SophiaX
🔍
LIVE
· New victim: cipher.systems — m3rx· New victim: International Chemical Co. — Barracuda· New victim: M****n — payoutsking· New victim: Applied Composites — Storm· New victim: Magna Legal Services — Storm· New KEV: CVE-2026-65660 · Microsoft· New KEV: CVE-2026-87902 · WordPress· New KEV: CVE-2026-67279 · MikroTik· New KEV: CVE-2026-71362 · Adobe· New KEV: CVE-2026-5430 · WSO2· New victim: 4,078 new IOCs ingested in last 24h cipher.systems — m3rx· New victim: International Chemical Co. — Barracuda· New victim: M****n — payoutsking· New victim: Applied Composites — Storm· New victim: Magna Legal Services — Storm· New KEV: CVE-2026-65660 · Microsoft· New KEV: CVE-2026-87902 · WordPress· New KEV: CVE-2026-67279 · MikroTik· New KEV: CVE-2026-71362 · Adobe· New KEV: CVE-2026-5430 · WSO2· 4,078 new IOCs ingested in last 24h
◈

Indicators of Compromise

Aggregated IOC feed from 20+ open-source threat intelligence sources including ThreatFox, URLhaus, MalwareBazaar, and Feodo Tracker. Search, filter, and export IPs, domains, URLs, and hashes linked to active malware campaigns.

Unique IOCs
419,969
deduplicated across all sources
Multi-Source
16,670
confirmed by 2+ feeds
Enriched
3,092
VT / AbuseIPDB / GreyNoise
By Type
url
161k
sha256
65k
domain
60k
md5
54k
sha1
49k
◈ IOC Browser32 results
Deduplicated · cross-source confirmed
🔍
32 IOCs
TypeValueSourcesThreat / FamilyConfidenceEnrichmentLast Seen
url
https://tweakz-dream-launcher.lovable.app/__l5e/assets-v1/f9…
2×threatfoxurlhaus
malware_download
95
not yet enrichedCheck on VirusTotal
2026-09-27
fresh
sha256
0a813de910…8fe8f3
2×malwarebazaarthreatfox
malware_sample
100
not yet enrichedCheck on VirusTotal
2026-09-19
recent
sha256
b9df548d62…1107e1
2×malwarebazaarthreatfox
malware_sample
100
not yet enrichedCheck on VirusTotal
2026-09-19
recent
sha256
6fa80698d7…1aeeb3
2×malwarebazaarthreatfox
malware_sample
100
not yet enrichedCheck on VirusTotal
2026-09-18
recent
url
http://69.169.99.158:7100/WTogA9Ctxs/x522
1×urlhaus
malware_download
80
not yet enrichedCheck on VirusTotal
2026-07-30
aging
url
http://69.169.99.158:7100/lKzmNXeqFe/x521
1×urlhaus
malware_download
80
not yet enrichedCheck on VirusTotal
2026-07-30
aging
url
http://69.169.99.158:7100/wHy7ROvJ4R/x640
1×urlhaus
malware_download
80
not yet enrichedCheck on VirusTotal
2026-07-30
aging
url
http://91.239.211.89/init.sh
1×urlhaus
malware_download
50
not yet enrichedCheck on VirusTotal
2026-06-21
stale
ip
38.174.218.65
1×threatfox
botnet_cc
90
—
—
ip
80.74.30.4
1×threatfox
botnet_cc
100
—
—
ip
38.174.216.194
1×threatfox
botnet_cc
90
—
—
ip
208.167.233.7
1×threatfox
botnet_cc
100
—
—
url
http://103.8.164.18/Video.scr
1×threatfox
payload_delivery
85
not yet enrichedCheck on VirusTotal
—
—
ip
193.181.209.137
1×threatfox
botnet_cc
100
—
—
url
http://111.235.143.155:8080/Video.scr
1×threatfox
payload_delivery
85
not yet enrichedCheck on VirusTotal
—
—
url
http://57.129.119.218:13333
1×threatfox
botnet_cc
100
not yet enrichedCheck on VirusTotal
—
—
url
http://80.74.30.4:3000/sparky/comfyui-utils.git
1×threatfox
payload_delivery
100
not yet enrichedCheck on VirusTotal
—
—
ip
45.32.65.138
1×threatfox
botnet_cc
100
—
—
url
http://92.119.164.93:8080/updates/corvusminer-v3.0.9-crypt_d…
1×threatfox
payload_delivery
90
not yet enrichedCheck on VirusTotal
—
—
url
http://103.249.201.108:81/private/rigel-win.zip
1×threatfox
payload_delivery
100
not yet enrichedCheck on VirusTotal
—
—
url
http://103.249.201.108:81/private/xmrig-win.zip
1×threatfox
payload_delivery
100
not yet enrichedCheck on VirusTotal
—
—
ip
216.167.94.63
1×threatfox
botnet_cc
90
—
—
url
http://165.245.138.247:81/private/rigel-win.zip
1×threatfox
payload_delivery
100
not yet enrichedCheck on VirusTotal
—
—
url
http://165.245.138.247:81/private/xmrig-win.zip
1×threatfox
payload_delivery
100
not yet enrichedCheck on VirusTotal
—
—
url
http://168.121.168.84/Photo.scr
1×threatfox
payload_delivery
100
not yet enrichedCheck on VirusTotal
—
—
url
http://186.235.86.129/Photo.scr
1×threatfox
payload_delivery
100
not yet enrichedCheck on VirusTotal
—
—
url
http://187.247.242.34/av.scr
1×threatfox
payload_delivery
85
not yet enrichedCheck on VirusTotal
—
—
url
http://217.76.63.67:81/private/rigel-win.zip
1×threatfox
payload_delivery
100
not yet enrichedCheck on VirusTotal
—
—
url
http://217.76.63.67:81/private/xmrig-win.zip
1×threatfox
payload_delivery
100
not yet enrichedCheck on VirusTotal
—
—
url
http://94.26.106.195:5555
1×threatfox
botnet_cc
100
not yet enrichedCheck on VirusTotal
—
—
url
https://nomore.quest/questremoval.exe
1×threatfox
payload_delivery
95
not yet enrichedCheck on VirusTotal
—
—
url
http://94.26.106.195:80
1×threatfox
botnet_cc
100
not yet enrichedCheck on VirusTotal
—
—