SophiaX
🔍
LIVE
· New victim: Portable Intelligence Inc www.portable-intelligence.com serviced by an IT company Computer... — blacknevas· New victim: Riker Danzig Scherer Hyland & Perretti — SilentRansomGroup· New victim: Hightech Signs — kairos· New victim: Riker Danzig LLP — SilentRansomGroup· New victim: gamaus.com — incransom· New KEV: CVE-2026-72898 · Metabase· New KEV: CVE-2026-20349 · Cisco· New KEV: CVE-2026-68820 · Microsoft· New KEV: CVE-2026-8037 · Progress· New KEV: CVE-2026-63077 · JetBrains· New victim: 3,979 new IOCs ingested in last 24h Portable Intelligence Inc www.portable-intelligence.com serviced by an IT company Computer... — blacknevas· New victim: Riker Danzig Scherer Hyland & Perretti — SilentRansomGroup· New victim: Hightech Signs — kairos· New victim: Riker Danzig LLP — SilentRansomGroup· New victim: gamaus.com — incransom· New KEV: CVE-2026-72898 · Metabase· New KEV: CVE-2026-20349 · Cisco· New KEV: CVE-2026-68820 · Microsoft· New KEV: CVE-2026-8037 · Progress· New KEV: CVE-2026-63077 · JetBrains· 3,979 new IOCs ingested in last 24h

Indicators of Compromise

Aggregated IOC feed from 20+ open-source threat intelligence sources including ThreatFox, URLhaus, MalwareBazaar, and Feodo Tracker. Search, filter, and export IPs, domains, URLs, and hashes linked to active malware campaigns.

Unique IOCs
250,401
deduplicated across all sources
Multi-Source
7,195
confirmed by 2+ feeds
Enriched
3,092
VT / AbuseIPDB / GreyNoise
By Type
url
115k
sha256
30k
domain
30k
md5
28k
sha1
25k
◈ IOC Browser46 results
Deduplicated · cross-source confirmed
🔍
46 IOCs
TypeValueSourcesThreat / FamilyConfidenceEnrichmentLast Seen
tls_sha1
4b75d1218c87bc4192b6be37dbd990c11859fef8
sslbl
c2
Metasploit
85
not yet enrichedCheck on VirusTotal
2026-07-16
recent
sha256
42405d1848…a4084e
malwarebazaar
malware_sample
Metasploit
80
not yet enrichedCheck on VirusTotal
2026-06-26
aging
sha1
4ee9c2ea22…fc14d9
malwarebazaar
malware_sample
Metasploit
80
not yet enrichedCheck on VirusTotal
2026-06-26
aging
md5
51cb20a608…07e86d
malwarebazaar
malware_sample
Metasploit
80
not yet enrichedCheck on VirusTotal
2026-06-26
aging
tls_sha1
c3a91892391bdb3668731a49dc409376e6aa2d93
sslbl
c2
Metasploit
85
not yet enrichedCheck on VirusTotal
2026-05-08
stale
tls_sha1
f2a9a3c91bcb36779ab75ee49dad7d46b6b0dac4
sslbl
c2
Metasploit
85
not yet enrichedCheck on VirusTotal
2026-01-08
stale
tls_sha1
be3d9709cb4d753e89818f77f5fda9ec8ec2ea35
sslbl
c2
Metasploit
85
not yet enrichedCheck on VirusTotal
2025-09-25
stale
tls_sha1
b861e4723192610f0564ce7ae944f4a9d8e54a3a
sslbl
c2
Metasploit
85
not yet enrichedCheck on VirusTotal
2025-07-27
stale
tls_sha1
5824fb68b975ac3fdf7a675cd39b0489eaadd9ba
sslbl
c2
Metasploit
85
not yet enrichedCheck on VirusTotal
2025-06-19
stale
tls_sha1
48c5eba7c92a9e7483b03032831fe7d35fa4ea3f
sslbl
c2
Metasploit
85
not yet enrichedCheck on VirusTotal
2025-03-30
stale
tls_sha1
c32bcf0d53cb6f62725f3b8e1e7ec9e3da5bdd5e
sslbl
c2
Metasploit
85
not yet enrichedCheck on VirusTotal
2024-08-23
stale
tls_sha1
2de65adb4038cc50d726bc98e5cb348ebddbb04d
sslbl
c2
Metasploit
85
not yet enrichedCheck on VirusTotal
2024-05-03
stale
tls_sha1
e1e89a1efeddbb2f2771f3dffb67c19f22d3c95d
sslbl
c2
Metasploit
85
not yet enrichedCheck on VirusTotal
2023-07-16
stale
tls_sha1
4320d2357d0a95ad13b583d1bd1e65c8aeefcde3
sslbl
c2
Metasploit
85
not yet enrichedCheck on VirusTotal
2022-11-28
stale
tls_sha1
68bc7ed7ea6bfd68b659c20e1d11087f8b2d54a2
sslbl
c2
Metasploit
85
not yet enrichedCheck on VirusTotal
2022-09-17
stale
tls_sha1
043d1a11a06d7a606501659a34cae94150846e9d
sslbl
c2
Metasploit
85
not yet enrichedCheck on VirusTotal
2018-12-11
stale
ip
154.23.186.143
threatfox
botnet_cc
Metasploit
85
ip
45.138.64.124
threatfox
botnet_cc
Metasploit
86
ip
196.75.227.199
threatfox
botnet_cc
Metasploit
50
ip
196.75.175.174
threatfox
botnet_cc
Metasploit
50
ip
196.75.14.206
threatfox
botnet_cc
Metasploit
50
ip
185.193.8.132
threatfox
botnet_cc
Metasploit
94
ip
177.3.32.60
threatfox
botnet_cc
Metasploit
85
ip
168.245.203.176
threatfox
botnet_cc
Metasploit
50
ip
168.245.203.178
threatfox
botnet_cc
Metasploit
50
ip
168.245.203.179
threatfox
botnet_cc
Metasploit
50
ip
185.89.120.225
threatfox
botnet_cc
Metasploit
94
ip
168.245.203.104
threatfox
botnet_cc
Metasploit
50
ip
185.89.255.244
threatfox
botnet_cc
Metasploit
91
ip
193.106.216.34
threatfox
botnet_cc
Metasploit
86
ip
193.106.217.106
threatfox
botnet_cc
Metasploit
100
ip
185.89.254.46
threatfox
botnet_cc
Metasploit
100
ip
168.245.203.112
threatfox
botnet_cc
Metasploit
50
ip
168.245.203.140
threatfox
botnet_cc
Metasploit
50
ip
168.245.203.156
threatfox
botnet_cc
Metasploit
50
ip
103.177.46.67
threatfox
botnet_cc
Metasploit
50
ip
103.177.46.85
threatfox
botnet_cc
Metasploit
50
ip
103.39.235.194
threatfox
botnet_cc
Metasploit
100
ip
168.245.203.188
threatfox
botnet_cc
Metasploit
50
ip
103.177.46.31
threatfox
botnet_cc
Metasploit
50
ip
175.245.184.150
threatfox
botnet_cc
Metasploit
94
ip
185.212.19.144
threatfox
botnet_cc
Metasploit
100
sha256
34518268a9…5c8744
threatfox
payload
Metasploit
70
not yet enrichedCheck on VirusTotal
ip
175.229.125.81
threatfox
botnet_cc
Metasploit
94
ip
103.177.46.36
threatfox
botnet_cc
Metasploit
50
ip
103.177.46.49
threatfox
botnet_cc
Metasploit
50