SophiaX
🔍
LIVE
· New victim: ************* — insomnia· New victim: sansilvestre.edu.pe — krybit· New victim: JMS Southeast — akira· New victim: Padget Technologies — akira· New victim: Delegal Poindexter & Underkofler, P.A. — morpheus· New KEV: CVE-2025-67038 · Lantronix· New KEV: CVE-2026-34908 · Ubiquiti· New KEV: CVE-2026-34910 · Ubiquiti· New KEV: CVE-2026-34909 · Ubiquiti· New KEV: CVE-2026-20253 · Splunk· New victim: 2,775 new IOCs ingested in last 24h ************* — insomnia· New victim: sansilvestre.edu.pe — krybit· New victim: JMS Southeast — akira· New victim: Padget Technologies — akira· New victim: Delegal Poindexter & Underkofler, P.A. — morpheus· New KEV: CVE-2025-67038 · Lantronix· New KEV: CVE-2026-34908 · Ubiquiti· New KEV: CVE-2026-34910 · Ubiquiti· New KEV: CVE-2026-34909 · Ubiquiti· New KEV: CVE-2026-20253 · Splunk· 2,775 new IOCs ingested in last 24h

Indicators of Compromise

Aggregated IOC feed from 20+ open-source threat intelligence sources including ThreatFox, URLhaus, MalwareBazaar, and Feodo Tracker. Search, filter, and export IPs, domains, URLs, and hashes linked to active malware campaigns.

Unique IOCs
104,122
deduplicated across all sources
Multi-Source
311
confirmed by 2+ feeds
Enriched
3,092
VT / AbuseIPDB / GreyNoise
By Type
url
62k
tls_sha1
10k
domain
9k
sha256
6k
md5
6k
◈ IOC Browser25 results
Deduplicated · cross-source confirmed
🔍
25 IOCs
TypeValueSourcesThreat / FamilyConfidenceEnrichmentLast Seen
tls_sha1
c3a91892391bdb3668731a49dc409376e6aa2d93
sslbl
c2
Metasploit
85
not yet enrichedCheck on VirusTotal
2026-05-08
aging
tls_sha1
f2a9a3c91bcb36779ab75ee49dad7d46b6b0dac4
sslbl
c2
Metasploit
85
not yet enrichedCheck on VirusTotal
2026-01-08
stale
tls_sha1
be3d9709cb4d753e89818f77f5fda9ec8ec2ea35
sslbl
c2
Metasploit
85
not yet enrichedCheck on VirusTotal
2025-09-25
stale
tls_sha1
b861e4723192610f0564ce7ae944f4a9d8e54a3a
sslbl
c2
Metasploit
85
not yet enrichedCheck on VirusTotal
2025-07-27
stale
tls_sha1
5824fb68b975ac3fdf7a675cd39b0489eaadd9ba
sslbl
c2
Metasploit
85
not yet enrichedCheck on VirusTotal
2025-06-19
stale
tls_sha1
48c5eba7c92a9e7483b03032831fe7d35fa4ea3f
sslbl
c2
Metasploit
85
not yet enrichedCheck on VirusTotal
2025-03-30
stale
tls_sha1
c32bcf0d53cb6f62725f3b8e1e7ec9e3da5bdd5e
sslbl
c2
Metasploit
85
not yet enrichedCheck on VirusTotal
2024-08-23
stale
tls_sha1
2de65adb4038cc50d726bc98e5cb348ebddbb04d
sslbl
c2
Metasploit
85
not yet enrichedCheck on VirusTotal
2024-05-03
stale
tls_sha1
e1e89a1efeddbb2f2771f3dffb67c19f22d3c95d
sslbl
c2
Metasploit
85
not yet enrichedCheck on VirusTotal
2023-07-16
stale
tls_sha1
4320d2357d0a95ad13b583d1bd1e65c8aeefcde3
sslbl
c2
Metasploit
85
not yet enrichedCheck on VirusTotal
2022-11-28
stale
tls_sha1
68bc7ed7ea6bfd68b659c20e1d11087f8b2d54a2
sslbl
c2
Metasploit
85
not yet enrichedCheck on VirusTotal
2022-09-17
stale
tls_sha1
043d1a11a06d7a606501659a34cae94150846e9d
sslbl
c2
Metasploit
85
not yet enrichedCheck on VirusTotal
2018-12-11
stale
ip
103.39.235.194
threatfox
botnet_cc
Metasploit
100
ip
45.138.64.124
threatfox
botnet_cc
Metasploit
86
ip
168.245.203.112
threatfox
botnet_cc
Metasploit
50
ip
175.229.125.81
threatfox
botnet_cc
Metasploit
94
ip
175.245.184.150
threatfox
botnet_cc
Metasploit
94
ip
185.193.8.132
threatfox
botnet_cc
Metasploit
94
ip
185.212.19.144
threatfox
botnet_cc
Metasploit
100
ip
185.89.120.225
threatfox
botnet_cc
Metasploit
94
ip
185.89.254.46
threatfox
botnet_cc
Metasploit
100
ip
185.89.255.244
threatfox
botnet_cc
Metasploit
91
ip
193.106.216.34
threatfox
botnet_cc
Metasploit
86
ip
193.106.217.106
threatfox
botnet_cc
Metasploit
100
ip
196.75.227.199
threatfox
botnet_cc
Metasploit
50