IOC Radar
IPMediumSignal 45/100

1.7.96.33

Location
IndiaIndia
Navi Mumbai, Maharashtra
ASN
AS9583
Sify Limited
First Seen
Apr 9, 2026
Last Seen
Apr 14, 2026
Apr 9
First Seen
66d ago
Apr 14
Last Seen
61d ago
3
Reports
source reports
45%
Confidence
medium
Found in 3 reports. Confidence: medium. · Confidence scores are heuristic. Verify before acting on results.
IPv4 Address
Network layer indicator observed in threat reports.
MISP Category
Network Activity
Confidence
45%
Signal Score
45 / 100
IDS Rule
No
Threat Context
Tags
MITRE ATT&CK

MITRE ATT&CK TTPs

15 techniques

Network Information

CountryINIndia
RegionNavi Mumbai, Maharashtra
ASNAS9583
OrganizationSify Limited

Feed Intelligence Summary

3 reports45% confidence
3
Source reports
45%
Confidence score
Category tags
active scananalytics naasciiascii textasiaattackbrute forcebusiness internet servicesbuttonchatclick-based attackclose logcode executioncode injectioncommand executioncontactcredential harvestingcredential stuffingcrlfcrlf lineedit3iconerrorexecutable filefindgartnergdlnameget fiosgtmw2vn2cqguest systemhtml documenthtml pagehtmldivelementidentity & access exploitationindiaindicatorinjection activityiot securityjava sourcejsonlearnlf linelte networkmac osmalicious activitymalicious linksmalwaremetadata analysismitre attacknetworknetwork infonextoverview zenboxphishingphishing attackphone servicespng imagepng multimediaprocesses extraprogramransomwarereactresearchedrgbarotateccwiconsaveiconshopshop verizonshortcutitemsitesmallsocial engineeringsocial media securityspansupportt1055t1055 processt1059t1071t1082t1095t1204.001t1204.002t1497t1518t1560t1562t1566.001t1566.002t1566.003t1574tag managerthreat actortitletor nodeunicode textupgradeuser executionutc amazonutc aw2761768utc aw685973utc bingutc dc685973utc dc9849921utc g12r1dx1lx7utc googleutf8 textverdictverizonverizon businessverizon business accountverizon business phoneverizon business planverizon business serviceverizon for businessvoicexiconzip archive

Activity Timeline

1 total obs
Apr 14Apr 14

Threat Activity Heatmap

· Peak: 2026-04-14
Less
More
Mon
Wed
Fri
Jun
·
·
·
Jul
·
·
·
Aug
·
·
·
Sep
·
·
·
·
Oct
·
·
·
Nov
·
·
·
Dec
·
·
·
·
Jan
·
·
·
Feb
·
·
·
Mar
·
·
·
·
Apr
·
·
·
May
·
·
·
Jun
24h
0
Dormant
7d
0
Dormant
30d
0
Dormant
3mo
1
Minimal
Threat ScoreMedium Risk
45
SIGNAL
Signal Score
45%
Confidence
3
Reports
First seenApr 9, 2026
Last seenApr 14, 2026
GeolocationIN
CountryIndia
LocationNavi Mumbai, Maharashtra
ASNAS9583
OrgSify Limited
Coords19.1700, 73.0014

VirusTotal

Not checked

WHOIS

description
A sample of flow-browser-main, an unauthorised version of the web browser, has been detected by researchers at the University of California, Los Angeles, and the National Security Agency (NSA). myvzw.com after an email on ending a #
raw
inetnum: 1.6.0.0 - 1.7.255.255 netname: SIFYNET-IN descr: Sify Limited country: IN admin-c: HS51-AP tech-c: HS51-AP mnt-by: MAINT-IN-IRINN mnt-routes: MAINT-IN-SIFY mnt-routes: MAINT-IN-IRINN mnt-lower: MAINT-IN-SIFY mnt-lower: MAINT-IN-IRINN mnt-irt: IRT-SIFYNET-IN status: ALLOCATED PORTABLE last-modified: 2025-08-11T22:47:01Z source: APNIC irt: IRT-SIFYNET-IN address: Sify Limited, address: 5th, 6th & 7th floor Reliable Plaza, address: Kalwa industrial Area, Thane Belapur Road, address: Airoli, Navi Mumbai-400708 e-mail: [email protected] abuse-mailbox: [email protected] admin-c: HS51-AP tech-c: HS51-AP auth: # Filtered mnt-by: MAINT-IN-SIFY mnt-by: MAINT-IN-IRINN last-modified: 2026-02-10T04:57:52Z source: APNIC person: Hostmaster Satyam Infoway nic-hdl: HS51-AP e-mail: [email protected] address: Sify Limited, address: Second Floor, Tidel Park, address: No.4,Canal Bank Road, address: Taramani, Chennai - 600113 phone: +91-44-22540770 fax-no: +91-44-22540771 country: IN mnt-by: MAINT-IN-SIFY mnt-by: MAINT-IN-IRINN last-modified: 2025-09-27T09:32:53Z source: APNIC route: 1.7.96.0/24 descr: Route & ROA country: IN origin: AS9583 mnt-by: MAINT-IN-SIFY mnt-by: MAINT-IN-IRINN mnt-routes: MAINT-IN-IRINN last-modified: 2025-12-14T22:15:02Z source: APNIC

Export & API

STIX 2.1 Bundle
CSV Export
Permalink

IOC Journey

medium
First detected 2 months ago · Last seen 2 months ago
Appeared in 3 threat reports