MalwareBazaar

MalwareBazaar is a platform from abuse.ch and Spamhaus, dedicated to sharing malware samples with the infosec community, antivirus vendors, and threat intelligence providers. Upload malware samples and explore the database for valuable intelligence. Set alerts to track newly observed malware, use APIs to seamlessly push or pull signals, and automate bulk queries.

With this intelligence, gain insights into malware behavior, to help identify, track, and mitigate against malware and botnet-related cyber threats.

MalwareBazaar database »

MalwareBazaar data

Browse malware samples

Gain valuable insights and find the latest malware samples.

Access database »

Share malware samples

Help to make the internet safer by sharing malware samples with the community.

Upload samples »

MalwareBazaar API

Integrate intel from MalwareBazaar into your SIEM or threat intel platform using the API.

Access API »

Spamhaus datasets enhanced by MalwareBazaar

Access Spamhaus’ datasets, enriched with malware samples from MalwareBazaar.

Data for threat hunting

Context-rich metadata relating to IP, domain and malware signals.

Access dataset »

Perimeter protection

Border Gateway Protocol feeds to stop compromised devices communicating with active botnet C2 servers.

Access dataset »

Network protection

A range of response policy zones (RPZs) protecting against malicious threats at DNS level.

Access dataset »