Product

Threat Intelligence

Know your threats.

Comprehensive IP threat intelligence aggregating 30+ blocklist sources including Spamhaus, Firehol, DShield, Team Cymru, abuse.ch, and 7 DNSBL zones. Detect botnets, spam, scanners, crawlers, and Tor exit nodes in real-time.

Botnet Detection

Identify botnet-infected IPs with C2 server tracking, malware distribution detection, and SSL blacklist integration via abuse.ch Feodo Tracker, URLhaus, and SSLBL.

Spam Detection

Flag spam sources using 7 DNSBL zones (Spamhaus ZEN, Barracuda, SpamCop, DroneBL, Tornevall, ProxyBL, S5H) and 25+ blocklist feeds.

Scanner & Crawler Detection

Detect scanners with 10+ operator fingerprints and 4-tier verification: verified, unverified, spoofed, and unknown.

Tor Exit Node Detection

Real-time Tor exit node identification using official Tor Project bulk exit lists and the Onionoo relay API with directory authority mapping.

Blocklist Aggregation

31 blocklist sources: Spamhaus DROP/EDROP, FireHOL levels 1-2, DShield, SpeedX, IPsum, Emerging Threats, CINS Army, compromised IPs, and more.

Honeypot Hit Tracking

Track IPs that have hit honeypots in the last 30 days with hit count for early warning of malicious reconnaissance.

Sample Response

{
  "is_botnet": false,
  "is_spammer": true,
  "is_scanner": false,
  "is_tor": false,
  "threat_types": ["spam"],
  "blocklist_count": 3,
  "dnsbl_sources": ["zen.spamhaus.org", "b.barracudacentral.org"],
  "honeypot_hits_30d": 0
}

Ready to get started?

5,000 free requests per month. No credit card required.