IPHighVerifiedSignal 86/100
94.26.3.180
Location
Sofia, Sofia-Capital
ASN
AS25211
Telco power Ltd
First Seen
Jun 8, 2026
Last Seen
Jun 9, 2026
Found in 37 reports. Confidence: high. · Confidence scores are heuristic. Verify before acting on results.
IPv4 Address
Network layer indicator observed in threat reports.
MISP Category
Network Activity
Confidence
95%
Signal Score
86 / 100
IDS Rule
Yes
Threat Context
Network Information
Country
Bulgaria
RegionSofia, Sofia-Capital
ASNAS25211
OrganizationTelco power Ltd
IP Category
⟲
Proxy
Proxy server
Feed Intelligence Summary
37 reports95% confidence
Activity Timeline
Jun 9Jun 8
Threat Activity Heatmap
LessMore
Mon
Wed
Fri
24h
0
Dormant
7d
37
Critical
30d
37
Critical
3mo
37
Critical
Threat ScoreHigh Risk
86
SIGNAL
Signal Score
95%
Confidence
37
Reports
First seenJun 8, 2026
Last seenJun 9, 2026
Verified IOC
GeolocationBG
CountryBulgaria
LocationSofia, Sofia-Capital
ASNAS25211
OrgTelco power Ltd
Coords42.6977, 23.3219
Proxy
VirusTotal
Not checked
Export & API
STIX 2.1 Bundle
CSV Export
Permalink
IOC Journey
highFirst detected 2 days ago · Last seen 1 day ago
Appeared in 37 threat reports from 10 sources
Associated with: Kimsuky, Hive, Turla, Play
Used by malware: Dridex, SocGholish, XMRig, NetWire, Remcos, Rhysida, Rhadamanthys, Lumma, Nanocore, Stealc, Mirai, Vidar, NjRAT, Pegasus, Havoc, XWorm, AsyncRAT, Bumblebee, Sliver, Cobalt Strike, META Stealer, Hive, Play