IOC Radar
IPHighVerifiedSignal 86/100

106.13.201.122

Location
ChinaChina
Jinrongjie, Beijing
ASN
AS38365
Beijing Baidu Netcom Science and Technology Co., Ltd.
First Seen
Jun 2, 2026
Last Seen
Jun 12, 2026
Jun 2
First Seen
18d ago
Jun 12
Last Seen
8d ago
87
Reports
source reports
95%
Confidence
high
Found in 87 reports. Confidence: high. · Confidence scores are heuristic. Verify before acting on results.
IPv4 Address
Network layer indicator observed in threat reports.
MISP Category
Network Activity
Confidence
95%
Signal Score
86 / 100
IDS Rule
Yes

Network Information

CountryCNChina
RegionJinrongjie, Beijing
ASNAS38365
OrganizationBeijing Baidu Netcom Science and Technology Co., Ltd.

IP Category

Hosting
Hosting provider

Feed Intelligence Summary

87 reports95% confidence
AT
Abuse.ch ThreatFox
Jun 12, 2026
5159 IOCs in report
AT
Abuse.ch ThreatFox
Jun 12, 2026
5157 IOCs in report
AT
Abuse.ch ThreatFox
Jun 12, 2026
5167 IOCs in report
AT
Abuse.ch ThreatFox
Jun 12, 2026
5172 IOCs in report
AT
Abuse.ch ThreatFox
Jun 12, 2026
5189 IOCs in report
AT
Abuse.ch ThreatFox
Jun 12, 2026
5178 IOCs in report
AT
Abuse.ch ThreatFox
Jun 12, 2026
5167 IOCs in report
AT
Abuse.ch ThreatFox
Jun 12, 2026
5146 IOCs in report
AT
Abuse.ch ThreatFox
Jun 12, 2026
5082 IOCs in report
AT
Abuse.ch ThreatFox
Jun 12, 2026
5077 IOCs in report

Activity Timeline

87 total obs
Jun 12Jun 2

Threat Activity Heatmap

· Peak: 2026-06-04
Less
More
Mon
Wed
Fri
Jun
·
·
Jul
·
·
·
Aug
·
·
·
Sep
·
·
·
·
Oct
·
·
·
Nov
·
·
·
Dec
·
·
·
·
Jan
·
·
·
Feb
·
·
·
Mar
·
·
·
·
Apr
·
·
·
May
·
·
·
Jun
·
24h
0
Dormant
7d
0
Dormant
30d
87
Critical
3mo
87
Critical
Threat ScoreHigh Risk
86
SIGNAL
Signal Score
95%
Confidence
87
Reports
First seenJun 2, 2026
Last seenJun 12, 2026
Verified IOC
GeolocationCN
CountryChina
LocationJinrongjie, Beijing
ASNAS38365
OrgBeijing Baidu Netcom Science and Technology Co., Ltd.
Coords39.9116, 116.3510
Hosting

VirusTotal

Not checked

Export & API

STIX 2.1 Bundle
CSV Export
Permalink

IOC Journey

high
First detected 18 days ago · Last seen 8 days ago
Appeared in 87 threat reports from 10 sources
Associated with: Sandworm, Turla, Hive, Play
Used by malware: XorDDoS, Nanocore, NjRAT, XWorm, Lumma, Pegasus, NetWire, AsyncRAT, SocGholish, XMRig, Remcos, Rhysida, PowerShell Empire, Stealc, Mirai, Vidar, Metasploit, Sliver, RedLine, Gootloader, META Stealer, Hive, Havoc, Play, Cobalt Strike