IOC Radar
IPMediumSignal 45/100

103.152.238.179

Location
IndonesiaIndonesia
Bekasi, JB
ASN
AS140448
APRIN
First Seen
Jan 5, 2025
Last Seen
Jun 7, 2026
Jan 5
First Seen
526d ago
Jun 7
Last Seen
9d ago
12
Reports
source reports
45%
Confidence
medium
Found in 12 reports. Confidence: medium. · Confidence scores are heuristic. Verify before acting on results.
IPv4 Address
Network layer indicator observed in threat reports.
MISP Category
Network Activity
Confidence
45%
Signal Score
45 / 100
IDS Rule
No
Threat Context
Tags
MITRE ATT&CK

MITRE ATT&CK TTPs

26 techniques

Network Information

CountryIDIndonesia
RegionBekasi, JB
ASNAS140448
OrganizationAPRIN

IP Category

Proxy
Proxy server

Feed Intelligence Summary

12 reports45% confidence
12
Source reports
45%
Confidence score
Category tags
abuseaccess controlactive scanactive scanningasiabad reputationbad web botbank securitybotnetbotnet activitybrute forcebrute force attackbrute force attackerbrute-forcecommand and controlcommunication protocolcredential accesscredential stuffingdata exfiltrationdata store exposuredatabase securityddosddos attackdenial of servicedistributed attacksenumerationexploitation activityexploited hostfinancefinancial institutionfinancial serviceshackingididentity & access exploitationindonesiainformation gatheringinjection activityinjection attacksmalicious softwaremalwarenetworknetwork attacksnetwork enumerationnetwork probingnetwork protocolnetwork reconnaissancenetwork scanningnetwork traffic analysisopen port discoverypassword attacksprocess injectionproxyreconnaissanceresearchedscannerscanning activitysecurity policysshssh attackt1016t1018t1040t1046t1055t1059.003t1071.001t1078t1110.001t1110.002t1110.003t1110.004t1190t1203t1486t1496t1499.001t1499.002t1499.003t1565t1566.001t1589t1595t1595.001t1595.002t1595.003tcp protocolthreat preventionvulnerability scanweb app attackweb application attackweb exploitation

Activity Timeline

1 total obs
Jun 7Jun 7

Threat Activity Heatmap

· Peak: 2026-06-07
Less
More
Mon
Wed
Fri
Jun
·
·
Jul
·
·
·
Aug
·
·
·
Sep
·
·
·
·
Oct
·
·
·
Nov
·
·
·
Dec
·
·
·
·
Jan
·
·
·
Feb
·
·
·
Mar
·
·
·
·
Apr
·
·
·
May
·
·
·
Jun
·
24h
0
Dormant
7d
0
Dormant
30d
1
Minimal
3mo
1
Minimal
Threat ScoreMedium Risk
45
SIGNAL
Signal Score
45%
Confidence
12
Reports
First seenJan 5, 2025
Last seenJun 7, 2026
GeolocationID
CountryIndonesia
LocationBekasi, JB
ASNAS140448
OrgAPRIN
Coords-6.9217, 107.6071
Proxy

VirusTotal

Not checked

WHOIS

description
proxy-proxy_http search result.
raw
inetnum: 103.152.238.0 - 103.152.239.255 netname: APRIN-ID descr: PT Acces Prima Nusantara descr: Internet Service Provider descr: Villa Kencana Cikarang Blok P14/30 descr: Karang Sentosa, Karang Bahagia descr: Bekasi 17535 country: ID admin-c: AR910-AP admin-c: RA658-AP tech-c: AR910-AP tech-c: RA658-AP abuse-c: AA1726-AP status: ALLOCATED PORTABLE mnt-by: MNT-APJII-ID mnt-routes: MAINT-ID-APRIN mnt-irt: IRT-APRIN-ID last-modified: 2020-07-03T09:29:50Z source: APNIC irt: IRT-APRIN-ID address: PT Acces Prima Nusantara address: Villa Kencana Cikarang Blok P14/30 address: Karang Sentosa, Karang Bahagia address: Bekasi 17535 e-mail: [email protected] abuse-mailbox: [email protected] admin-c: AR910-AP tech-c: RA658-AP auth: # Filtered mnt-by: MAINT-ID-APRIN last-modified: 2020-06-26T07:38:59Z source: APNIC role: ABUSE APRINID address: PT Acces Prima Nusantara address: Villa Kencana Cikarang Blok P14/30 address: Karang Sentosa, Karang Bahagia address: Bekasi 17535 country: ZZ phone: +000000000 e-mail: [email protected] admin-c: AR910-AP tech-c: RA658-AP nic-hdl: AA1726-AP remarks: Generated from irt object IRT-APRIN-ID abuse-mailbox: [email protected] mnt-by: APNIC-ABUSE last-modified: 2020-07-03T09:29:50Z source: APNIC person: Asep Rustani address: Villa Kencana Cikarang Blok P14/30 address: Kel. Karang Sentosa, Kec. Karang Bahagia address: Bekasi 17535, Indonesia country: ID phone: +62-812-1111-1465 e-mail: [email protected] nic-hdl: AR910-AP mnt-by: MNT-APJII-ID last-modified: 2020-06-26T07:32:36Z source: APNIC person: Ridwan Alamsyah address: Villa Kencana Cikarang Blok P14/30 address: Kel. Karang Sentosa, Kec. Karang Bahagia address: Bekasi 17535, Indonesia country: ID phone: +62-858-8347-7887 e-mail: [email protected] nic-hdl: RA658-AP mnt-by: MNT-APJII-ID last-modified: 2020-06-26T07:33:24Z source: APNIC route: 103.152.238.0/24 descr: Route object of PT Acces Prima Nusantara descr: ISP descr: Internet Service Provider descr: Villa Kencana Cikarang Blok P14/30 descr: Karang Sentosa, Karang Bahagia descr: Bekasi 17535 origin: AS140448 mnt-by: MNT-APJII-ID country: ID last-modified: 2020-11-03T04:49:03Z source: APNIC inetnum: 103.152.238.0 - 103.152.239.255 netname: APRIN-ID descr: PT Acces Prima Nusantara descr: Internet Service Provider descr: Villa Kencana Cikarang Blok P14/30 descr: Karang Sentosa, Karang Bahagia descr: Bekasi 17535 country: ID admin-c: AR910-AP admin-c: RA658-AP tech-c: AR910-AP tech-c: RA658-AP status: ALLOCATED PORTABLE mnt-by: MNT-APJII-ID mnt-routes: MAINT-ID-APRIN mnt-lower: MAINT-ID-APRIN mnt-irt: IRT-APRIN-ID last-modified: 2022-07-18T06:08:15Z source: IDNIC irt: IRT-APRIN-ID address: PT Acces Prima Nusantara address: Villa Kencana Cikarang Blok P14/30 address: Karang Sentosa, Karang Bahagia address: Bekasi 17535 e-mail: [email protected] abuse-mailbox: [email protected] admin-c: AR910-AP tech-c: RA658-AP auth: # Filtered mnt-by: MAINT-ID-APRIN last-modified: 2022-04-25T08:16:41Z source: IDNIC person: Asep Rustani address: Villa Kencana Cikarang Blok P14/30 address: Kel. Karang Sentosa, Kec. Karang Bahagia address: Bekasi 17535, Indonesia country: ID phone: +62-812-1111-1465 e-mail: [email protected] nic-hdl: AR910-AP mnt-by: MNT-APJII-ID last-modified: 2022-04-25T08:16:41Z source: IDNIC person: Ridwan Alamsyah address: Villa Kencana Cikarang Blok P14/30 address: Kel. Karang Sentosa, Kec. Karang Bahagia address: Bekasi 17535, Indonesia country: ID phone: +62-858-8347-7887 e-mail: [email protected] nic-hdl: RA658-AP mnt-by: MAINT-ID-APRIN last-modified: 2022-04-25T08:16:54Z source: IDNIC

Export & API

STIX 2.1 Bundle
CSV Export
Permalink

IOC Journey

medium
First detected 1 year ago · Last seen 9 days ago
Appeared in 12 threat reports