IPMediumSignal 69/100
192.210.214.10
Location
Dallas, TX
ASN
AS36352
HostPapa
First Seen
Aug 12, 2024
Last Seen
Jun 5, 2026
Found in 26 reports. Confidence: medium. · Confidence scores are heuristic. Verify before acting on results.
IPv4 Address
Network layer indicator observed in threat reports.
MISP Category
Network Activity
Confidence
69%
Signal Score
69 / 100
IDS Rule
No
Threat Context
Tags
MITRE ATT&CK
MITRE ATT&CK TTPs
Network Information
Country
United States
RegionDallas, TX
ASNAS36352
OrganizationHostPapa
IP Category
⟲
Proxy
Proxy server
Feed Intelligence Summary
26 reports69% confidence
26
Source reports
69%
Confidence score
Category tags
abuseaccess controlactive scanactive scanningantispamapacheapache attackerattackbad reputationbotnetbotnet activitybrute forcebrute force attackerbrute-forcecommand and controlcredential harvestingcredential stuffingdata exfiltrationdata store exposureddosddos attackdigital oceandistributed attacksexit nodeexploitation activityhackingidentity & access exploitationindicatorinjection activitylog4jmalicious activitymalicious softwaremalwaremalware distributionnetworknetwork scanningnetwork trafficnorth americaphishingphishing attackportscanprocess injectionproxyreconnaissanceresearchedrtbhscannerscannerssecurity policyservice scansocial engineeringspamssht1016t1055t1071t1071.001t1071.002t1071.004t1090t1133t1190t1486t1496t1499.002t1499.003t1565t1566.001t1566.002t1566.003t1572t1588t1595.001t1595.002t1595.003tcp/5900threat actorthreat preventiontortor activitytor exit nodetor networktor nodeunited statesusvncvultrweb app attack
Activity Timeline
Jun 5Jun 5
Threat Activity Heatmap
· Peak: 2026-06-05LessMore
Mon
Wed
Fri
24h
0
Dormant
7d
0
Dormant
30d
1
Minimal
3mo
1
Minimal
Threat ScoreMedium Risk
69
SIGNAL
Signal Score
69%
Confidence
26
Reports
First seenAug 12, 2024
Last seenJun 5, 2026
GeolocationUS
CountryUnited States
LocationDallas, TX
ASNAS36352
OrgHostPapa
Coords32.7797, -96.8022
Proxy
VirusTotal
Not checked
WHOIS
- raw
- NetRange: 192.210.128.0 - 192.210.255.255 CIDR: 192.210.128.0/17 NetName: CC-11 NetHandle: NET-192-210-128-0-1 Parent: NET192 (NET-192-0-0-0-0) NetType: Direct Allocation OriginAS: Organization: HostPapa (HOSTP-7) RegDate: 2012-12-11 Updated: 2024-02-02 Comment: Geofeed https://geofeeds.oniaas.io/geofeeds.csv Ref: https://rdap.arin.net/registry/ip/192.210.128.0 OrgName: HostPapa OrgId: HOSTP-7 Address: 325 Delaware Avenue Address: Suite 300 City: Buffalo StateProv: NY PostalCode: 14202 Country: US RegDate: 2016-06-06 Updated: 2025-10-05 Ref: https://rdap.arin.net/registry/entity/HOSTP-7 OrgAbuseHandle: NETAB23-ARIN OrgAbuseName: NETABUSE OrgAbusePhone: +1-905-315-3455 OrgAbuseEmail: [email protected] OrgAbuseRef: https://rdap.arin.net/registry/entity/NETAB23-ARIN OrgTechHandle: NETTE9-ARIN OrgTechName: NETTECH OrgTechPhone: +1-905-315-3455 OrgTechEmail: [email protected] OrgTechRef: https://rdap.arin.net/registry/entity/NETTE9-ARIN RAbuseHandle: NETAB27-ARIN RAbuseName: NETABUSE-COLOCROSSING RAbusePhone: +1-800-518-9716 RAbuseEmail: [email protected] RAbuseRef: https://rdap.arin.net/registry/entity/NETAB27-ARIN RTechHandle: NETTE11-ARIN RTechName: NETTECH-COLOCROSSING RTechPhone: +1-800-518-9716 RTechEmail: [email protected] RTechRef: https://rdap.arin.net/registry/entity/NETTE11-ARIN
- references
- https://jamesbrine.com.au/digitaloceantoronto-portscan-bruteforce-ip-list-2026-04-27/, https://jamesbrine.com.au, https://malware-filter.gitlab.io/malware-filter/botnet-filter.txt, https://jamesbrine.com.au/vultrtokyo-portscan-bruteforce-ip-list-2026-04-26/, https://check.torproject.org/torbulkexitlist, https://list.rtbh.com.tr/output.txt, https://raw.githubusercontent.com/ahamed-rizvan/IOCs/refs/heads/main/Malicous%20IP%20Address.txt
Export & API
STIX 2.1 Bundle
CSV Export
Permalink
IOC Journey
mediumFirst detected 1 year ago · Last seen 11 days ago
Appeared in 26 threat reports