IPHighVerifiedSignal 70/100
166.1.91.23
Location
Bursa, Bursa Province
ASN
AS47516
END4-ARIN
First Seen
Jun 19, 2026
Last Seen
Jun 20, 2026
Found in 2 reports. Confidence: high. · Confidence scores are heuristic. Verify before acting on results.
IPv4 Address
Network layer indicator observed in threat reports.
MISP Category
Network Activity
Confidence
95%
Signal Score
70 / 100
IDS Rule
Yes
Threat Context
Network Information
Country
Türkiye
RegionBursa, Bursa Province
ASNAS47516
OrganizationEND4-ARIN
Feed Intelligence Summary
2 reports95% confidence
Activity Timeline
Jun 19Jun 19
Threat Activity Heatmap
· Peak: 2026-06-19LessMore
Mon
Wed
Fri
24h
0
Dormant
7d
2
Minimal
30d
2
Minimal
3mo
2
Minimal
Threat ScoreHigh Risk
70
SIGNAL
Signal Score
95%
Confidence
2
Reports
First seenJun 19, 2026
Last seenJun 20, 2026
Verified IOC
GeolocationTR
CountryTürkiye
LocationBursa, Bursa Province
ASNAS47516
OrgEND4-ARIN
Coords40.1925, 29.0587
VirusTotal
Not checked
Export & API
STIX 2.1 Bundle
CSV Export
Permalink
IOC Journey
highFirst detected 4 days ago · Last seen 3 days ago
Appeared in 2 threat reports from 2 sources
Associated with: REvil, Cl0p, Conti, DarkSide
Used by malware: FormBook, AgentTesla, Lumma, Nanocore, SocGholish, Remcos, Stuxnet, Dridex, Emotet, Ryuk, WannaCry, QakBot, AsyncRAT, REvil, Ursnif, Conti, NotPetya, Gh0st RAT, DarkSide, Gootloader, Cl0p, HermeticWiper