IPHighVerifiedSignal 86/100
9.141.105.20
Location
Frankfurt am Main, Hesse
ASN
AS8075
Microsoft Azure Cloud (germanywestcentral)
First Seen
Jun 13, 2026
Last Seen
Jun 28, 2026
Found in 327 reports. Confidence: high. · Confidence scores are heuristic. Verify before acting on results.
IPv4 Address
Network layer indicator observed in threat reports.
MISP Category
Network Activity
Confidence
95%
Signal Score
86 / 100
IDS Rule
Yes
Threat Context
Network Information
Country
Germany
RegionFrankfurt am Main, Hesse
ASNAS8075
OrganizationMicrosoft Azure Cloud (germanywestcentral)
IP Category
⬢
Hosting
Hosting provider
Feed Intelligence Summary
327 reports95% confidence
Activity Timeline
Jun 28Jun 13
Threat Activity Heatmap
· Peak: 2026-06-14LessMore
Mon
Wed
Fri
24h
8
Elevated
7d
141
Critical
30d
327
Critical
3mo
327
Critical
Threat ScoreHigh Risk
86
SIGNAL
Signal Score
95%
Confidence
327
Reports
First seenJun 13, 2026
Last seenJun 28, 2026
Verified IOC
GeolocationDE
CountryGermany
LocationFrankfurt am Main, Hesse
ASNAS8075
OrgMicrosoft Azure Cloud (germanywestcentral)
Coords50.1109, 8.6821
Hosting
VirusTotal
Not checked
Export & API
STIX 2.1 Bundle
CSV Export
Permalink
IOC Journey
highFirst detected 14 days ago · Last seen today
Appeared in 327 threat reports from 10 sources
Associated with: Kimsuky
Used by malware: WannaCry, XMRig, NjRAT, Nanocore, DarkComet, NetWire, Remcos, FormBook, Mozi, Pegasus, XWorm, SocGholish, Rhysida, XorDDoS, AsyncRAT, META Stealer, Havoc, Gh0st RAT, Stealc, Sliver, Mirai, Vidar, Metasploit