IPHighVerifiedSignal 86/100
57.158.27.132
Location
Hong Kong, Central and Western District
ASN
AS8075
Microsoft Azure Cloud (eastasia)
First Seen
Jun 2, 2026
Last Seen
Jun 27, 2026
Found in 541 reports. Confidence: high. · Confidence scores are heuristic. Verify before acting on results.
IPv4 Address
Network layer indicator observed in threat reports.
MISP Category
Network Activity
Confidence
95%
Signal Score
86 / 100
IDS Rule
Yes
Threat Context
Malware Families33
Tags
Network Information
Country
Hong Kong
RegionHong Kong, Central and Western District
ASNAS8075
OrganizationMicrosoft Azure Cloud (eastasia)
IP Category
⬢
Hosting
Hosting provider
Feed Intelligence Summary
541 reports95% confidence
Activity Timeline
Jun 27Jun 2
Threat Activity Heatmap
· Peak: 2026-06-08LessMore
Mon
Wed
Fri
24h
17
Critical
7d
150
Critical
30d
541
Critical
3mo
541
Critical
Threat ScoreHigh Risk
86
SIGNAL
Signal Score
95%
Confidence
541
Reports
First seenJun 2, 2026
Last seenJun 27, 2026
Verified IOC
GeolocationHK
CountryHong Kong
LocationHong Kong, Central and Western District
ASNAS8075
OrgMicrosoft Azure Cloud (eastasia)
Coords22.2670, 114.1880
Hosting
VirusTotal
Not checked
Export & API
STIX 2.1 Bundle
CSV Export
Permalink
IOC Journey
highFirst detected 24 days ago · Last seen today
Appeared in 541 threat reports from 10 sources
Associated with: Kimsuky, LockBit, Hive, Sandworm, Turla, Play
Used by malware: FormBook, Mozi, Lumma, XWorm, NetWire, NjRAT, Pegasus, Nanocore, SocGholish, XMRig, Remcos, Rhysida, WannaCry, AsyncRAT, Dridex, XorDDoS, QakBot, Cobalt Strike, PowerShell Empire, RedLine, META Stealer, Gh0st RAT, Play, Stealc, Mirai, Vidar, Hive, Bumblebee, Metasploit, Gootloader, Havoc, LockBit, Sliver