IOC Radar
IPHighVerifiedSignal 70/100

54.236.58.108

Location
United StatesUnited States
Ashburn, Virginia
ASN
AS14618
AWS EC2 (us-east-1)
First Seen
Jun 19, 2026
Last Seen
Jun 20, 2026
Jun 19
First Seen
6d ago
Jun 20
Last Seen
5d ago
2
Reports
source reports
95%
Confidence
high
Found in 2 reports. Confidence: high. · Confidence scores are heuristic. Verify before acting on results.
IPv4 Address
Network layer indicator observed in threat reports.
MISP Category
Network Activity
Confidence
95%
Signal Score
70 / 100
IDS Rule
Yes

Network Information

CountryUSUnited States
RegionAshburn, Virginia
ASNAS14618
OrganizationAWS EC2 (us-east-1)

IP Category

Hosting
Hosting provider

Feed Intelligence Summary

2 reports95% confidence
CO
CIRCL OSINT Feed
6d ago
980 IOCs in report
CO
CIRCL OSINT Feed
6d ago
923 IOCs in report

Activity Timeline

2 total obs
Jun 19Jun 19

Threat Activity Heatmap

· Peak: 2026-06-19
Less
More
Mon
Wed
Fri
Jun
·
Jul
·
·
·
Aug
·
·
·
Sep
·
·
·
·
Oct
·
·
·
Nov
·
·
·
Dec
·
·
·
·
Jan
·
·
·
Feb
·
·
·
Mar
·
·
·
·
Apr
·
·
·
May
·
·
·
Jun
·
·
24h
0
Dormant
7d
2
Minimal
30d
2
Minimal
3mo
2
Minimal
Threat ScoreHigh Risk
70
SIGNAL
Signal Score
95%
Confidence
2
Reports
First seenJun 19, 2026
Last seenJun 20, 2026
Verified IOC
GeolocationUS
CountryUnited States
LocationAshburn, Virginia
ASNAS14618
OrgAWS EC2 (us-east-1)
Coords39.0438, -77.4874
Hosting

VirusTotal

Not checked

Export & API

STIX 2.1 Bundle
CSV Export
Permalink

IOC Journey

high
First detected 6 days ago · Last seen 5 days ago
Appeared in 2 threat reports from 2 sources
Associated with: REvil, Cl0p, Conti, DarkSide
Used by malware: Nanocore, SocGholish, Remcos, Stuxnet, Lumma, WannaCry, Dridex, AsyncRAT, FormBook, AgentTesla, Emotet, Ryuk, QakBot, REvil, Ursnif, Conti, NotPetya, DarkSide, Gootloader, Cl0p, HermeticWiper, Gh0st RAT