Skip to main content
Threat Intelligence

Real-Time Threat Intelligence

Look up domains, IPs, URLs, and file hashes across configured intelligence sources. Review risk, history, and source evidence.

Configured
Threat Sources
Indexed
Threat Records
<100ms
Response Time
Live
Health endpoint
Fictional example

Read an example threat report.

Illustration dated 2026-09-01. Indicators, providers, scores and observations are fictional. This is not a current result for these addresses.

Example requestGET /api/check?query=192.0.2.42

192.0.2.42

IP addressElevated risk

Network context

CountryDE
ASNAS64500
OperatorExample network
rDNShost.example.net

Open ports (3)

804438080

An open port describes an exposed service. Additional evidence is needed to assess whether it is being abused.

Sources flagging

2of 3 sources

Confidence

75 %

The score and confidence are illustrative values. Confidence describes support for the assessment; it is not a percentage of sources or a probability of compromise.

Example categories

ProxyMalware

Example source observations

Example source observations
SourceObservation
Example feed AFlagged
Example feed BFlagged
Example feed CNot listed

“Not listed” means this source has no listing in the example. It is not a clean bill of health.

How to interpret it

Compare source observations, dates and technical context before taking action. This example makes no attribution to a threat actor.

Fictional example2 sources flag the indicatorConfidence: 75 %No live lookup

Real reports depend on the indicator, available sources and access level. Missing data is shown explicitly. These panels illustrate how to read the data; they are not an API response schema.

Ready to Protect Your Organization?

Start with 50 free API requests per month. No credit card required.

curl -d "email=you@example.com" https://ismalicious.com/api/keys/instant

50 free requests/month · instant API key · no signup form