IOC Radar
IPHighVerifiedSignal 80/100

118.126.104.234

Location
ChinaChina
Guangzhou, Guangdong
ASN
AS45090
Tencent cloud computing (Beijing) Co., Ltd.
First Seen
Jun 2, 2026
Last Seen
Jun 3, 2026
Jun 2
First Seen
2d ago
Jun 3
Last Seen
2d ago
7
Reports
source reports
95%
Confidence
high
Found in 7 reports. Confidence: high. · Confidence scores are heuristic. Verify before acting on results.
IPv4 Address
Network layer indicator observed in threat reports.
MISP Category
Network Activity
Confidence
95%
Signal Score
80 / 100
IDS Rule
Yes

Network Information

CountryCNChina
RegionGuangzhou, Guangdong
ASNAS45090
OrganizationTencent cloud computing (Beijing) Co., Ltd.

Feed Intelligence Summary

7 reports95% confidence
AT
Abuse.ch ThreatFox
2d ago
2676 IOCs in report
AT
Abuse.ch ThreatFox
2d ago
2688 IOCs in report
AT
Abuse.ch ThreatFox
2d ago
2688 IOCs in report
AT
Abuse.ch ThreatFox
2d ago
2695 IOCs in report
AT
Abuse.ch ThreatFox
2d ago
2695 IOCs in report
AT
Abuse.ch ThreatFox
2d ago
2700 IOCs in report
AT
Abuse.ch ThreatFox
2d ago
2701 IOCs in report

Activity Timeline

7 total obs
Jun 3Jun 2

Threat Activity Heatmap

Less
More
Mon
Wed
Fri
Jun
·
·
·
·
Jul
·
·
·
Aug
·
·
·
Sep
·
·
·
·
Oct
·
·
·
Nov
·
·
·
Dec
·
·
·
·
Jan
·
·
·
Feb
·
·
·
Mar
·
·
·
·
Apr
·
·
·
May
·
·
·
24h
0
Dormant
7d
7
Elevated
30d
7
Elevated
3mo
7
Elevated
Threat ScoreHigh Risk
80
SIGNAL
Signal Score
95%
Confidence
7
Reports
First seenJun 2, 2026
Last seenJun 3, 2026
Verified IOC
GeolocationCN
CountryChina
LocationGuangzhou, Guangdong
ASNAS45090
OrgTencent cloud computing (Beijing) Co., Ltd.
Coords23.1181, 113.2539

VirusTotal

Not checked

Export & API

STIX 2.1 Bundle
CSV Export
Permalink

IOC Journey

high
First detected 2 days ago · Last seen 2 days ago
Appeared in 7 threat reports from 7 sources
Associated with: Sandworm
Used by malware: NetWire, XorDDoS, DarkComet, Nanocore, Stealc, Mirai, Vidar, Lumma, SocGholish, XMRig, Remcos, Rhysida, Sliver, Metasploit, XWorm, Havoc, AsyncRAT