{
    "id": "1518817",
    "ioc": "http:\/\/mxblog77.cfd\/777\/",
    "ioc_type": "url",
    "threat_type": "botnet_cc",
    "malware": "win.smokeloader",
    "malware_printable": "SmokeLoader",
    "malware_alias": "Dofoil,Sharik,Smoke,Smoke Loader",
    "confidence_level": "50",
    "first_seen": "2025-05-09 16:05:05 UTC",
    "last_seen": "2025-06-21 14:36:40 UTC",
    "reporter": null,
    "reference": "https:\/\/www.trendmicro.com\/en_us\/research\/25\/e\/agenda-ransomware-group-adds-smokeloader-and-netxloader-to-their.html",
    "threatfox_link": "https:\/\/threatfox\/ioc\/1518817",
    "tags": [
        "agenda",
        "Ransomware",
        "smokeloader"
    ]
}