blog.malwarebytes.org\/threat-analysis\/2016\/01\/lechiffre-a-manually-run-ransomware\/",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:01",
            "last_seen": "2026-08-06 13:13:01"
        },
        {
            "ioc_value": "http:\/\/www.nyxbone.com\/malware\/Troldesh.html",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:01",
            "last_seen": "2026-08-06 13:13:01"
        },
        {
            "ioc_value": "https:\/\/www.intezer.com\/wp-content\/uploads\/2021\/02\/Intezer-2020-Go-Malware-Round-Up.pdf",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:01",
            "last_seen": "2026-08-06 13:13:01"
        },
        {
            "ioc_value": "https:\/\/www.bleepstatic.com\/images\/news\/malware\/b\/blackmailware\/pornblackmailer\/ransom-note.jpg",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:01",
            "last_seen": "2026-08-06 13:13:01"
        },
        {
            "ioc_value": "https:\/\/www.bleepingcomputer.com\/news\/security\/fivehands-ransomware-uses-new-malware-to-steal-data-before-encrypting\/",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:01",
            "last_seen": "2026-08-06 13:13:01"
        },
        {
            "ioc_value": "http:\/\/www.nyxbone.com\/malware\/turkishRansom.html",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:01",
            "last_seen": "2026-08-06 13:13:01"
        },
        {
            "ioc_value": "https:\/\/malware-guide.com\/blog\/remove-amjixius-ransomware-restore-encrypted-files",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:01",
            "last_seen": "2026-08-06 13:13:01"
        },
        {
            "ioc_value": "http:\/\/www.nyxbone.com\/malware\/russianRansom.html",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:01",
            "last_seen": "2026-08-06 13:13:01"
        },
        {
            "ioc_value": "https:\/\/blog.malwarebytes.com\/threat-analysis\/2016\/08\/venus-locker-another-net-ransomware\/?utm_source=twitter&utm_medium=social",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:01",
            "last_seen": "2026-08-06 13:13:01"
        },
        {
            "ioc_value": "https:\/\/malwarebreakdown.com\/2017\/03\/02\/rig-ek-at-92-53-105-43-drops-asn1-ransomware\/",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:00",
            "last_seen": "2026-08-06 13:13:00"
        },
        {
            "ioc_value": "https:\/\/malwarebytes.app.box.com\/s\/gdu18hr17mwqszj3hjw5m3sw84k8hlph",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:00",
            "last_seen": "2026-08-06 13:13:00"
        },
        {
            "ioc_value": "http:\/\/malware-traffic-analysis.net\/2016\/11\/17\/index.html",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:00",
            "last_seen": "2026-08-06 13:13:00"
        },
        {
            "ioc_value": "https:\/\/twitter.com\/malwareforme\/status\/798258032115322880",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:00",
            "last_seen": "2026-08-06 13:13:00"
        },
        {
            "ioc_value": "https:\/\/www.bleepingcomputer.com\/news\/security\/-merry-christmas-ransomware-now-steals-user-private-data-via-diamondfox-malware\/",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:00",
            "last_seen": "2026-08-06 13:13:00"
        },
        {
            "ioc_value": "http:\/\/www.securityweek.com\/destructive-killdisk-malware-turns-ransomware",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:00",
            "last_seen": "2026-08-06 13:13:00"
        },
        {
            "ioc_value": "https:\/\/cyberx-labs.com\/en\/blog\/new-killdisk-malware-brings-ransomware-into-industrial-domain\/",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:00",
            "last_seen": "2026-08-06 13:13:00"
        },
        {
            "ioc_value": "https:\/\/malwarebytes.app.box.com\/s\/kkxwgzbpwe7oh59xqfwcz97uk0q05kp3",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:00",
            "last_seen": "2026-08-06 13:13:00"
        },
        {
            "ioc_value": "https:\/\/blog.malwarebytes.com\/threat-analysis\/2016\/11\/telecrypt-the-ransomware-abusing-telegram-api-defeated\/",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:00",
            "last_seen": "2026-08-06 13:13:00"
        },
        {
            "ioc_value": "https:\/\/www.bleepingcomputer.com\/news\/security\/locky-ransomware-switches-to-thor-extension-after-being-a-bad-malware\/",
            "ioc_type": "url",
            "category": "Ransomware Actors",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:13:00",
            "last_seen": "2026-08-06 13:13:00"
        },
        {
            "ioc_value": "https:\/\/www.malwarebytes.com\/blog\/news\/2025\/08\/how-google-adidas-and-more-were-breached-\\n\\nin-a-salesforce-scam\\n\\n[12]\u00a0\u201cSalesforce",
            "ioc_type": "url",
            "category": "Threat Reports",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:12:36",
            "last_seen": "2026-08-06 13:12:36"
        },
        {
            "ioc_value": "https:\/\/ics-cert.us-cert.gov\/sites\/default\/files\/documents\/MAR-17-352-01%20HatMan%20-%20Safety%20System%20Targeted%20Malware%20%28Update%20B%29.pdf",
            "ioc_type": "url",
            "category": "ICS ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:09:23",
            "last_seen": "2026-08-06 13:09:23"
        },
        {
            "ioc_value": "https:\/\/www.midnightbluelabs.com\/blog\/2018\/1\/16\/analyzing-the-triton-industrial-malware",
            "ioc_type": "url",
            "category": "ICS ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:09:23",
            "last_seen": "2026-08-06 13:09:23"
        },
        {
            "ioc_value": "https:\/\/www.darkreading.com\/endpoint\/german-nuclear-power-plant-infected-with-malware\/d\/d-id\/1325298",
            "ioc_type": "url",
            "category": "ICS ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:09:23",
            "last_seen": "2026-08-06 13:09:23"
        },
        {
            "ioc_value": "https:\/\/www.welivesecurity.com\/2016\/04\/28\/malware-found-german-nuclear-power-plant\/",
            "ioc_type": "url",
            "category": "ICS ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:09:23",
            "last_seen": "2026-08-06 13:09:23"
        },
        {
            "ioc_value": "https:\/\/arstechnica.com\/information-technology\/2016\/04\/german-nuclear-plants-fuel-rod-system-swarming-with-old-malware\/",
            "ioc_type": "url",
            "category": "ICS ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:09:23",
            "last_seen": "2026-08-06 13:09:23"
        },
        {
            "ioc_value": "https:\/\/www.trendmicro.com\/vinfo\/us\/security\/news\/cyber-attacks\/malware-discovered-in-german-nuclear-power-plant",
            "ioc_type": "url",
            "category": "ICS ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:09:23",
            "last_seen": "2026-08-06 13:09:23"
        },
        {
            "ioc_value": "https:\/\/blog.malwarebytes.com\/threat-analysis\/2020\/06\/honda-and-enel-impacted-by-cyber-attack-suspected-to-be-ransomware\/",
            "ioc_type": "url",
            "category": "ICS ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:09:23",
            "last_seen": "2026-08-06 13:09:23"
        },
        {
            "ioc_value": "https:\/\/www.mandiant.com\/resources\/blog\/industroyer-v2-old-malware-new-tricks",
            "ioc_type": "url",
            "category": "ICS ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:09:23",
            "last_seen": "2026-08-06 13:09:23"
        },
        {
            "ioc_value": "https:\/\/docs.microsoft.com\/en-us\/windows\/win32\/amsi\/antimalware-scan-interface-portal",
            "ioc_type": "url",
            "category": "ICS ATT&CK",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:09:23",
            "last_seen": "2026-08-06 13:09:23"
        },
        {
            "ioc_value": "https:\/\/raw.githubusercontent.com\/Da2dalus\/The-MALWARE-Repo\/master\/Ransomware\/Annabelle.exe",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:07:42",
            "last_seen": "2026-08-06 13:07:42"
        },
        {
            "ioc_value": "https:\/\/raw.githubusercontent.com\/Da2dalus\/The-MALWARE-Repo\/master\/Ransomware\/CryptoWall.exe",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:07:42",
            "last_seen": "2026-08-06 13:07:42"
        },
        {
            "ioc_value": "https:\/\/raw.githubusercontent.com\/Da2dalus\/The-MALWARE-Repo\/master\/Ransomware\/CryptoLocker.exe",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:07:42",
            "last_seen": "2026-08-06 13:07:42"
        },
        {
            "ioc_value": "https:\/\/raw.githubusercontent.com\/Da2dalus\/The-MALWARE-Repo\/master\/Email-Worm\/Prolin.exe",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:07:42",
            "last_seen": "2026-08-06 13:07:42"
        },
        {
            "ioc_value": "https:\/\/raw.githubusercontent.com\/Da2dalus\/The-MALWARE-Repo\/master\/Email-Worm\/Bugsoft.exe",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:07:42",
            "last_seen": "2026-08-06 13:07:42"
        },
        {
            "ioc_value": "https:\/\/raw.githubusercontent.com\/Da2dalus\/The-MALWARE-Repo\/master\/Email-Worm\/Brontok.exe",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:07:42",
            "last_seen": "2026-08-06 13:07:42"
        },
        {
            "ioc_value": "https:\/\/raw.githubusercontent.com\/Da2dalus\/The-MALWARE-Repo\/master\/Banking-Malware\/Zloader.xlsm",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:07:42",
            "last_seen": "2026-08-06 13:07:42"
        },
        {
            "ioc_value": "https:\/\/raw.githubusercontent.com\/Da2dalus\/The-MALWARE-Repo\/master\/Email-Worm\/Anap.a.exe",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:07:42",
            "last_seen": "2026-08-06 13:07:42"
        },
        {
            "ioc_value": "https:\/\/raw.githubusercontent.com\/Da2dalus\/The-MALWARE-Repo\/master\/Email-Worm\/Axam.a.exe",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:07:42",
            "last_seen": "2026-08-06 13:07:42"
        },
        {
            "ioc_value": "https:\/\/raw.githubusercontent.com\/Da2dalus\/The-MALWARE-Repo\/master\/Banking-Malware\/Emotet.zip",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:07:42",
            "last_seen": "2026-08-06 13:07:42"
        },
        {
            "ioc_value": "https:\/\/raw.githubusercontent.com\/Da2dalus\/The-MALWARE-Repo\/master\/Email-Worm\/Amus.exe",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:07:42",
            "last_seen": "2026-08-06 13:07:42"
        },
        {
            "ioc_value": "https:\/\/github.com\/Da2dalus\/The-MALWARE-Repo\/raw\/refs\/heads\/master\/Ransomware\/WannaCry.exe",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:07:42",
            "last_seen": "2026-08-06 13:07:42"
        },
        {
            "ioc_value": "https:\/\/github.com\/trasherwithadollarsign\/Trashers-Malware-Repo\/raw\/main\/Trojan\/000.exe",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:07:42",
            "last_seen": "2026-08-06 13:07:42"
        },
        {
            "ioc_value": "https:\/\/github.com\/trasherwithadollarsign\/Trashers-Malware-Repo\/raw\/main\/Trojan\/Trojan.Malpack.Themida%20(Anti%20VM).exe",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:07:42",
            "last_seen": "2026-08-06 13:07:42"
        },
        {
            "ioc_value": "https:\/\/github.com\/trasherwithadollarsign\/Trashers-Malware-Repo\/raw\/main\/Ransomware\/Jigsaw.exe",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:07:42",
            "last_seen": "2026-08-06 13:07:42"
        },
        {
            "ioc_value": "https:\/\/github.com\/trasherwithadollarsign\/Trashers-Malware-Repo\/raw\/main\/Trojan\/FreeYoutubeDownloader.exe",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:07:42",
            "last_seen": "2026-08-06 13:07:42"
        },
        {
            "ioc_value": "https:\/\/github.com\/trasherwithadollarsign\/Trashers-Malware-Repo\/raw\/main\/Trojan\/MEMZ.exe",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:07:42",
            "last_seen": "2026-08-06 13:07:42"
        },
        {
            "ioc_value": "https:\/\/github.com\/trasherwithadollarsign\/Trashers-Malware-Repo\/raw\/main\/Trojan\/NoEscape.exe",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:07:42",
            "last_seen": "2026-08-06 13:07:42"
        },
        {
            "ioc_value": "https:\/\/github.com\/trasherwithadollarsign\/Trashers-Malware-Repo\/raw\/main\/Trojan\/Destover.exe",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:07:42",
            "last_seen": "2026-08-06 13:07:42"
        },
        {
            "ioc_value": "https:\/\/github.com\/trasherwithadollarsign\/Trashers-Malware-Repo\/raw\/main\/Trojan\/Meredrop.exe",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:07:42",
            "last_seen": "2026-08-06 13:07:42"
        },
        {
            "ioc_value": "https:\/\/github.com\/trasherwithadollarsign\/Trashers-Malware-Repo\/raw\/main\/Trojan\/RedLineStealer.exe",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:07:42",
            "last_seen": "2026-08-06 13:07:42"
        },
        {
            "ioc_value": "https:\/\/github.com\/trasherwithadollarsign\/Trashers-Malware-Repo\/raw\/main\/Ransomware\/Hive%20Ransomware.exe",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:07:42",
            "last_seen": "2026-08-06 13:07:42"
        },
        {
            "ioc_value": "https:\/\/github.com\/trasherwithadollarsign\/Trashers-Malware-Repo\/raw\/main\/Ransomware\/WannaCry.exe",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:07:42",
            "last_seen": "2026-08-06 13:07:42"
        },
        {
            "ioc_value": "https:\/\/github.com\/trasherwithadollarsign\/Trashers-Malware-Repo\/raw\/main\/Ransomware\/NoMoreRansom.exe",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:07:42",
            "last_seen": "2026-08-06 13:07:42"
        },
        {
            "ioc_value": "https:\/\/github.com\/trasherwithadollarsign\/Trashers-Malware-Repo\/raw\/main\/Ransomware\/Petya.A.exe",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:07:42",
            "last_seen": "2026-08-06 13:07:42"
        },
        {
            "ioc_value": "https:\/\/github.com\/trasherwithadollarsign\/Trashers-Malware-Repo\/raw\/main\/Ransomware\/CryptoWall.exe",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:07:42",
            "last_seen": "2026-08-06 13:07:42"
        },
        {
            "ioc_value": "https:\/\/github.com\/trasherwithadollarsign\/Trashers-Malware-Repo\/raw\/main\/Ransomware\/InfinityCrypt.exe",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:07:42",
            "last_seen": "2026-08-06 13:07:42"
        },
        {
            "ioc_value": "https:\/\/github.com\/trasherwithadollarsign\/Trashers-Malware-Repo\/raw\/main\/Ransomware\/CoronaVirus.exe",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:07:42",
            "last_seen": "2026-08-06 13:07:42"
        },
        {
            "ioc_value": "https:\/\/raw.githubusercontent.com\/androidmalware\/android_hid\/f25d0234cff288ab8384689685e37b1b4bbaf2ba\/test.exe",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:07:42",
            "last_seen": "2026-08-06 13:07:42"
        },
        {
            "ioc_value": "https:\/\/raw.githubusercontent.com\/Da2dalus\/The-MALWARE-Repo\/refs\/heads\/master\/RAT\/NJRat.exe",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:07:42",
            "last_seen": "2026-08-06 13:07:42"
        },
        {
            "ioc_value": "https:\/\/raw.githubusercontent.com\/leetcipher\/malware.development\/main\/self-injection\/self-injection.exe",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:07:42",
            "last_seen": "2026-08-06 13:07:42"
        },
        {
            "ioc_value": "https:\/\/raw.githubusercontent.com\/cocomelonc\/2022-01-14-malware-injection-13\/master\/hack.exe",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:07:42",
            "last_seen": "2026-08-06 13:07:42"
        },
        {
            "ioc_value": "https:\/\/raw.githubusercontent.com\/rishabhkumardeveloper\/Malware_Analysis_Using_ML\/main\/wildfire-test-pe-file.exe",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:07:42",
            "last_seen": "2026-08-06 13:07:42"
        },
        {
            "ioc_value": "https:\/\/raw.githubusercontent.com\/leetcipher\/malware.development\/main\/process-injection\/process-injection.exe",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:07:42",
            "last_seen": "2026-08-06 13:07:42"
        },
        {
            "ioc_value": "http:\/\/github.com\/Da2dalus\/The-MALWARE-Repo\/blob\/master\/RAT\/NJRat.exe?raw=true",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:07:42",
            "last_seen": "2026-08-06 13:07:42"
        },
        {
            "ioc_value": "https:\/\/172.236.108.48\/DANGEROUS\/EnergizerTrojan-MALWARE.zip",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:07:42",
            "last_seen": "2026-08-06 13:07:42"
        },
        {
            "ioc_value": "https:\/\/raw.githubusercontent.com\/ytisf\/theZoo\/refs\/heads\/master\/malware\/Binaries\/Ransomware.WannaCry\/Ransomware.WannaCry.zip",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:07:42",
            "last_seen": "2026-08-06 13:07:42"
        },
        {
            "ioc_value": "https:\/\/raw.githubusercontent.com\/newlog\/exploiting\/refs\/heads\/master\/training\/windows\/practical_malware_analysis\/labs\/Chapter_1L\/Lab01-02.exe",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:07:42",
            "last_seen": "2026-08-06 13:07:42"
        },
        {
            "ioc_value": "https:\/\/172.236.108.48\/MALWARE\/icecast2_2.0.0_VULNERABLE.exe",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:07:42",
            "last_seen": "2026-08-06 13:07:42"
        },
        {
            "ioc_value": "https:\/\/172.236.108.48\/MALWARE\/EnergizerTrojan-MALWARE.zip",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:07:42",
            "last_seen": "2026-08-06 13:07:42"
        },
        {
            "ioc_value": "https:\/\/172.236.108.48\/MALWARE\/dnsmasq-2.73rc7.tar.gz",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:07:42",
            "last_seen": "2026-08-06 13:07:42"
        },
        {
            "ioc_value": "https:\/\/raw.githubusercontent.com\/zusyaku\/malware-collection-part-2\/refs\/heads\/main\/666\/666.exe",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:07:42",
            "last_seen": "2026-08-06 13:07:42"
        },
        {
            "ioc_value": "https:\/\/raw.githubusercontent.com\/senaMizo\/assembly-reverse-engineering\/main\/src\/x86_64\/malware-analysis\/assembly_engineering_reverse_1.3.zip",
            "ioc_type": "url",
            "category": "Domains\/URLs",
            "threat_score": "0.50",
            "confidence_score": "0.50",
            "sighting_count": 1,
            "first_seen": "2026-08-06 13:07:40",
            "last_seen": "2026-08-06 13:07:40"
        }
    ]
}