{
    "id": "1806991",
    "ioc": "http:\/\/79.124.59.142\/cl-ncl-finalize",
    "ioc_type": "url",
    "threat_type": "payload_delivery",
    "malware": "win.hijackloader",
    "malware_printable": "HijackLoader",
    "malware_alias": "DOILoader,GHOSTPULSE,IDAT Loader,SHADOWLADDER",
    "confidence_level": "100",
    "first_seen": "2026-05-05 12:59:23 UTC",
    "last_seen": null,
    "reporter": "anonymous",
    "reference": "",
    "threatfox_link": "https:\/\/threatfox\/ioc\/1806991",
    "tags": [
        "HijackLoader",
        "infostealer",
        "renengine",
        "SectopRAT"
    ]
}