IOC Radar
IPMediumSignal 55/100

101.13.5.26

Location
Taiwan, Province of ChinaTaiwan, Province of China
Taipei, Taipei
ASN
AS24158
TAIWANMOBILE
First Seen
Feb 24, 2025
Last Seen
Jun 6, 2026
Feb 24
First Seen
474d ago
Jun 6
Last Seen
7d ago
23
Reports
source reports
55%
Confidence
medium
Found in 23 reports. Confidence: medium. · Confidence scores are heuristic. Verify before acting on results.
IPv4 Address
Network layer indicator observed in threat reports.
MISP Category
Network Activity
Confidence
55%
Signal Score
55 / 100
IDS Rule
No
Threat Context
Tags
MITRE ATT&CK

MITRE ATT&CK TTPs

38 techniques

Network Information

CountryTWTaiwan, Province of China
RegionTaipei, Taipei
ASNAS24158
OrganizationTAIWANMOBILE

IP Category

VPN
VPN exit node

Feed Intelligence Summary

23 reports55% confidence
23
Source reports
55%
Confidence score
Category tags
abuseaccount compromiseactive scanactive scanningactive-attackapacheapache attackeraptasiaattackattacker ipattacker-ipauthentication attackauthentication-failureautomated attack attemptsbad reputationbad web botblocklist_allbotnet activitybotnet c2 communicationbrute forcebrute force attackbrute force attackerbrute-forcebruteforcecloud hostingcloud infrastructurecloud infrastructure attackcloud servicescode executioncode injectioncommand & controlcommand executioncommunication protocolcompromised hostscowrie honeypotcredential accesscredential access attemptcredential attackcredential brute forcecredential harvestingcredential stuffingcredential-dumpingcredential-harvestingctadata exfiltrationdata store exposuredatabase securityddosddos attackdecoy systemdenial of servicedigital oceanenv-huntingeuropeexploitation activityexploited hostfnt-secure-sentinelfnt-sentinelfraud voipftpftp brute forceftp brute-forcehackingidentity & access exploitationimapimap attackindicatorindicators of compromiseinitial accessinjection activityinjection attacksinternet facing assetinternet-facing systemsintrusion detectionipv4ipv4 addresslateral movementmalaysiamalicious activitymalicious ip addressesmalicious-ipmalwaremalware distributionnetworknetwork attacksnetwork discoverynetwork probingnetwork reconnaissancenetwork scanningnetwork securitynginxopenctipassword attacksphishingphishing attackprotocol exploitationransomwarereconnaissanceremote accessremote servicesresearchedresource hijackingscams & fraudscannerscannersscanning activitysecurity operationssftp attacksmtpsmtp-attacksocial engineeringspamsshssh attackssh monitoringssh protocolt1021t1021.001t1021.004t1040t1041t1046t1055t1059t1059.001t1059.003t1071.001t1076t1078t1110t1110.001t1110.002t1110.003t1110.004t1133t1190t1203t1486t1496t1499.001t1499.002t1499.003t1550.002t1563t1566t1566.001t1566.002t1566.003t1590t1592t1595t1595.001t1595.002t1595.003taiwantcp protocoltelnet threatthreat actorthreat intelligencetor nodeturkeytwunattributed threat actorunauthorized accessunited kingdomunknown threat groupvoidtrapvpnvpn ipvultr hostingweb app attackweb application attackweb exploitationweb spam

Activity Timeline

1 total obs
Jun 6Jun 6

Threat Activity Heatmap

· Peak: 2026-06-06
Less
More
Mon
Wed
Fri
Jun
·
·
·
Jul
·
·
·
Aug
·
·
·
Sep
·
·
·
·
Oct
·
·
·
Nov
·
·
·
Dec
·
·
·
·
Jan
·
·
·
Feb
·
·
·
Mar
·
·
·
·
Apr
·
·
·
May
·
·
·
Jun
24h
0
Dormant
7d
0
Dormant
30d
1
Minimal
3mo
1
Minimal
Threat ScoreMedium Risk
55
SIGNAL
Signal Score
55%
Confidence
23
Reports
First seenFeb 24, 2025
Last seenJun 6, 2026
GeolocationTW
CountryTaiwan, Province of China
LocationTaipei, Taipei
ASNAS24158
OrgTAIWANMOBILE
Coords25.0382, 121.5636
VPN

VirusTotal

Not checked

WHOIS

description
FNT Sentinel Real-time Intercept: SMTP brute-force detected. Reference: 2026-05-09 11:26:36.2293 Login failure: 101.13.5.26 SMTP

Export & API

STIX 2.1 Bundle
CSV Export
Permalink

IOC Journey

medium
First detected 1 year ago · Last seen 7 days ago
Appeared in 23 threat reports