IPHighVerifiedSignal 86/100
138.199.59.5
Location
Warsaw, Mazovia
ASN
AS212238
Cdnext WAR
First Seen
Jun 17, 2026
Last Seen
Jun 21, 2026
Found in 102 reports. Confidence: high. · Confidence scores are heuristic. Verify before acting on results.
IPv4 Address
Network layer indicator observed in threat reports.
MISP Category
Network Activity
Confidence
95%
Signal Score
86 / 100
IDS Rule
Yes
Threat Context
Network Information
Country
Poland
RegionWarsaw, Mazovia
ASNAS212238
OrganizationCdnext WAR
IP Category
⟲
Proxy
Proxy server
⬢
Hosting
Hosting provider
Feed Intelligence Summary
102 reports95% confidence
Activity Timeline
Jun 21Jun 17
Threat Activity Heatmap
LessMore
Mon
Wed
Fri
24h
24
Critical
7d
102
Critical
30d
102
Critical
3mo
102
Critical
Threat ScoreHigh Risk
86
SIGNAL
Signal Score
95%
Confidence
102
Reports
First seenJun 17, 2026
Last seenJun 21, 2026
Verified IOC
GeolocationPL
CountryPoland
LocationWarsaw, Mazovia
ASNAS212238
OrgCdnext WAR
Coords52.2299, 21.0093
ProxyHosting
VirusTotal
Not checked
Export & API
STIX 2.1 Bundle
CSV Export
Permalink
IOC Journey
highFirst detected 4 days ago · Last seen today
Appeared in 102 threat reports from 10 sources
Associated with: Akira
Used by malware: Pegasus, NetWire, Mozi, SocGholish, XMRig, Remcos, Akira, Rhysida, XorDDoS, Nanocore, NjRAT, WannaCry, AsyncRAT, Vidar, Metasploit, Sliver, Stealc, Mirai, Havoc