IOC Radar
IPHighVerifiedSignal 86/100

115.48.55.41

Location
ChinaChina
Zhengzhou, Henan
ASN
AS4837
CNC Group CHINA169 Henan Province Network
First Seen
Jun 26, 2026
Last Seen
Jun 28, 2026
Jun 26
First Seen
2d ago
Jun 28
Last Seen
today
47
Reports
source reports
95%
Confidence
high
Found in 47 reports. Confidence: high. · Confidence scores are heuristic. Verify before acting on results.
IPv4 Address
Network layer indicator observed in threat reports.
MISP Category
Network Activity
Confidence
95%
Signal Score
86 / 100
IDS Rule
Yes
Threat Context

Network Information

CountryCNChina
RegionZhengzhou, Henan
ASNAS4837
OrganizationCNC Group CHINA169 Henan Province Network

Feed Intelligence Summary

47 reports95% confidence
AT
Abuse.ch ThreatFox
Today
3292 IOCs in report
AT
Abuse.ch ThreatFox
Yesterday
3271 IOCs in report
AT
Abuse.ch ThreatFox
Yesterday
3276 IOCs in report
AT
Abuse.ch ThreatFox
Yesterday
3278 IOCs in report
AT
Abuse.ch ThreatFox
Yesterday
3278 IOCs in report
AT
Abuse.ch ThreatFox
Yesterday
3281 IOCs in report
AT
Abuse.ch ThreatFox
Yesterday
3282 IOCs in report
AT
Abuse.ch ThreatFox
Yesterday
3280 IOCs in report
AT
Abuse.ch ThreatFox
Yesterday
3279 IOCs in report
AT
Abuse.ch ThreatFox
Yesterday
3283 IOCs in report

Activity Timeline

47 total obs
Jun 28Jun 26

Threat Activity Heatmap

· Peak: 2026-06-27
Less
More
Mon
Wed
Fri
Jun
Jul
·
·
·
Aug
·
·
·
Sep
·
·
·
·
Oct
·
·
·
Nov
·
·
·
Dec
·
·
·
·
Jan
·
·
·
Feb
·
·
·
Mar
·
·
·
·
Apr
·
·
·
May
·
·
·
Jun
·
·
·
24h
0
Dormant
7d
47
Critical
30d
47
Critical
3mo
47
Critical
Threat ScoreHigh Risk
86
SIGNAL
Signal Score
95%
Confidence
47
Reports
First seenJun 26, 2026
Last seenJun 28, 2026
Verified IOC
GeolocationCN
CountryChina
LocationZhengzhou, Henan
ASNAS4837
OrgCNC Group CHINA169 Henan Province Network
Coords34.7472, 113.6250

VirusTotal

Not checked

Export & API

STIX 2.1 Bundle
CSV Export
Permalink

IOC Journey

high
First detected 2 days ago · Last seen today
Appeared in 47 threat reports from 10 sources
Used by malware: Pegasus, SocGholish, XMRig, Remcos, Rhysida, AsyncRAT, Mozi, XWorm, NjRAT, WannaCry, Vidar, Havoc, Sliver, Stealc, Mirai