🌐
Feodo Tracker — Botnet IPs
Real botnet command-and-control server IPs tracked by abuse.ch researchers. Updated every 30 minutes. Includes malware family, country, and active/inactive status.
✓ Live Now
🦠
MalwareBazaar — File Hashes
SHA256 hashes of real malware samples submitted by security researchers worldwide. Tag data, file type, and first-seen date included.
✓ Live Now
🔗
URLhaus — Malware URLs
Real URLs actively distributing malware right now. Includes threat type, host domain, and date added by researchers.
✓ Live Now
🔍
IP Lookup API
Query any IP address against all three live feeds via REST API. Returns match status, feed data, and threat history from your own VPS logs.
✓ Live Now
📡
Network Layer Inspection
Deep packet inspection and flow analysis across your full network infrastructure — correlating signals from all layers.
◦ Coming Soon
⚙️
OT / ICS Integration
Signal ingestion from SCADA, PLCs, and industrial control systems for critical infrastructure protection.
◦ Coming Soon