IOC Radar
IPMediumSignal 48/100

85.86.29.38

Location
SpainSpain
Roquetas de Mar, PV
ASN
AS15704
EUSKALTEL
First Seen
Apr 15, 2026
Last Seen
Apr 23, 2026
Apr 15
First Seen
59d ago
Apr 23
Last Seen
51d ago
7
Reports
source reports
48%
Confidence
medium
Found in 7 reports. Confidence: medium. · Confidence scores are heuristic. Verify before acting on results.
IPv4 Address
Network layer indicator observed in threat reports.
MISP Category
Network Activity
Confidence
48%
Signal Score
48 / 100
IDS Rule
No
Threat Context
Tags

Network Information

CountryESSpain
RegionRoquetas de Mar, PV
ASNAS15704
OrganizationEUSKALTEL

Feed Intelligence Summary

7 reports48% confidence
7
Source reports
48%
Confidence score
Category tags
apteuropeexploitation activityimapimap attackindicatornetworkresearchedsmtpsmtp attackerspainthreat actortor node

Activity Timeline

1 total obs
Apr 23Apr 23

Threat Activity Heatmap

· Peak: 2026-04-23
Less
More
Mon
Wed
Fri
Jun
·
·
·
Jul
·
·
·
Aug
·
·
·
Sep
·
·
·
·
Oct
·
·
·
Nov
·
·
·
Dec
·
·
·
·
Jan
·
·
·
Feb
·
·
·
Mar
·
·
·
·
Apr
·
·
·
May
·
·
·
Jun
24h
0
Dormant
7d
0
Dormant
30d
0
Dormant
3mo
1
Minimal
Intelligence SummaryAI Generated

The IP address 85.86.29.38 has been identified as a high-risk Indicator of Compromise (IOC) with a score of 47.78, indicating a significant potential threat to organizational security. This IP is flagged across multiple reputable threat intelligence feeds, including those specifically targeting botnets and potential attackers, signifying its active involvement in malicious operations. Its presence within our network environment would strongly suggest an ongoing compromise, potentially facilitati…

Threat ScoreMedium Risk
48
SIGNAL
Signal Score
48%
Confidence
7
Reports
First seenApr 15, 2026
Last seenApr 23, 2026
GeolocationES
CountrySpain
LocationRoquetas de Mar, PV
ASNAS15704
OrgEUSKALTEL
Coords43.3180, -2.6764

VirusTotal

Not checked

WHOIS

description
The following is the full list of names given to Vye32GsS2g38eKhmaKrLdDjgrnf2YBT4/FGx8SNCa4txePA
raw
inetnum: 85.86.0.0 - 85.86.255.255 netname: EUSKALTEL-CM descr: Global Telecommunication Service Provider descr: of the Basque Country in Spain country: ES admin-c: EU41-RIPE tech-c: EU41-RIPE status: ASSIGNED PA mnt-by: EUSKALTEL-MNT created: 2020-04-23T13:31:42Z last-modified: 2020-04-23T13:31:42Z source: RIPE # Filtered role: EUSKALTEL RIPE address: Edificio 809 address: Parque Tecnologico de Zamudio address: 48160 Derio (BIZKAIA) address: Spain phone: +34 94 4011000 admin-c: DBA6-RIPE tech-c: DBA6-RIPE tech-c: MNE28-RIPE nic-hdl: EU41-RIPE remarks: ****************************************** remarks: For information, visit: remarks: http://www.euskaltel.com remarks: ****************************************** mnt-by: EUSKALTEL-MNT created: 2002-03-05T08:15:07Z last-modified: 2026-03-05T16:06:47Z source: RIPE # Filtered abuse-mailbox: [email protected] route: 85.86.0.0/16 descr: EUSKALTEL origin: AS12338 mnt-by: EUSKALTEL-MNT created: 2005-06-23T11:34:22Z last-modified: 2005-06-23T11:34:22Z source: RIPE
references
https://malware-filter.gitlab.io/malware-filter/botnet-filter.txt

Export & API

STIX 2.1 Bundle
CSV Export
Permalink

IOC Journey

medium
First detected 1 month ago · Last seen 1 month ago
Appeared in 7 threat reports