IPHighVerifiedSignal 86/100
1.15.248.225
Location
Beijing, Beijing
ASN
AS45090
Tencent Cloud Computing (Beijing) Co. Ltd.
First Seen
Jun 2, 2026
Last Seen
Jun 21, 2026
Found in 397 reports. Confidence: high. · Confidence scores are heuristic. Verify before acting on results.
IPv4 Address
Network layer indicator observed in threat reports.
MISP Category
Network Activity
Confidence
95%
Signal Score
86 / 100
IDS Rule
Yes
Threat Context
Malware Families32
Tags
Network Information
Country
China
RegionBeijing, Beijing
ASNAS45090
OrganizationTencent Cloud Computing (Beijing) Co. Ltd.
IP Category
⟲
Proxy
Proxy server
Feed Intelligence Summary
397 reports95% confidence
Activity Timeline
Jun 21Jun 2
Threat Activity Heatmap
· Peak: 2026-06-08LessMore
Mon
Wed
Fri
24h
6
Moderate
7d
140
Critical
30d
397
Critical
3mo
397
Critical
Threat ScoreHigh Risk
86
SIGNAL
Signal Score
95%
Confidence
397
Reports
First seenJun 2, 2026
Last seenJun 21, 2026
Verified IOC
GeolocationCN
CountryChina
LocationBeijing, Beijing
ASNAS45090
OrgTencent Cloud Computing (Beijing) Co. Ltd.
Coords30.9523, 117.8164
Proxy
VirusTotal
Not checked
Export & API
STIX 2.1 Bundle
CSV Export
Permalink
IOC Journey
highFirst detected 18 days ago · Last seen today
Appeared in 397 threat reports from 10 sources
Associated with: Kimsuky, Turla, Hive, Play
Used by malware: Mozi, SocGholish, XMRig, Remcos, Rhysida, XorDDoS, FormBook, Lumma, Rhadamanthys, Pegasus, NetWire, Nanocore, NjRAT, XWorm, WannaCry, Dridex, AsyncRAT, QakBot, Stealc, Mirai, Vidar, Metasploit, Sliver, PowerShell Empire, Bumblebee, RedLine, Gootloader, META Stealer, Hive, Play, Cobalt Strike, Havoc