{
    "id": "1628768",
    "ioc": "gestcular.cfd",
    "ioc_type": "domain",
    "threat_type": "botnet_cc",
    "malware": "win.hijackloader",
    "malware_printable": "HijackLoader",
    "malware_alias": "DOILoader,GHOSTPULSE,IDAT Loader,SHADOWLADDER",
    "confidence_level": "50",
    "first_seen": "2025-10-29 07:22:28 UTC",
    "last_seen": "2026-06-08 05:41:29 UTC",
    "reporter": null,
    "reference": "",
    "threatfox_link": "https:\/\/threatfox\/ioc\/1628768",
    "tags": [
        "c2",
        "HijackLoader"
    ]
}