{
    "id": "1806047",
    "ioc": "https:\/\/poolkar.icu\/",
    "ioc_type": "url",
    "threat_type": "payload_delivery",
    "malware": "win.hijackloader",
    "malware_printable": "HijackLoader",
    "malware_alias": "DOILoader,GHOSTPULSE,IDAT Loader,SHADOWLADDER",
    "confidence_level": "100",
    "first_seen": "2026-05-04 17:28:51 UTC",
    "last_seen": null,
    "reporter": "anonymous",
    "reference": "https:\/\/tria.ge\/260504-tejjasbs5j\/behavioral13",
    "threatfox_link": "https:\/\/threatfox\/ioc\/1806047",
    "tags": [
        "Ghostulse",
        "HijackLoader",
        "IDAT Loader"
    ]
}