< The Portuguese Abuse Open Feed >
by seguranca-informatica.pt
Use the hashtag: #0xSI_f33d @ VirusTotal official ingestor
$:> SUBMIT NEW THREAT CAMPAIGN
Target Indicator
Category
Tag
$:>
DateVirus TotalIndicatorCategoryTagInfrastructure
01/10/2026
@b0t_xot TITLE: Sign in ? Cloudflare Access
phishing phishing
IP: 104.19.194.29
01/10/2026
@bot_2ty TITLE: no title recorded
phishing phishing
IP: 104.21.24.93
01/10/2026
@b0t_xot TITLE: Sign in ? Cloudflare Access
phishing phishing
IP: 104.19.194.29
01/10/2026
@b0t_xot TITLE: Just a moment...
phishing phishing
IP: 172.67.149.44
01/10/2026
@b0t_x TITLE: no title recorded
malware malware
IP: 5.206.227.156
01/10/2026
@bot_2ty TITLE: no title recorded
phishing phishing
IP: 216.198.79.195
01/10/2026
@bot_2ty TITLE: no title recorded
phishing phishing
IP: 216.198.79.131
01/10/2026
@b0t_xot TITLE: Sign in ? Cloudflare Access
phishing phishing
IP: 104.19.194.29
01/10/2026
@b0t_x TITLE: no title recorded
malware malware
IP: 5.206.227.156
01/10/2026
@bot_orange TITLE: no title recorded
phishing phishing
IP: 62.210.172.150
01/10/2026
@bot_orange TITLE: no title recorded
phishing phishing
IP: 188.114.96.9
01/10/2026
@bot_orange TITLE: no title recorded
phishing phishing
IP: 172.66.45.28
01/10/2026
@bot_orange TITLE: no title recorded
phishing phishing
IP: 188.114.97.9
01/10/2026
@b0t_x TITLE: no title recorded
malware malware
IP: 5.206.227.156
01/10/2026
@community TITLE: no title recorded
phishing banking
IP: 172.67.75.163
01/10/2026
@community TITLE: no title recorded
phishing phishing
IP: 185.223.31.92
01/10/2026
@b0t_x TITLE: no title recorded
malware malware
IP: 5.206.227.156
01/10/2026
@community TITLE: no title recorded
malware RAT
IP: 188.114.97.9
01/10/2026
@bot_orange TITLE: [🏚️] Adopt Me! - Roblox
phishing phishing
IP: 5.175.169.201
01/10/2026
@bot_orange TITLE: no title recorded
phishing phishing
IP: 216.198.79.3

API Documentation

API is available at https://feed.seguranca-informatica.pt/api.php and will return a CSV or JSON response.

The API is free for 7 days and account creation is required. After that, the API token will be sent to your email.
You can also donate and join our membership plan for unlimited monthly/yearly access.

Please note that running a massive amount of queries in a short time will get you blocked and/or banned.
$:> If you need an API token, please contact us here.


ParameterExample | Key Value
Parameters highlighted with red color are mandatory.
from
feed.seguranca-informatica.pt/api.php?token_u=#&token_p=#&from=today
Values: {today; yesterday; last-3-days; last-week; last-month; last-6-months; last-year}
format
...&from=today&format=csv
Values: {csv; json; raw}
tag
...&format=json&tag=malware
Values: only available tags
title_or_url
...&tag=malware&title_or_url=amazon
Example 1: ...&title_or_url=banco
Example 2: ...&title_or_url=.pt
Example 3: ...&title_or_url=.pt&tag=phishing

Returned list example: {id, url, domain, data, ip, mx, cname, vt_url, img_url, id_user, id_tag, info}

For integration with security appliances, use the raw format:

...&from=today&format=raw (get domain by line)

Friends of 0xSI_f33d

Are you using 0xSI_f33d data, but not listed here? Let us know