s2
--:--:--UTC

Searching APEX

Starting…

  1. Searching Threats, IOCs & Threat Intelligence locally
  2. Querying external providers
  3. Asking AI Forensic Validator
  4. Creating new entry from validated hit

0s elapsed

VT-185.212.128.15 high

📛 Threat Title

VirusTotal: 185.212.128.15

Category: ioc First seen: Last updated:

Description

VirusTotal verdict: 8 malicious / 3 suspicious of 91 engines.

Indicators of Compromise (1)

Each indicator is enriched from the IOC database, threat-intel feed corroboration (Threat Hunt) and VirusTotal. Click one to expand.

ipv4 185.212.128.15 VT 11 / 91

IOC database

Type
ipv4
Value
185.212.128.15
First seen
Last seen
Attached to this threat
Appears in
1 threat
Description
Submitted to VirusTotal for analysis.

Open the full IOC page →

Threat Hunt — feed corroboration

Not present in any configured threat-intel feed.

Flagged by 11 of 91 VirusTotal vendors

VendorVerdictDetection
ADMINUSLabs malicious malicious
AlphaSOC malicious phishing
BitDefender malicious malware
Cluster25 malicious malicious
CRDF malicious malicious
CyRadar malicious malware
G-Data malicious malware
Webroot malicious malicious
alphaMountain.ai suspicious suspicious
Gridinsoft suspicious suspicious
SOCRadar suspicious suspicious

Details From VirusTotal

Basic Properties
Network185.212.128.0/22
CountryVG
AS ownerIT WEB LTD
ASN200313
Regional registryARIN
History
Last analysis2026-05-19 00:35 UTC
Last modified on VirusTotal2026-05-31 09:55 UTC
WHOIS record date2026-05-19 00:36 UTC

References (1)

Remediations (10)

  • web:blackswan-cybersecurity.com

    Cloud Files API activity originating outside legitimate OneDrive/sync processes. Mitigation Steps: Apply all Windows updates immediately (monitor MSRC for an emergency RedSun-specific patch. None released as of April 17, 2026). Supplement Defender with a secondary EDR solution (e.g., Huntress) capable of detecting Defender bypasses.

  • web:chatforest.com

    ChatForest is an AI-native publication covering the MCP ecosystem and AI tools. Reviews, guides, and analysis from the agents who actually use them.

  • web:cortex.marketplace.pan.dev

    It combines proactive mitigation , enhanced threat detection, and in-depth reporting, using Fortinet's dynamic antivirus technology, dual-level sandboxing, and FortiGuard cloud integration to counter advanced threats.

  • web:docs.cloud.google.com

    Key features: Automation sequencing: Configure playbooks so that a remediation playbook (for example, host isolation or account suspension) automatically initiates based on the output of the Gemini Triage and Investigation Agent and can immediately act o important cases.

  • web:github.com

    A comprehensive guide to adversarial testing and security evaluation of AI systems, helping organizations identify vulnerabilities before attackers exploit them. - requie/AI-Red-Teaming-Guide

  • web:wifitalents.com

    Compare the top Anti Scam Software picks for 2026 scams, ranked for detection and blocking. Check best tools like VirusTotal and Talos.

  • web:www.cisa.gov

    CISA and its partners issued this guidance to inform organizations about vulnerabilities within the log4j services, websites, applications and products. CISA strongly encourages organizations to take immediate action to protect against exploitation.

  • web:www.helpnetsecurity.com

    Cybersecurity news with a focus on enterprise security. Discover what matters in the world of information security today.

  • web:www.linkedin.com

    🚨 CRITICAL VULNERABILITY ALERT CVE-2026-41497 | CVSS Score: 9.8 AFFECTED PRODUCT: • PraisonAI multi-agent teams system (versions prior to 4[.]6[.]9) VULNERABILY DETAILS: A critical command ...

  • web:www.rescana.com

    Executive Summary A sophisticated and rapidly evolving cybercriminal campaign is exploiting the trust in open-source and freeware tools by deploying fake websites that closely mimic legitimate project pages. These fraudulent sites are engineered to rank highly in Google search results, often outcompeting the authentic sources. Leveraging advanced Traffic Distribution Systems (TDS), the ...

AI Forensic Analysis

Only Available for Registered Users. Sign in to view.

VirusTotal Information

loading…

IP Geolocation

Loading…