Indicator of Compromise Search
Bulk Lookup
✦ IPv4 Address ✦ Domain ✦ MD5/SHA1/SHA256 Hash ✦ URL
INDICATOR
evil.com
Domain ⚠ 21 PULSE HITS ⚡ CACHED
↓ CSV ↓ JSON
55
/100
HIGH
CONFIDENCE LEVEL
THREAT CONFIDENCE ANALYSIS
HIGH 55/100 confidence
Strong evidence of malicious activity across multiple sources. Prioritise investigation.
CLEAN LOW MED HIGH CRIT
0 25 50 75 100
OTX
30/30
21 pulses
VIRUSTOTAL
25/35
8/94 detected
ABUSEIPDB
/25
IPv4 only
URLHAUS
0/10
NOT LISTED
General Information
Indicatorevil.com
Whois Domainhttp://whois.domaintools.com/evil.com
Typedomain
AlienVault OTX Analysis ↗ View on OTX
21
PULSE HITS
Pulse Hits 21
Indicator Type Domain
Threat Level
Source ⚡ CACHED
ASSOCIATED PULSES
PULSE NAMEDATE
ongoing-investigations-artifacts 2026-03-30
ongoing-investigations-artifacts 2026-03-30
ongoing-investigations-artifacts 2026-03-30
Exodus/cellbrite clone by Q Vashti 2026-03-12
Pegasus Ongoing l Cellbrite | Exodus | Brian Sabey | HallRender | Tulach (1.29.24) 2025-12-29
VirusTotal Analysis ↗ View on VirusTotal
8/94
DETECTIONS
MALICIOUS
Malicious 8
Suspicious 1
Harmless 50
Undetected 35
Reputation -8
TOP DETECTIONS
VENDORRESULT
ADMINUSLabs malicious
CRDF malicious
Chong Lua Dao malicious
CyRadar malicious
Forcepoint ThreatSeeker suspicious
Lionic malicious
Seclookup malicious
Webroot malicious
alphaMountain.ai malicious
URLhaus (abuse.ch) ↗ View on URLhaus
✓ NOT LISTED No malicious activity found in URLhaus database.