s2
--:--:--UTC

Searching APEX

Starting…

  1. Searching Threats, IOCs & Threat Intelligence locally
  2. Querying external providers
  3. Asking AI Forensic Validator
  4. Creating new entry from validated hit

0s elapsed

VT-64.199.252.59 high

📛 Threat Title

VirusTotal: 64.199.252.59

Category: ioc First seen: Last updated:

Description

VirusTotal verdict: 14 malicious / 2 suspicious of 91 engines.

Indicators of Compromise (1)

Each indicator is enriched from the IOC database, threat-intel feed corroboration (Threat Hunt) and VirusTotal. Click one to expand.

ipv4 64.199.252.59 VT 16 / 91

IOC database

Type
ipv4
Value
64.199.252.59
First seen
Last seen
Attached to this threat
Appears in
2 threats
Description
Submitted to VirusTotal for analysis.

Open the full IOC page →

Threat Hunt — feed corroboration

Not present in any configured threat-intel feed.

Flagged by 16 of 91 VirusTotal vendors

VendorVerdictDetection
ADMINUSLabs malicious malicious
alphaMountain.ai malicious malicious
AlphaSOC malicious phishing
BitDefender malicious malware
Cluster25 malicious malicious
CRDF malicious malicious
Criminal IP malicious malicious
CyRadar malicious malicious
Fortinet malicious phishing
G-Data malicious malware
Lionic malicious malicious
Netcraft malicious malicious
Sophos malicious phishing
VIPRE malicious malware
Gridinsoft suspicious suspicious
SOCRadar suspicious suspicious

Details From VirusTotal

Basic Properties
Network64.199.252.0/24
CountryUS
AS ownerIP Pathways, LLC
ASN393775
Regional registryARIN
History
Last analysis2026-05-28 06:50 UTC
Last modified on VirusTotal2026-05-30 23:56 UTC
WHOIS record date2026-05-22 05:13 UTC

References (1)

Remediations (10)

  • web:arxiv.org

    Our analysis identified vulnerabilities that enabled unintended tool invocation and, in some cases, remote code execution. We observed that these issues often stemmed from insufficient safeguards against prompt injection and an over-reliance on weak mitigation strategies such as user review and pattern matching.

  • web:blackswan-cybersecurity.com

    Cloud Files API activity originating outside legitimate OneDrive/sync processes. Mitigation Steps: Apply all Windows updates immediately (monitor MSRC for an emergency RedSun-specific patch. None released as of April 17, 2026). Supplement Defender with a secondary EDR solution (e.g., Huntress) capable of detecting Defender bypasses.

  • web:cortex.marketplace.pan.dev

    It combines proactive mitigation , enhanced threat detection, and in-depth reporting, using Fortinet's dynamic antivirus technology, dual-level sandboxing, and FortiGuard cloud integration to counter advanced threats.

  • web:docs.cloud.google.com

    Key features: Automation sequencing: Configure playbooks so that a remediation playbook (for example, host isolation or account suspension) automatically initiates based on the output of the Gemini Triage and Investigation Agent and can immediately act o important cases.

  • web:jessefmoore.github.io

    The report closes with two cross-cutting addenda: VT ( VirusTotal enrichment of every hash and IP) and OQ (seven open questions this corpus cannot close on its own).

  • web:marketplace.crowdstrike.com

    Dazz Unified Remediation Platform Unify remediation across code, apps, cloud, and infrastructure

  • web:wifitalents.com

    Compare the top Anti Scam Software picks for 2026 scams, ranked for detection and blocking. Check best tools like VirusTotal and Talos.

  • web:www.cisa.gov

    CISA and its partners issued this guidance to inform organizations about vulnerabilities within the log4j services, websites, applications and products. CISA strongly encourages organizations to take immediate action to protect against exploitation.

  • web:www.linkedin.com

    🚨 CRITICAL VULNERABILITY ALERT CVE-2026-41497 | CVSS Score: 9.8 AFFECTED PRODUCT: • PraisonAI multi-agent teams system (versions prior to 4[.]6[.]9) VULNERABILY DETAILS: A critical command ...

  • web:www.rescana.com

    Executive Summary A sophisticated and rapidly evolving cybercriminal campaign is exploiting the trust in open-source and freeware tools by deploying fake websites that closely mimic legitimate project pages. These fraudulent sites are engineered to rank highly in Google search results, often outcompeting the authentic sources. Leveraging advanced Traffic Distribution Systems (TDS), the ...

AI Forensic Analysis

Only Available for Registered Users. Sign in to view.

VirusTotal Information

loading…

IP Geolocation

Loading…