IOC Radar
IPMediumSignal 54/100

103.118.42.208

Location
Hong KongHong Kong
Hong Kong, Kowloon
ASN
AS976
NetPilot Limited
First Seen
Feb 18, 2023
Last Seen
May 15, 2026
Feb 18
First Seen
1221d ago
May 15
Last Seen
40d ago
6
Reports
source reports
54%
Confidence
medium
Found in 6 reports. Confidence: medium. · Confidence scores are heuristic. Verify before acting on results.
IPv4 Address
Network layer indicator observed in threat reports.
MISP Category
Network Activity
Confidence
54%
Signal Score
54 / 100
IDS Rule
No
Threat Context
Tags
MITRE ATT&CK

MITRE ATT&CK TTPs

12 techniques

Network Information

CountryHKHong Kong
RegionHong Kong, Kowloon
ASNAS976
OrganizationNetPilot Limited

Feed Intelligence Summary

6 reports54% confidence
6
Source reports
54%
Confidence score
Category tags
active scananna paulaasiabotnetbotnet activitybrute forcecommand and controlcredential harvestingcredential stuffingdata exfiltrationdata store exposuredistributed attacksexploitation activityfrom emailheadershkhong kongidentity & access exploitationindicatorinfrastructure acquisitionreconnaissanceinjection activitymalicious softwaremalspam emailmalwaremanualmsi filenetworkphishingphishing attackprocess injectionransomwareresearchedsocial engineeringspamt1055t1071.001t1486t1496t1499.002t1499.003t1565t1566.001t1566.002t1566.003t1587.001t1590.001zip archive

Activity Timeline

1 total obs
May 15May 15

Threat Activity Heatmap

· Peak: 2026-05-15
Less
More
Mon
Wed
Fri
Jun
·
Jul
·
·
·
Aug
·
·
·
Sep
·
·
·
·
Oct
·
·
·
Nov
·
·
·
Dec
·
·
·
·
Jan
·
·
·
Feb
·
·
·
Mar
·
·
·
·
Apr
·
·
·
May
·
·
·
Jun
·
·
24h
0
Dormant
7d
0
Dormant
30d
0
Dormant
3mo
1
Minimal
Threat ScoreMedium Risk
54
SIGNAL
Signal Score
54%
Confidence
6
Reports
First seenFeb 18, 2023
Last seenMay 15, 2026
GeolocationHK
CountryHong Kong
LocationHong Kong, Kowloon
ASNAS976
OrgNetPilot Limited
Coords22.3193, 114.1690

VirusTotal

Not checked

WHOIS

raw
inetnum: 103.118.42.0 - 103.118.42.255 netname: NETPILOT-HK descr: NetPilot Limited country: HK admin-c: NA1065-AP tech-c: NA1065-AP abuse-c: AN3163-AP status: ALLOCATED NON-PORTABLE mnt-by: MAINT-NETPILOT-HK mnt-irt: IRT-NETPILOT-HK last-modified: 2025-12-19T14:02:36Z source: APNIC irt: IRT-NETPILOT-HK address: Rm D07,8/F,Kai Tak Fty Building,No. 99 King Fuk Street, Kowloon Sanpokong 999077 e-mail: [email protected] abuse-mailbox: [email protected] admin-c: NA1065-AP tech-c: NA1065-AP auth: # Filtered remarks: [email protected] was validated on 2026-03-03 mnt-by: MAINT-NETPILOT-HK last-modified: 2026-03-03T15:09:41Z source: APNIC role: ABUSE NETPILOTHK country: ZZ address: Rm D07,8/F,Kai Tak Fty Building,No. 99 King Fuk Street, Kowloon Sanpokong 999077 phone: +000000000 e-mail: [email protected] admin-c: NA1065-AP tech-c: NA1065-AP nic-hdl: AN3163-AP remarks: Generated from irt object IRT-NETPILOT-HK remarks: [email protected] was validated on 2026-03-03 abuse-mailbox: [email protected] mnt-by: APNIC-ABUSE last-modified: 2026-03-03T15:10:25Z source: APNIC role: NetPilot administrator address: Rm D07,8/F,Kai Tak Fty Building,No. 99 King Fuk Street, Kowloon Sanpokong 999077 country: HK phone: +852-53969321 e-mail: [email protected] admin-c: NA1065-AP tech-c: NA1065-AP nic-hdl: NA1065-AP mnt-by: MAINT-NETPILOT-HK last-modified: 2026-01-10T16:53:36Z source: APNIC route: 103.118.42.0/24 origin: AS134176 descr: NetPilot Limited Rm D07,8/F,Kai Tak Fty Building,No. 99 King Fuk Street mnt-by: MAINT-NETPILOT-HK last-modified: 2024-12-12T13:06:25Z source: APNIC route: 103.118.42.0/24 origin: AS7586 descr: NetPilot Limited Rm D07,8/F,Kai Tak Fty Building,No. 99 King Fuk Street mnt-by: MAINT-NETPILOT-HK last-modified: 2024-02-09T03:20:59Z source: APNIC route: 103.118.42.0/24 origin: AS9400 descr: NetPilot Limited Rm D07,8/F,Kai Tak Fty Building,No. 99 King Fuk Street mnt-by: MAINT-NETPILOT-HK last-modified: 2024-12-10T17:51:02Z source: APNIC route: 103.118.42.0/24 origin: AS976 descr: NetPilot Limited Rm D07,8/F,Kai Tak Fty Building,No. 99 King Fuk Street mnt-by: MAINT-NETPILOT-HK last-modified: 2024-03-29T13:47:09Z source: APNIC

Export & API

STIX 2.1 Bundle
CSV Export
Permalink

IOC Journey

medium
First detected 3 years ago · Last seen 1 month ago
Appeared in 6 threat reports