IOC Radar
IPMediumSignal 37/100

193.70.85.249

Location
FranceFrance
Roubaix, Hauts-de-France
ASN
AS16276
OVH
First Seen
Nov 10, 2022
Last Seen
May 26, 2026
Nov 10
First Seen
1312d ago
May 26
Last Seen
19d ago
16
Reports
source reports
37%
Confidence
medium
Found in 16 reports. Confidence: medium. · Confidence scores are heuristic. Verify before acting on results.
IPv4 Address
Network layer indicator observed in threat reports.
MISP Category
Network Activity
Confidence
37%
Signal Score
37 / 100
IDS Rule
No
Threat Context
Tags
MITRE ATT&CK

MITRE ATT&CK TTPs

19 techniques

Network Information

CountryFRFrance
RegionRoubaix, Hauts-de-France
ASNAS16276
OrganizationOVH

IP Category

Proxy
Proxy server

Feed Intelligence Summary

16 reports37% confidence
16
Source reports
37%
Confidence score
Category tags
active scanactive scanningaerospace & defenseattackautomotive manufacturingbrute forcebrute force attackbrute force attemptbrute-forcebruteforcecivil servicescowriecowrie honeypotcredential accesscredential harvestingcredential stuffingcyber securitydecoy systemdefensedefense contractingdefense logisticsdefense systemsdefense technologyelectronics manufacturingeuropeexploitation activityfrfrancegovernment technologyidentity & access exploitationindustrial automationindustrial iotindustrial productioniociot securityloginlogin attackmalicious activitymalwaremanufacturing technologymilitary operationsnational securitynetworknetwork securitynextraypassword attacksphishingphishing attackprocess manufacturingprotocol exploitationproxypublic administrationpublic infrastructurepublic policyquality controlreconnaissanceregulatory agenciesremote accessresearchedscannersecurity operationssocial engineeringsshssh attackssh monitoringsupply chain attacksupply chain managementt1021t1021.004t1040t1078t1078.004t1110t1110.001t1110.002t1110.003t1110.004t1566.001t1566.002t1566.003t1589t1589.002t1595t1595.001t1595.002t1595.003telnettelnet threatthreat actorthreat intelligencetor node

Activity Timeline

1 total obs
May 26May 26

Threat Activity Heatmap

· Peak: 2026-05-26
Less
More
Mon
Wed
Fri
Jun
·
·
Jul
·
·
·
Aug
·
·
·
Sep
·
·
·
·
Oct
·
·
·
Nov
·
·
·
Dec
·
·
·
·
Jan
·
·
·
Feb
·
·
·
Mar
·
·
·
·
Apr
·
·
·
May
·
·
·
Jun
·
24h
0
Dormant
7d
0
Dormant
30d
1
Minimal
3mo
1
Minimal
Threat ScoreLow Risk
37
SIGNAL
Signal Score
37%
Confidence
16
Reports
First seenNov 10, 2022
Last seenMay 26, 2026
GeolocationFR
CountryFrance
LocationRoubaix, Hauts-de-France
ASNAS16276
OrgOVH
Coords48.8582, 2.3387
Proxy

VirusTotal

Not checked

WHOIS

raw
inetnum: 193.70.0.0 - 193.70.127.255 netname: FR-OVH-930901 country: FR org: ORG-OS3-RIPE admin-c: OK217-RIPE tech-c: OTC2-RIPE status: ALLOCATED PA mnt-by: RIPE-NCC-HM-MNT mnt-by: OVH-MNT mnt-routes: OVH-MNT mnt-domains: OVH-MNT created: 2016-10-07T08:19:40Z last-modified: 2017-01-11T08:00:07Z source: RIPE # Filtered organisation: ORG-OS3-RIPE org-name: OVH SAS country: FR org-type: LIR address: 2 rue Kellermann address: 59100 address: Roubaix address: FRANCE phone: +33972101007 admin-c: OTC2-RIPE admin-c: OK217-RIPE admin-c: TLB55-RIPE abuse-c: AR15333-RIPE mnt-ref: OVH-MNT mnt-ref: RIPE-NCC-HM-MNT mnt-by: RIPE-NCC-HM-MNT mnt-by: OVH-MNT created: 2004-04-17T11:23:17Z last-modified: 2025-09-17T09:23:15Z source: RIPE # Filtered role: OVH Technical Contact address: OVH SAS address: 2 rue Kellermann address: 59100 Roubaix address: France admin-c: OK217-RIPE tech-c: GM84-RIPE tech-c: SL10162-RIPE nic-hdl: OTC2-RIPE abuse-mailbox: [email protected] mnt-by: OVH-MNT created: 2004-01-28T17:42:29Z last-modified: 2014-09-05T10:47:15Z source: RIPE # Filtered person: Octave Klaba address: OVH SAS address: 2 rue Kellermann address: 59100 Roubaix address: France phone: +33 9 74 53 13 23 nic-hdl: OK217-RIPE mnt-by: OVH-MNT created: 1970-01-01T00:00:00Z last-modified: 2017-10-30T21:44:51Z source: RIPE # Filtered route: 193.70.0.0/17 descr: OVH origin: AS16276 mnt-by: OVH-MNT created: 2016-10-07T08:51:27Z last-modified: 2016-10-07T08:51:27Z source: RIPE
references
https://blog.edie.io/2020/04/30/diy-ip-threat-feed/, https://github.com/tankmek/threatfeed

Export & API

STIX 2.1 Bundle
CSV Export
Permalink

IOC Journey

medium
First detected 3 years ago · Last seen 19 days ago
Appeared in 16 threat reports