IPHighVerifiedSignal 86/100
1.15.221.207
Location
Beijing, Beijing
ASN
AS45090
Tencent Cloud Computing (Beijing) Co. Ltd.
First Seen
Jun 2, 2026
Last Seen
Jun 18, 2026
Found in 332 reports. Confidence: high. · Confidence scores are heuristic. Verify before acting on results.
IPv4 Address
Network layer indicator observed in threat reports.
MISP Category
Network Activity
Confidence
95%
Signal Score
86 / 100
IDS Rule
Yes
Threat Context
Malware Families33
Tags
Network Information
Country
China
RegionBeijing, Beijing
ASNAS45090
OrganizationTencent Cloud Computing (Beijing) Co. Ltd.
IP Category
⟲
Proxy
Proxy server
Feed Intelligence Summary
332 reports95% confidence
Activity Timeline
Jun 18Jun 2
Threat Activity Heatmap
· Peak: 2026-06-08LessMore
Mon
Wed
Fri
24h
0
Dormant
7d
0
Dormant
30d
332
Critical
3mo
332
Critical
Threat ScoreHigh Risk
86
SIGNAL
Signal Score
95%
Confidence
332
Reports
First seenJun 2, 2026
Last seenJun 18, 2026
Verified IOC
GeolocationCN
CountryChina
LocationBeijing, Beijing
ASNAS45090
OrgTencent Cloud Computing (Beijing) Co. Ltd.
Coords30.9523, 117.8164
Proxy
VirusTotal
Not checked
Export & API
STIX 2.1 Bundle
CSV Export
Permalink
IOC Journey
highFirst detected 24 days ago · Last seen 8 days ago
Appeared in 332 threat reports from 10 sources
Associated with: Kimsuky, Sandworm, Turla, Hive, Play
Used by malware: Nanocore, FormBook, WannaCry, AsyncRAT, NetWire, XWorm, Rhadamanthys, Pegasus, SocGholish, XMRig, Lumma, Dridex, Remcos, DarkComet, Rhysida, XorDDoS, NjRAT, QakBot, Cobalt Strike, Sliver, PowerShell Empire, META Stealer, Hive, Bumblebee, Gh0st RAT, Play, Stealc, Mirai, Gootloader, Vidar, Metasploit, RedLine, Havoc