IOC Radar
IPMediumSignal 60/100

45.86.202.178

Location
GermanyGermany
Frankfurt am Main, HE
ASN
AS206092
VPN Consumer Frankfurt, Germany
First Seen
Jun 17, 2022
Last Seen
Jun 7, 2026
Jun 17
First Seen
1466d ago
Jun 7
Last Seen
16d ago
18
Reports
source reports
60%
Confidence
medium
Found in 18 reports. Confidence: medium. · Confidence scores are heuristic. Verify before acting on results.
IPv4 Address
Network layer indicator observed in threat reports.
MISP Category
Network Activity
Confidence
60%
Signal Score
60 / 100
IDS Rule
No
Threat Context
Tags
MITRE ATT&CK

MITRE ATT&CK TTPs

22 techniques

Network Information

CountryDEGermany
RegionFrankfurt am Main, HE
ASNAS206092
OrganizationVPN Consumer Frankfurt, Germany

IP Category

VPN
VPN exit node

Feed Intelligence Summary

18 reports60% confidence
18
Source reports
60%
Confidence score
Category tags
active scanactive scanningantispamapacheapache attackeraptbad web botblocklist_allbotnet activitybotnet malicious activitybrute forcebrute force attackbrute-forcebruteforcecommunication protocolcompromised hostcredential accesscredential harvestingcredential stuffingddosddos attackdedenial of serviceeuropeexploitation activityexploited hostfinance and insuranceftpgermanyhackinghttp scanneridentity & access exploitationinformation technologyinfrastructure acquisitionreconnaissanceintrusion detectionit infrastructurelog4jmalwaremanualnetworknetwork scanningnetwork securitypassword attacksphishingphishing attackprobingproxyreconnaissanceremote accessremote servicesresearchedscannerscanningsecurity operationssmtpsocial engineeringsoftware developmentspamssh attackt1021.001t1040t1071.001t1076t1110.001t1110.002t1110.003t1110.004t1133t1190t1203t1499.001t1499.002t1563t1566.001t1566.002t1566.003t1587.001t1590.001t1595.001t1595.002t1595.003threat actorthreat intelligencetor nodevpnweb app attackweb application attackweb exploitationweb spamweb trafficwebscanwebscanner

Activity Timeline

1 total obs
Jun 7Jun 7

Threat Activity Heatmap

· Peak: 2026-06-07
Less
More
Mon
Wed
Fri
Jun
·
Jul
·
·
·
Aug
·
·
·
Sep
·
·
·
·
Oct
·
·
·
Nov
·
·
·
Dec
·
·
·
·
Jan
·
·
·
Feb
·
·
·
Mar
·
·
·
·
Apr
·
·
·
May
·
·
·
Jun
·
·
24h
0
Dormant
7d
0
Dormant
30d
1
Minimal
3mo
1
Minimal
Threat ScoreMedium Risk
60
SIGNAL
Signal Score
60%
Confidence
18
Reports
First seenJun 17, 2022
Last seenJun 7, 2026
GeolocationDE
CountryGermany
LocationFrankfurt am Main, HE
ASNAS206092
OrgVPN Consumer Frankfurt, Germany
Coords50.1188, 8.6843
VPN

VirusTotal

Not checked

WHOIS

raw
inetnum: 45.86.202.0 - 45.86.202.255 netname: FRANKFURT-DE-45-86-202-0 country: DE geoloc: 50.1134038 8.6823127 geofeed: https://www.prefixbroker.com/prefixbroker-geofeed.csv org: ORG-VCFG2-RIPE admin-c: VCAR3-RIPE tech-c: VCAR3-RIPE status: ASSIGNED PA mnt-by: PREFIXBROKER-MNT created: 2023-12-11T12:10:29Z last-modified: 2023-12-24T10:57:41Z source: RIPE organisation: ORG-VCFG2-RIPE org-name: VPN Consumer Frankfurt, Germany org-type: OTHER address: Frankfurt, Germany country: DE abuse-c: VCAR3-RIPE mnt-ref: PREFIXBROKER-MNT mnt-by: PREFIXBROKER-MNT created: 2023-12-11T12:09:16Z last-modified: 2024-01-03T08:25:12Z source: RIPE # Filtered role: VPN Consumer Abuse Role address: AZ Business Center address: Avenida Perez Chitre address: Panama, 00395 address: Republica de Panama nic-hdl: VCAR3-RIPE abuse-mailbox: [email protected] mnt-by: PREFIXBROKER-MNT created: 2023-11-22T08:33:27Z last-modified: 2023-11-22T08:33:27Z source: RIPE # Filtered route: 45.86.202.0/24 origin: AS206092 mnt-by: PREFIXBROKER-MNT created: 2020-01-14T13:03:50Z last-modified: 2020-01-14T13:03:50Z source: RIPE
references
https://malware-filter.gitlab.io/malware-filter/botnet-filter.txt

Export & API

STIX 2.1 Bundle
CSV Export
Permalink

IOC Journey

medium
First detected 4 years ago · Last seen 16 days ago
Appeared in 18 threat reports