IOC Radar
IPMediumSignal 76/100

172.86.67.130

Location
GermanyGermany
Frankfurt am Main, Hesse
ASN
AS14956
FranTech Solutions
First Seen
Apr 16, 2026
Last Seen
May 22, 2026
Apr 16
First Seen
60d ago
May 22
Last Seen
25d ago
11
Reports
source reports
76%
Confidence
medium
Found in 11 reports. Confidence: medium. · Confidence scores are heuristic. Verify before acting on results.
IPv4 Address
Network layer indicator observed in threat reports.
MISP Category
Network Activity
Confidence
76%
Signal Score
76 / 100
IDS Rule
No
Threat Context
Tags

Network Information

CountryDEGermany
RegionFrankfurt am Main, Hesse
ASNAS14956
OrganizationFranTech Solutions

Feed Intelligence Summary

11 reports76% confidence
11
Source reports
76%
Confidence score
Category tags
abuseactive scanaptbad reputationbrute forcebrute force attackerbrute-forcebruteforcecowriededigital oceandionaeaeuropeexploitexploitation activityexploited hostfattfraud voipgermanyhackingindicatornetworkp0fportscanresearchedscams & fraudscannerscannerssensor-taggedservice scansiptannerthreat actortor nodetpotvulnerability scanvulnerability-exploitationvultrweb app attack

Activity Timeline

1 total obs
May 22May 22

Threat Activity Heatmap

· Peak: 2026-05-22
Less
More
Mon
Wed
Fri
Jun
·
·
Jul
·
·
·
Aug
·
·
·
Sep
·
·
·
·
Oct
·
·
·
Nov
·
·
·
Dec
·
·
·
·
Jan
·
·
·
Feb
·
·
·
Mar
·
·
·
·
Apr
·
·
·
May
·
·
·
Jun
·
24h
0
Dormant
7d
0
Dormant
30d
1
Minimal
3mo
1
Minimal
Threat ScoreHigh Risk
76
SIGNAL
Signal Score
76%
Confidence
11
Reports
First seenApr 16, 2026
Last seenMay 22, 2026
GeolocationDE
CountryGermany
LocationFrankfurt am Main, Hesse
ASNAS14956
OrgFranTech Solutions
Coords50.1273, 8.6428

VirusTotal

Not checked

WHOIS

description
IPv4 hosts detected attempting to brute force SIP on DigitalOcean Toronto (CA) honeypot
raw
FranTech Solutions PONYNET-16 (NET-172-86-64-0-1) 172.86.64.0 - 172.86.127.255 RouterHosting LLC ROUTERHOSTING (NET-172-86-66-0-1) 172.86.66.0 - 172.86.67.255

Export & API

STIX 2.1 Bundle
CSV Export
Permalink

IOC Journey

medium
First detected 2 months ago · Last seen 25 days ago
Appeared in 11 threat reports