IOC Radar
IPMediumSignal 46/100

103.68.39.68

Location
IndiaIndia
Pune, MH
ASN
AS135775
Proline Datatech Services Pvt. Ltd.
First Seen
Feb 1, 2025
Last Seen
Apr 8, 2026
Feb 1
First Seen
503d ago
Apr 8
Last Seen
72d ago
13
Reports
source reports
46%
Confidence
medium
Found in 13 reports. Confidence: medium. · Confidence scores are heuristic. Verify before acting on results.
IPv4 Address
Network layer indicator observed in threat reports.
MISP Category
Network Activity
Confidence
46%
Signal Score
46 / 100
IDS Rule
No
Threat Context
Tags
MITRE ATT&CK

MITRE ATT&CK TTPs

55 techniques

Network Information

CountryINIndia
RegionPune, MH
ASNAS135775
OrganizationProline Datatech Services Pvt. Ltd.

Feed Intelligence Summary

13 reports46% confidence
13
Source reports
46%
Confidence score
Category tags
/32 ip addressabuseaccess attemptaccess controlaccount accessaccount discoveryaccount profilingaccount takeoveractive scanactive scanningasiaattackattack vector: networkattempted compromiseauthenticationauthentication abuseauthentication attackauthentication attemptauthentication brute forceauthentication bypassauthentication failureauthentication: brute forceautomated attackautomated threatbad reputationbotnetbotnet activitybrute forcebrute force attackbrute force attemptbrute force attemptsbruteforcingcommand and controlcommunication protocolcompromise credentialscompromised credentialscowrie honeypotcredential accesscredential attackcredential guessingcredential stuffingcredentialsdata exfiltrationdata store exposureddosddos attacksdecoy systemdefault credentialsdenial of servicedistributed attacksexploit public-facing applicationexploitationexploitation activityexternal originexternal remote serviceshackingidentity & access exploitationinindiaindicatorinfrastructure impairmentinitial accessinjection activityinternet of thingsintrusion detectioniociot botnetiot securityiot/ics attackkill-chain exploitationkill-chain reconnaissancelateral movementlogin attacklogin attemptlogin brute forcelogin brute-forcelogin failurelow-riskmalicious activitymalicious network activitymalicious softwaremalwaremirai botnetnetworknetwork accessnetwork attacksnetwork behaviornetwork boundarynetwork brute forcenetwork devicenetwork discoverynetwork exploitationnetwork intrusionnetwork intrusion attemptnetwork loginnetwork login attemptnetwork logonnetwork perimeternetwork probingnetwork protocolnetwork scannetwork scanningnetwork securitynetwork security monitoringnetwork servicenetwork service exploitationnetwork service protocolnetwork service scanningnetwork sniffingnetwork trafficnetwork traffic analysisnorth americaos credential dumpingos credentials dumpingosintpassword attackpassword attackspassword brute forcepassword crackingphishingprocess injectionprotocol exploitationprotocol: telnetransomwarereconnaissanceremote accessremote access attackremote access protocolremote access serviceremote authenticationremote loginremote serviceremote servicesresearchedscanscannerscanning activitysecurity operationssecurity policyservice scansftp attacksingle ip sourcessh attackssh monitoringstolen credentialst1018t1021t1021.001t1021.002t1021.004t1021.006t1040t1041t1046t1048t1055t1056.001t1059t1059.001t1059.004t1071t1071.001t1078t1078.001t1078.002t1078.003t1078.004t1110t1110.001t1110.002t1110.003t1110.004t1133t1187t1190t1203t1486t1496t1499.001t1499.002t1499.003t1550t1550.002t1550.003t1555t1555.001t1555.002t1555.003t1555.004t1565t1567t1588t1588.002t1588.004t1589t1589.002t1595t1595.001t1595.002t1595.003tcp protocoltcp/23telecommunicationstelnet threatthreat actorthreat intelligencethreat preventiontor nodeunauthorized accessunauthorized loginunited statesunited states sourceus /32us based attackus ip addressus ip sourceus sourceus source ipus-based attackusa sourceuser executionvalid accountsvulnerability scanweb application attackweb exploitation

Activity Timeline

1 total obs
Apr 8Apr 8

Threat Activity Heatmap

· Peak: 2026-04-08
Less
More
Mon
Wed
Fri
Jun
·
·
Jul
·
·
·
Aug
·
·
·
Sep
·
·
·
·
Oct
·
·
·
Nov
·
·
·
Dec
·
·
·
·
Jan
·
·
·
Feb
·
·
·
Mar
·
·
·
·
Apr
·
·
·
May
·
·
·
Jun
·
24h
0
Dormant
7d
0
Dormant
30d
0
Dormant
3mo
1
Minimal
Threat ScoreMedium Risk
46
SIGNAL
Signal Score
46%
Confidence
13
Reports
First seenFeb 1, 2025
Last seenApr 8, 2026
GeolocationIN
CountryIndia
LocationPune, MH
ASNAS135775
OrgProline Datatech Services Pvt. Ltd.
Coords18.6161, 73.7286

VirusTotal

Not checked

WHOIS

description
Telnet bruteforce client IP
raw
inetnum: 103.68.36.0 - 103.68.39.255 netname: PDSPL descr: Proline Datatech Services Pvt. Ltd. admin-c: RH866-AP tech-c: MN596-AP country: IN mnt-by: MAINT-IN-IRINN mnt-routes: MAINT-IN-PDSPL mnt-routes: MAINT-IN-IRINN mnt-irt: IRT-PDSPL-IN status: ASSIGNED PORTABLE last-modified: 2025-08-11T22:49:28Z source: APNIC irt: IRT-PDSPL-IN address: CTS 4704/1,wadhwani Plaza, ground Floor, shop No. 20, Near Vishal E Square, pimpri, pune,Pune,Maharashtra-411018 e-mail: [email protected] abuse-mailbox: [email protected] admin-c: RH866-AP tech-c: MN596-AP auth: # Filtered mnt-by: MAINT-IN-PDSPL last-modified: 2016-06-28T13:00:14Z source: APNIC role: Maneger noc address: CTS 4704/1,wadhwani Plaza, ground Floor, shop No. 20, Near Vishal E Square, pimpri, pune,Pune,Maharashtra-411018 country: IN phone: +91 02065402121 e-mail: [email protected] admin-c: RH866-AP tech-c: RH866-AP nic-hdl: MN596-AP mnt-by: MAINT-IN-PDSPL last-modified: 2016-06-28T13:05:52Z source: APNIC person: Rahul Hadke address: CTS 4704/1,wadhwani Plaza, ground Floor, shop No. 20, Near Vishal E Square, pimpri, pune,Pune,Maharashtra-411018 country: IN phone: +91 02065402121 e-mail: [email protected] nic-hdl: RH866-AP mnt-by: MAINT-IN-PDSPL last-modified: 2016-06-28T13:06:12Z source: APNIC route: 103.68.39.0/24 descr: ​Proline Datatech Services Pvt Ltd​ origin: AS135775 mnt-by: MAINT-IN-IRINN mnt-routes: MAINT-IN-PDSPL last-modified: 2016-06-30T11:15:21Z source: APNIC

Export & API

STIX 2.1 Bundle
CSV Export
Permalink

IOC Journey

medium
First detected 1 year ago · Last seen 2 months ago
Appeared in 13 threat reports