# Abuse.ch

> Use this tool when you need to analyze threats and gather intelligence on files, URLs, domains, and IP addresses. It solves problems related to security reporting, malware analysis, and incident response by providing comprehensive reports and IOC enrichment capabilities. The tool takes in hashes, URLs, domains, and IP addresses as input and outputs detailed threat reports, making it ideal for security analysts and threat hunters requiring programmatic access to malware intelligence.

Canonical page: https://skillsregistry.net/skills/lokallost-abusech  
JSON: https://api.skillsregistry.net/v1/skills/lokallost-abusech

## Description

This MCP server provides threat intelligence analysis by integrating with abuse.ch platforms including MalwareBazaar, URLhaus, and ThreatFox to deliver comprehensive security reports for files, URLs, domains, and IP addresses. Built with Python using FastMCP and aiohttp for async operations, it features structured Pydantic schemas for data validation, concurrent API calls for performance, and automatic response limiting to prevent oversized payloads. The implementation offers four core tools for retrieving detailed threat reports with hash validation, URL formatting, and consolidated intelligence from multiple abuse.ch sources, making it valuable for security analysts, incident responders, and threat hunters who need programmatic access to malware intelligence and IOC enrichment capabilities.

## Trust

- **Trust score (0–1):** 0.97
- **Verification tier:** verified
- **Last scanned:** 2026-09-28

## Facts

- **Version:** 1.0.0
- **Skill type:** atomic
- **Execution layer:** mcp-remote
- **Runtime environment:** api
- **Category:** security
- **Updated:** 2026-09-28

## Source

- **Source listing:** [PulseMCP](https://www.pulsemcp.com/servers/lokallost-abusech)
- **Repository:** <https://github.com/lokallost/abusech-mcp>

## Use it

Resolve this record through the SkillsRegistry MCP server (no auth, read-only):

```
claude mcp add --transport http --scope user skillsregistry https://api.skillsregistry.net/mcp
```

```json
{
  "jsonrpc": "2.0",
  "id": 1,
  "method": "tools/call",
  "params": {
    "name": "get_skill",
    "arguments": {
      "slug": "lokallost-abusech"
    }
  }
}
```

REST: `GET https://api.skillsregistry.net/v1/skills/lokallost-abusech` · pull for local use: `GET https://api.skillsregistry.net/v1/skills/lokallost-abusech/pull`

---
SkillsRegistry indexes agent skills from public registries and GitHub. Skills we have analysed are scanned with Circle-IR and scored on six dimensions; each listing states its scan coverage. More: https://skillsregistry.net/llms.txt
