SophiaX
🔍
LIVE
· New victim: ************* — insomnia· New victim: sansilvestre.edu.pe — krybit· New victim: JMS Southeast — akira· New victim: Padget Technologies — akira· New victim: Delegal Poindexter & Underkofler, P.A. — morpheus· New KEV: CVE-2025-67038 · Lantronix· New KEV: CVE-2026-34908 · Ubiquiti· New KEV: CVE-2026-34910 · Ubiquiti· New KEV: CVE-2026-34909 · Ubiquiti· New KEV: CVE-2026-20253 · Splunk· New victim: 2,775 new IOCs ingested in last 24h ************* — insomnia· New victim: sansilvestre.edu.pe — krybit· New victim: JMS Southeast — akira· New victim: Padget Technologies — akira· New victim: Delegal Poindexter & Underkofler, P.A. — morpheus· New KEV: CVE-2025-67038 · Lantronix· New KEV: CVE-2026-34908 · Ubiquiti· New KEV: CVE-2026-34910 · Ubiquiti· New KEV: CVE-2026-34909 · Ubiquiti· New KEV: CVE-2026-20253 · Splunk· 2,775 new IOCs ingested in last 24h

Indicators of Compromise

Aggregated IOC feed from 20+ open-source threat intelligence sources including ThreatFox, URLhaus, MalwareBazaar, and Feodo Tracker. Search, filter, and export IPs, domains, URLs, and hashes linked to active malware campaigns.

Unique IOCs
104,248
deduplicated across all sources
Multi-Source
311
confirmed by 2+ feeds
Enriched
3,092
VT / AbuseIPDB / GreyNoise
By Type
url
62k
tls_sha1
10k
domain
9k
sha256
6k
md5
6k
◈ IOC Browser111 results
Deduplicated · cross-source confirmed
🔍
111 IOCs
Page 1 / 3 · showing 150
TypeValueSourcesThreat / FamilyConfidenceEnrichmentLast Seen
url
http://91.239.211.89/init.sh
urlhaus
malware_download
50
not yet enrichedCheck on VirusTotal
2026-06-21
fresh
sha256
16d3440fcc…127086
malwarebazaarthreatfox
malware_sample
85
not yet enrichedCheck on VirusTotal
2026-06-14
recent
sha256
8a68d1c08e…49878b
threatfox
payload
85
not yet enrichedCheck on VirusTotal
2026-06-14
recent
sha256
f38504f53f…90f1c9
malwarebazaarthreatfox
malware_sample
80
not yet enrichedCheck on VirusTotal
2026-06-04
recent
url
https://s.littleshabby.net/payloads/indexi.png
threatfoxurlhaus
malware_download
80
not yet enrichedCheck on VirusTotal
2026-06-04
recent
sha256
adfa14deed…3bdabc
malwarebazaarthreatfox
malware_sample
90
not yet enrichedCheck on VirusTotal
2026-06-02
recent
ip
94.154.35.215
threatfox
payload_delivery
90
2026-05-29
recent
sha256
a437ad7a52…c32ae8
malwarebazaarthreatfox
malware_sample
90
not yet enrichedCheck on VirusTotal
2026-05-29
recent
sha256
e20b8e1d83…747421
malwarebazaarthreatfox
malware_sample
90
not yet enrichedCheck on VirusTotal
2026-05-29
recent
ip
107.189.27.179
threatfox
payload_delivery
80
AB 100
ip
120.26.7.147
threatfox
payload_delivery
80
ip
118.145.104.154
threatfox
payload_delivery
90
ip
121.43.211.216
threatfox
payload_delivery
80
ip
124.90.54.135
threatfox
botnet_cc
80
ip
107.189.22.137
threatfox
payload_delivery
80
domain
s.littleshabby.net
threatfox
payload_delivery
80
ip
117.50.81.36
threatfox
payload_delivery
80
AB 70
ip
141.95.72.60
threatfox
botnet_cc
100
ip
141.94.164.126
threatfox
payload_delivery
80
ip
117.150.62.177
threatfox
payload_delivery
90
ip
143.198.92.217
threatfox
botnet_cc
80
ip
143.244.165.24
threatfox
payload_delivery
80
ip
146.70.184.43
threatfox
payload_delivery
80
ip
151.243.150.40
threatfox
botnet_cc
80
ip
156.246.94.183
threatfox
botnet_cc
100
ip
159.89.83.151
threatfox
payload_delivery
85
ip
165.154.104.88
threatfox
botnet_cc
80
AB 100
ip
167.99.78.46
threatfox
botnet_cc
80
AB 48
ip
168.144.47.129
threatfox
botnet_cc
100
ip
169.150.198.74
threatfox
payload_delivery
80
ip
104.28.154.251
threatfox
payload_delivery
80
ip
138.199.15.175
threatfox
payload_delivery
80
ip
18.224.108.49
threatfox
botnet_cc
80
ip
18.219.33.158
threatfox
payload_delivery
80
ip
138.199.15.156
threatfox
payload_delivery
80
ip
116.34.14.135
threatfox
payload_delivery
80
ip
18.225.109.243
threatfox
botnet_cc
80
ip
185.214.96.142
threatfox
payload_delivery
80
ip
185.214.96.152
threatfox
payload_delivery
80
ip
185.244.213.94
threatfox
payload_delivery
80
ip
189.110.239.137
threatfox
payload_delivery
80
ip
193.160.100.154
threatfox
botnet_cc
90
ip
193.176.31.219
threatfox
botnet_cc
80
AB 100
ip
195.181.245.252
threatfox
payload_delivery
80
ip
200.4.115.1
threatfox
botnet_cc
80
AB 0
ip
207.180.232.121
threatfox
payload_delivery
80
ip
209.58.169.220
threatfox
payload_delivery
85
ip
213.209.159.66
threatfox
botnet_cc
80
ip
221.234.36.123
threatfox
payload_delivery
80
ip
179.43.133.154
threatfox
payload_delivery
80
AB 100