VirusTotal · Schema
DomainObject
A domain analysed by VirusTotal.
Anti MalwareThreat IntelligenceSecurityFile AnalysisURL AnalysisYARAIOCSandboxMITRE ATT&CKGoogle Cloud
Properties
| Name | Type | Description |
|---|---|---|
| id | string | Object identifier. |
| type | string | Object type discriminator. |
| links | object | Hypermedia links. |
| attributes | object | Type-specific attributes for DomainObject. |
| relationships | object | Pre-expanded relationships, keyed by relationship name. |
JSON Schema
{
"$schema": "https://json-schema.org/draft/2020-12/schema",
"$id": "https://raw.githubusercontent.com/api-evangelist/virustotal/refs/heads/main/json-schema/DomainObject-schema.json",
"title": "DomainObject",
"description": "A domain analysed by VirusTotal.",
"type": "object",
"properties": {
"id": {
"type": "string",
"description": "Object identifier."
},
"type": {
"type": "string",
"description": "Object type discriminator."
},
"links": {
"type": "object",
"description": "Hypermedia links.",
"properties": {
"self": {
"type": "string",
"format": "uri"
}
}
},
"attributes": {
"type": "object",
"description": "Type-specific attributes for DomainObject.",
"properties": {
"creation_date": {
"type": "integer",
"description": "Unix epoch of WHOIS creation date."
},
"expiration_date": {
"type": "integer",
"description": "Unix epoch of WHOIS expiration date."
},
"last_update_date": {
"type": "integer",
"description": "Unix epoch of last WHOIS update."
},
"last_dns_records": {
"type": "array",
"items": {
"type": "object",
"properties": {
"type": {
"type": "string",
"example": "A"
},
"value": {
"type": "string",
"example": "10.0.0.1"
},
"ttl": {
"type": "integer"
}
}
}
},
"last_dns_records_date": {
"type": "integer"
},
"last_https_certificate": {
"type": "object",
"description": "Last observed TLS certificate.",
"properties": {
"thumbprint": {
"type": "string"
},
"thumbprint_sha256": {
"type": "string"
},
"issuer": {
"type": "object",
"additionalProperties": {
"type": "string"
}
},
"subject": {
"type": "object",
"additionalProperties": {
"type": "string"
}
},
"validity": {
"type": "object",
"properties": {
"not_after": {
"type": "string"
},
"not_before": {
"type": "string"
}
}
}
}
},
"last_analysis_stats": {
"type": "object",
"properties": {
"harmless": {
"type": "integer"
},
"malicious": {
"type": "integer"
},
"suspicious": {
"type": "integer"
},
"undetected": {
"type": "integer"
},
"timeout": {
"type": "integer"
}
}
},
"categories": {
"type": "object",
"additionalProperties": {
"type": "string"
}
},
"registrar": {
"type": "string",
"example": "GoDaddy"
},
"popularity_ranks": {
"type": "object",
"description": "Popularity ranks across multiple rankers (Cisco Umbrella, Majestic, etc.).",
"additionalProperties": {
"type": "object",
"properties": {
"rank": {
"type": "integer"
},
"timestamp": {
"type": "integer"
}
}
}
},
"reputation": {
"type": "integer"
},
"total_votes": {
"type": "object",
"properties": {
"harmless": {
"type": "integer"
},
"malicious": {
"type": "integer"
}
}
},
"tags": {
"type": "array",
"items": {
"type": "string"
}
},
"whois": {
"type": "string",
"description": "Raw WHOIS record."
}
}
},
"relationships": {
"type": "object",
"description": "Pre-expanded relationships, keyed by relationship name.",
"additionalProperties": true
}
},
"required": [
"id",
"type",
"attributes"
]
}
Work with this as data
Every JSON Schema here is available over the APIs.io API and to AI agents over MCP.
MCP server
One button, every client — Claude, Cursor, VS Code and the rest.
https://apis.io/mcp
Tools for schemas
4 MCP tools reach this
find_json_schemasBrowse and filter every JSON Schema in the catalog.apis_io_searchSTART HERE — APIs, providers and tags for one query, each with its total.resolveTurn a domain, URL or GitHub org into the provider it belongs to.find_cohortsEvery scored population of providers in the catalog.
Call it yourself
curl for this page
This JSON Schema
curl "https://apis.io/api/v1/json-schemas/virustotal-domain-object"
All schemas
curl "https://apis.io/api/v1/json-schemas?limit=25"
Discovery needs no key. Ratings and market analysis are Pro.
Get an API key
Free tier, no form to fill in. Signing in shares your email address with us — we store it to create your key and to recognise you if you sign in with another provider. See our Privacy Policy and Terms.
A second provider on the same verified email joins the account you already have.