Indicator
Type domain · source intel_report_ingest
Enrichment by provider
Grouped attempts with latest status; expand for attempt history.
2 attempts · first 2026-07-21T16:56:16.308133Z · last 2026-07-22T04:49:58.939645Z
Certificate transparency lookup for win.malware.netdraft
Types: ct_logs
2 attempts · first 2026-07-21T16:56:16.249466Z · last 2026-07-22T04:49:58.885714Z
Would resolve passive DNS history for win.malware.netdraft (integrate PDNS vendor).
Types: passive_dns
2 attempts · first 2026-07-21T16:56:16.313027Z · last 2026-07-22T04:49:58.943195Z
skipped: missing API key
Types: virustotal
CONTINUE INVESTIGATION
High-signal pivots without leaving the thread you started in search.
Structured pivots from local graph context.
See edges, pivots, and corroboration at a glance.
Full inspector with neighbor expansion.