IPMediumSignal 80/100
103.155.198.161
Location
Bogor, JT
ASN
AS58821
PT Lintas Jaringan Nasional
First Seen
Feb 24, 2024
Last Seen
Dec 2, 2025
Feb 24
First Seen
848d ago
Dec 2
Last Seen
202d ago
11
Reports
source reports
80%
Confidence
medium
1/91
VirusTotal
detections
Found in 11 reports. Confidence: medium. · Confidence scores are heuristic. Verify before acting on results.
IPv4 Address
Network layer indicator observed in threat reports.
MISP Category
Network Activity
Confidence
80%
Signal Score
80 / 100
IDS Rule
No
Threat Context
Tags
MITRE ATT&CK
MITRE ATT&CK TTPs
Network Information
Country
Indonesia
RegionBogor, JT
ASNAS58821
OrganizationPT Lintas Jaringan Nasional
IP Category
⟲
Proxy
Proxy server
Feed Intelligence Summary
11 reports80% confidence
11
Source reports
80%
Confidence score
Category tags
abuseaccess controlactive scanningasiabotnetbotnet iocsbotnet miraibotnet propagationbrute forcecommand and controlcommunication protocolconnected devicescredential accesscredential stuffingdata exfiltrationddosddos attackddos attacksdenial of servicedevice managementdistributed attacksexploitationexploited hostgorillabothackingindicatorindonesiaindustrial iotinitial accessinternet of thingsiocsiot analyticsiot applicationsiot botnetiot devicesiot platformsiot securityiot/ics attackipv4irclinuxmalicious softwaremalwaremirai botnetmirai internetnetworknetwork attacksnetwork protocolnetwork scanningnetwork securityoutlawprocess injectionprotocol exploitationproxyreconnaissanceresearchedscannerscanning activitysecurity policysmart devicesssh attackt1021t1021.001t1040t1053.005t1055t1059t1059.004t1071t1071.001t1078t1078.001t1105t1110.002t1190t1203t1486t1496t1497t1497.001t1498.001t1499.002t1499.003t1565t1595.001t1595.002t1595.003tcp protocoltelnet threatthingsthreat preventiontwitterxmrig
Activity Timeline
Dec 2Dec 2
Threat Activity Heatmap
· Peak: 2025-12-02LessMore
Mon
Wed
Fri
24h
0
Dormant
7d
0
Dormant
30d
0
Dormant
3mo
0
Dormant
Threat ScoreHigh Risk
80
SIGNAL
Signal Score
80%
Confidence
11
Reports
First seenFeb 24, 2024
Last seenDec 2, 2025
GeolocationID
CountryIndonesia
LocationBogor, JT
ASNAS58821
OrgPT Lintas Jaringan Nasional
Coords-6.8882, 109.6724
Proxy
WHOIS
- raw
- inetnum: 103.155.198.0 - 103.155.199.255 netname: IDNIC-LJNAS-ID descr: PT Lintas Jaringan Nasional descr: Corporate / Direct Member IDNIC descr: Jl. A. Yani No 25C descr: Karawang, Jawa Barat 41315 admin-c: AAGH1-AP tech-c: AAGH1-AP country: ID mnt-by: MNT-APJII-ID mnt-irt: IRT-LJNAS-ID mnt-routes: MAINT-ID-LJNAS status: ALLOCATED PORTABLE last-modified: 2020-09-16T03:32:53Z source: APNIC irt: IRT-LJNAS-ID address: PT Lintas Jaringan Nasional address: Jl. A. Yani No 25C address: Karawang, Jawa Barat 41315 e-mail: [email protected] abuse-mailbox: [email protected] admin-c: AAGH1-AP tech-c: AAGH1-AP auth: # Filtered mnt-by: MAINT-ID-LJNAS last-modified: 2025-09-04T04:57:18Z source: APNIC person: Ahmad Alfar Gani H address: Jl. A. Yani No 25C Karawang Barat address: Karawang 41315, Indonesia country: ID phone: +62-267-400567 e-mail: [email protected] nic-hdl: AAGH1-AP mnt-by: MNT-APJII-ID fax-no: +62-267-400567 last-modified: 2020-09-15T09:00:52Z source: APNIC inetnum: 103.155.198.0 - 103.155.199.255 netname: IDNIC-LJNAS-ID descr: PT Lintas Jaringan Nasional descr: Corporate / Direct Member IDNIC descr: Jl. A. Yani No 25C descr: Karawang, Jawa Barat 41315 admin-c: AAGH1-AP tech-c: AAGH1-AP country: ID mnt-by: MNT-APJII-ID mnt-irt: IRT-LJNAS-ID mnt-routes: MAINT-ID-LJNAS status: ALLOCATED PORTABLE last-modified: 2020-11-26T04:43:06Z source: IDNIC irt: IRT-LJNAS-ID address: PT Lintas Jaringan Nasional address: Jl. A. Yani No 25C address: Karawang, Jawa Barat 41315 e-mail: [email protected] abuse-mailbox: [email protected] admin-c: AAGH1-AP tech-c: AAGH1-AP auth: # Filtered mnt-by: MAINT-ID-LJNAS last-modified: 2020-11-26T04:43:02Z source: IDNIC person: Ahmad Alfar Gani H address: Jl. A. Yani No 25C Karawang Barat address: Karawang 41315, Indonesia country: ID phone: +62-267-400567 e-mail: [email protected] nic-hdl: AAGH1-AP mnt-by: MNT-APJII-ID fax-no: +62-267-400567 last-modified: 2020-11-26T04:22:49Z source: IDNIC
- references
- https://1275.ru/ioc/gs-25-19131-mirai-botnet-iocs_11023, https://1275.ru/ioc/gs-25-19129-mirai-botnet-iocs_11015, https://1275.ru/ioc/gs-25-19128-mirai-botnet-iocs_11001, https://1275.ru/ioc/gs-25-19127-mirai-botnet-iocs_10989, https://1275.ru/ioc/gs-25-19125-mirai-botnet-iocs_10956, https://1275.ru/ioc/gs-25-19126-mirai-botnet-iocs_10970, https://1275.ru/ioc/gs-25-18122-mirai-botnet-iocs_10913, https://1275.ru/ioc/gs-25-18120-mirai-botnet-iocs_10854, https://1275.ru/ioc/gs-25-18119-mirai-botnet-iocs_10829, https://1275.ru/ioc/gs-25-18118-mirai-botnet-iocs_10825, https://1275.ru/ioc/gs-25-17115-mirai-botnet-iocs-2_10696, https://1275.ru/ioc/gs-25-17115-mirai-botnet-iocs_10682, https://1275.ru/ioc/gs-25-17113-mirai-botnet-iocs_10658, https://1275.ru/ioc/gs-25-17112-mirai-botnet-iocs_10640, https://1275.ru/ioc/gs-25-1490-mirai-botnet-iocs_10200
Export & API
STIX 2.1 Bundle
CSV Export
Permalink
IOC Journey
mediumFirst detected 2 years ago · Last seen 6 months ago
Appeared in 11 threat reports