Since no one has picked up the slack around here, I have implemented a new state-of-the art VIBINT platform. Since y'all are my fedi friends, you can check it all out for free.

The service accepts hashes, domains, and IP addresses. As well as other IoCs and IoAs that aren't yet documented. And it works with any browser, including especially cURL.

Try it yourself:

https://cascadiacrow.com/isThisMalware?hash=e71ee9dca014e33b7da6843aeeb8b980

https://cascadiacrow.com/isThisMalware?domain=cloudflare.com

https://cascadiacrow.com/isThisMalware?ip=127.0.0.1

0
0
0

If you have a fediverse account, you can quote this note from your own instance. Search https://infosec.exchange/users/cR0w/statuses/114388940871270428 on your instance and quote it. (Note that quoting is not supported in Mastodon.)