IPMediumSignal 37/100
103.117.56.147
Location
Cicurug, Banten
ASN
AS136052
PT Cloud Hosting Indonesia
First Seen
Dec 15, 2024
Last Seen
Apr 1, 2026
Dec 15
First Seen
545d ago
Apr 1
Last Seen
73d ago
17
Reports
source reports
37%
Confidence
medium
4/91
VirusTotal
detections
Found in 17 reports. Confidence: medium. · Confidence scores are heuristic. Verify before acting on results.
IPv4 Address
Network layer indicator observed in threat reports.
MISP Category
Network Activity
Confidence
37%
Signal Score
37 / 100
IDS Rule
No
Threat Context
Tags
MITRE ATT&CK
MITRE ATT&CK TTPs
Network Information
Country
Indonesia
RegionCicurug, Banten
ASNAS136052
OrganizationPT Cloud Hosting Indonesia
Feed Intelligence Summary
17 reports37% confidence
17
Source reports
37%
Confidence score
Category tags
abuseactive scanactive scanningasiaattackaustraliaauthentication attackauthentication attemptsauto-generated securityautomated attacksautomated threatbad reputationbotnetbotnet activitybrute forcebrute force attackbrute force attemptbrute-forccommand and controlcompromised credentialscowrie honeypotcredential accesscredential harvestingcredential stuffingctadata exfiltrationdata store exposureddosdecoy systemdenial of servicedistributed attackseuropeexploitation activityexploitation attemptfail2ban alertfail2ban triggeredfailed login attemptsftp brute forcehoneytrap honeypotididentity & access exploitationindicatorindonesiainfoinfrastructure acquisitionreconnaissanceinjection activityintrusion detectionlampmailoney honeypotmalicious activitymalicious softwaremalwaremanualnetworknetwork intrusionnetwork scanningnetwork securitynorth americanoticeoceaniapassword attackspassword crackingphishingphishing attackphishing trapprocess injectionreconnaissanceremote accessresearchedrule based detectionscannerscanning activitysecurity operationssftp attacksocial engineeringssh attackssh monitoringt1021t1021.001t1021.004t1040t1041t1055t1059t1059.004t1071.001t1078t1110t1110.001t1110.002t1110.003t1110.004t1190t1203t1486t1496t1499.001t1499.002t1499.003t1565t1566.001t1566.002t1566.003t1566.004t1587.001t1589t1590.001t1595t1595.001t1595.002t1595.003threat actorthreat detectionthreat intelligencetor nodeunited kingdomunited statesunited states originus ip addressweb application attackweb exploitation
Activity Timeline
Apr 1Apr 1
Threat Activity Heatmap
· Peak: 2026-04-01LessMore
Mon
Wed
Fri
24h
0
Dormant
7d
0
Dormant
30d
0
Dormant
3mo
1
Minimal
Threat ScoreLow Risk
37
SIGNAL
Signal Score
37%
Confidence
17
Reports
First seenDec 15, 2024
Last seenApr 1, 2026
GeolocationID
CountryIndonesia
LocationCicurug, Banten
ASNAS136052
OrgPT Cloud Hosting Indonesia
Coords-6.8421, 106.7240
WHOIS
- description
- Banned by Fail2Ban [sshd]
- raw
- inetnum: 103.117.56.0 - 103.117.56.255 netname: IDNIC-IDCLOUDHOST-ID descr: PT Cloud Hosting Indonesia descr: Corporate / Direct Member IDNIC descr: Pinus Raya Reni Jaya AG-1 No.01 descr: Pamulang Barat, Pamulang descr: Tangerang Selatan, Banten country: ID admin-c: APS20-AP tech-c: APS20-AP status: ASSIGNED NON-PORTABLE mnt-by: MNT-APJII-ID mnt-irt: IRT-IDCLOUDHOST-ID last-modified: 2023-03-28T05:13:18Z source: APNIC irt: IRT-IDCLOUDHOST-ID address: PT Cloud Hosting Indonesia address: Jl. Bojonggenteng No. 2 address: Sukabumi, Jawa Barat e-mail: [email protected] abuse-mailbox: [email protected] admin-c: APS20-AP tech-c: APS20-AP auth: # Filtered mnt-by: MAINT-ID-IDCLOUDHOST last-modified: 2018-05-31T22:30:59Z source: APNIC person: Alfian Pamungkas Sakawiguna address: Jl. Bojonggenteng No.2 address: Sukabumi, Jawa Barat country: ID phone: +62-266-620073 e-mail: [email protected] nic-hdl: APS20-AP mnt-by: MAINT-ID-IDCLOUDHOST last-modified: 2017-01-23T07:34:14Z source: APNIC route: 103.117.56.0/24 descr: Route Object of BYOIP PT. Cloud Hosting Indonesia origin: AS136052 mnt-by: MAINT-ID-JARAKSA last-modified: 2023-03-28T05:15:00Z source: APNIC inetnum: 103.117.56.0 - 103.117.57.255 netname: IDNIC-JARAKSA-ID descr: PT Jaya Raksa Santosa descr: Corporate / Direct Member IDNIC descr: Home Industri Bandung Bersatu descr: Tatar Lokacitra, Jalan Lokasurya No.10 RT/RW 001/003, Bojonghaleuang descr: Saguling, Bandung Barat, Bandung - Jawa Barat 40560 admin-c: APS32-AP tech-c: APS32-AP remarks: Send Spam & Abuse Reports to: [email protected] country: ID mnt-by: MNT-APJII-ID mnt-lower: MAINT-ID-JARAKSA mnt-irt: IRT-JARAKSA-ID mnt-routes: MAINT-ID-JARAKSA status: ALLOCATED PORTABLE last-modified: 2023-03-28T05:05:12Z source: IDNIC irt: IRT-JARAKSA-ID address: PT. JAYA RAKSA SANTOSA address: Tatar Lokacitra, Jalan Lokasurya No.10 RT/RW 001/003, Bojonghaleuang address: Saguling, Bandung Barat, Bandung - Jawa Barat 40560 e-mail: [email protected] abuse-mailbox: [email protected] admin-c: APS32-AP tech-c: APS32-AP auth: # Filtered mnt-by: MAINT-ID-JARAKSA last-modified: 2023-03-28T05:05:12Z source: IDNIC person: Alfian Pamungkas Sakawiguna address: Tatar Lokacitra, Jalan Lokasurya No.10 RT/RW 001/003, Bojonghaleuang address: Saguling, Bandung Barat, Bandung - Jawa Barat 40560 country: ID phone: +6281809028894 e-mail: [email protected] nic-hdl: APS32-AP mnt-by: MAINT-ID-JARAKSA last-modified: 2023-03-28T05:05:41Z source: IDNIC
Export & API
STIX 2.1 Bundle
CSV Export
Permalink
IOC Journey
mediumFirst detected 1 year ago · Last seen 2 months ago
Appeared in 17 threat reports