{
    "id": "1831788",
    "ioc": "https:\/\/whatdatcindy.com\/nfront.php",
    "ioc_type": "url",
    "threat_type": "botnet_cc",
    "malware": "win.satacom",
    "malware_printable": "Satacom",
    "malware_alias": "CurlyGate,LegionLoader,RobotDropper",
    "confidence_level": "100",
    "first_seen": "2026-06-14 10:39:46 UTC",
    "last_seen": null,
    "reporter": null,
    "reference": "https:\/\/bazaar.abuse.ch\/sample\/f2320ad1074babc1e6e661d82ab03180752cb6d42d06aac441779b58ee5573cb\/",
    "threatfox_link": "https:\/\/threatfox\/ioc\/1831788",
    "tags": [
        "LegionLoader"
    ]
}