{
    "id": "1831790",
    "ioc": "verification-js-cdn.boats",
    "ioc_type": "domain",
    "threat_type": "payload_delivery",
    "malware": "win.satacom",
    "malware_printable": "Satacom",
    "malware_alias": "CurlyGate,LegionLoader,RobotDropper",
    "confidence_level": "100",
    "first_seen": "2026-06-14 10:39:44 UTC",
    "last_seen": null,
    "reporter": null,
    "reference": "",
    "threatfox_link": "https:\/\/threatfox\/ioc\/1831790",
    "tags": [
        "ClickFix",
        "LegionLoader"
    ]
}