IOC Radar
IPMediumSignal 53/100

138.199.6.213

Location
SwitzerlandSwitzerland
Zurich, Zurich
ASN
AS212238
Cdnext ZUR
First Seen
Apr 25, 2022
Last Seen
Jun 11, 2026
Apr 25
First Seen
1523d ago
Jun 11
Last Seen
15d ago
11
Reports
source reports
53%
Confidence
medium
3/91
VirusTotal
detections
Found in 11 reports. Confidence: medium. · Confidence scores are heuristic. Verify before acting on results.
IPv4 Address
Network layer indicator observed in threat reports.
MISP Category
Network Activity
Confidence
53%
Signal Score
53 / 100
IDS Rule
No
Threat Context
Tags
MITRE ATT&CK

MITRE ATT&CK TTPs

20 techniques

Network Information

CountryCHSwitzerland
RegionZurich, Zurich
ASNAS212238
OrganizationCdnext ZUR

Feed Intelligence Summary

11 reports53% confidence
11
Source reports
53%
Confidence score
Category tags
abuseactive scanactive scanningalienvault_ransomwareauto-generated securitybad reputationbrute forcebrute force attackbrute-forcebruteforcechcredential accesscredential stuffingdata exfiltrationdata store exposuredatabase securityddosddos attackdecoy systemdenial of servicedigital oceaneuropeexploitation activityftp brute forceftp brute-forcehackinghttp brute forceidentity & access exploitationinformation technologyinjection activityinjection attacksit infrastructuremalwarenetworknetwork reconnaissancenetwork scanningpassword attackpassword attacksping of deathproxyransomwarereconnaissanceremote accessremote servicesresearchedscannerscannerssoftware developmentsql injectionsshssh attacksyn scant1021.001t1046t1059t1059.003t1076t1110t1110.001t1110.002t1110.003t1110.004t1190t1203t1486t1499.001t1499.002t1563t1595t1595.001t1595.002t1595.003targeting databasetcp scanthreat intelligencetortor nodeudp scanweb application attackweb exploitation

Activity Timeline

1 total obs
Jun 11Jun 11

Threat Activity Heatmap

· Peak: 2026-06-11
Less
More
Mon
Wed
Fri
Jun
·
Jul
·
·
·
Aug
·
·
·
Sep
·
·
·
·
Oct
·
·
·
Nov
·
·
·
Dec
·
·
·
·
Jan
·
·
·
Feb
·
·
·
Mar
·
·
·
·
Apr
·
·
·
May
·
·
·
Jun
·
·
24h
0
Dormant
7d
0
Dormant
30d
1
Minimal
3mo
1
Minimal
Threat ScoreMedium Risk
53
SIGNAL
Signal Score
53%
Confidence
11
Reports
First seenApr 25, 2022
Last seenJun 11, 2026
GeolocationCH
CountrySwitzerland
LocationZurich, Zurich
ASNAS212238
OrgCdnext ZUR
Coords47.3668, 8.5498

VirusTotal

3/ 91vendors flagged
3% detection rateJun 14, 2026

WHOIS

description
IPv4 hosts detected port scanning DigitalOcean Toronto (CA) honeypot

Export & API

STIX 2.1 Bundle
CSV Export
Permalink

IOC Journey

medium
First detected 4 years ago · Last seen 15 days ago
Appeared in 11 threat reports