IPMediumSignal 100/100
103.73.193.130
Location
Karangdawa Barat, Banten
First Seen
Mar 3, 2025
Last Seen
Mar 5, 2026
Mar 3
First Seen
470d ago
Mar 5
Last Seen
103d ago
11
Reports
source reports
99%
Confidence
medium
1/91
VirusTotal
detections
Found in 11 reports. Confidence: medium. · Confidence scores are heuristic. Verify before acting on results.
IPv4 Address
Network layer indicator observed in threat reports.
MISP Category
Network Activity
Confidence
99%
Signal Score
100 / 100
IDS Rule
No
Threat Context
Tags
MITRE ATT&CK
MITRE ATT&CK TTPs
Network Information
Country
Indonesia
RegionKarangdawa Barat, Banten
OrganizationFot PT Kihnabil.net
IP Category
⟲
Proxy
Proxy server
Feed Intelligence Summary
11 reports99% confidence
11
Source reports
99%
Confidence score
Category tags
active scanningasiabotnetbotnet iocsbotnet miraibotnet propagationbrute forcecommand and controlcommunication protocolconnected devicescredential accesscredential stuffingdata exfiltrationddosddos attacksdenial of servicedevice managementdistributed attacksexploitationgorillabothttps proxyindonesiaindustrial iotinitial accessinternet of thingsiocsiot analyticsiot applicationsiot botnetiot devicesiot platformsiot securityiot/ics attackipv4irclinuxmalicious softwaremalwaremirai botnetmirai internetnetworknetwork attacksnetwork protocolnetwork scanningnetwork securityoutlawprocess injectionprotocol exploitationproxyreconnaissanceresearchedscanning activitysmart devicesssh attacksslt1021t1021.001t1040t1053.005t1055t1059t1059.004t1071t1071.001t1078t1078.001t1105t1110.002t1190t1203t1486t1496t1497t1497.001t1498.001t1499.002t1499.003t1565t1595.001t1595.002t1595.003tcp protocoltelnet threatthingstwitterxmrig
Activity Timeline
Mar 5Mar 5
Threat Activity Heatmap
· Peak: 2026-03-05LessMore
Mon
Wed
Fri
24h
0
Dormant
7d
0
Dormant
30d
0
Dormant
3mo
0
Dormant
Threat ScoreHigh Risk
100
SIGNAL
Signal Score
99%
Confidence
11
Reports
First seenMar 3, 2025
Last seenMar 5, 2026
GeolocationID
CountryIndonesia
LocationKarangdawa Barat, Banten
OrgFot PT Kihnabil.net
Coords0.0000, 0.0000
Proxy
WHOIS
- description
- proxy-proxy_http search result.
- raw
- inetnum: 103.73.192.0 - 103.73.193.255 netname: IDNIC-DKKN-ID descr: PT Dak Kite Kih Nabil descr: Corporate / Direct Member IDNIC descr: Jalan Hasanudin Pasar Lama Perkantoran Plaza Lantai 1 descr: Kec Serang Kota Serang Propinsi Banten admin-c: EN202-AP tech-c: EN202-AP remarks: Send Spam & Abuse Reports to: [email protected] country: ID mnt-by: MNT-APJII-ID mnt-lower: MAINT-ID-DKKN mnt-irt: IRT-DKKN-ID mnt-routes: MAINT-ID-DKKN status: ALLOCATED PORTABLE last-modified: 2022-07-29T10:20:58Z source: APNIC irt: IRT-DKKN-ID address: JALAN HASANUDIN PASAR LAMA PERKANTORAN PLAZA LANTAI 1 address: KEC SERANG KOTA SERANG PROPINSI BANTEN e-mail: [email protected] abuse-mailbox: [email protected] admin-c: EN202-AP tech-c: EN202-AP auth: # Filtered mnt-by: MAINT-ID-DKKN last-modified: 2022-07-29T10:08:42Z source: APNIC person: Eki Naerubi address: Jl.Hasanudin Pasar Lama Perkantoran Plaza Lantai 1 address: Kec Serang Kota Serang Propinsi Banten country: ID phone: +62895612101982 e-mail: [email protected] nic-hdl: EN202-AP mnt-by: MAINT-ID-DKKN last-modified: 2022-07-29T10:09:44Z source: APNIC route: 103.73.192.0/23 descr: Route Object Fot PT Kihnabil.net descr: Contact BAGUS SUHANDA PUTRA origin: AS149944 mnt-by: MAINT-ID-DKKN country: ID last-modified: 2022-09-22T08:58:18Z source: APNIC inetnum: 103.73.192.0 - 103.73.193.255 netname: IDNIC-DKKN-ID descr: PT Dak Kite Kih Nabil descr: Corporate / Direct Member IDNIC descr: Jalan Hasanudin Pasar Lama Perkantoran Plaza Lantai 1 descr: Kec Serang Kota Serang Propinsi Banten admin-c: EN202-AP tech-c: EN202-AP remarks: Send Spam & Abuse Reports to: [email protected] country: ID mnt-by: MNT-APJII-ID mnt-lower: MAINT-ID-DKKN mnt-irt: IRT-DKKN-ID mnt-routes: MAINT-ID-DKKN status: ALLOCATED PORTABLE last-modified: 2022-08-05T03:00:44Z source: IDNIC irt: IRT-DKKN-ID address: JALAN HASANUDIN PASAR LAMA PERKANTORAN PLAZA LANTAI 1 address: KEC SERANG KOTA SERANG PROPINSI BANTEN e-mail: [email protected] abuse-mailbox: [email protected] admin-c: EN202-AP admin-c: GH1239-AP tech-c: EN202-AP auth: # Filtered mnt-by: MAINT-ID-DKKN last-modified: 2023-01-09T01:48:11Z source: IDNIC person: Eki Naerubi address: Jl.Hasanudin Pasar Lama Perkantoran Plaza Lantai 1 address: Kec Serang Kota Serang Propinsi Banten country: ID phone: +62895612101982 e-mail: [email protected] nic-hdl: EN202-AP mnt-by: MAINT-ID-DKKN last-modified: 2022-08-05T03:00:51Z source: IDNIC route: 103.73.193.0/24 descr: Route Object Fot PT Kihnabil.net descr: Contact Guntur Hippy origin: AS149944 mnt-by: MAINT-ID-DKKN last-modified: 2024-05-18T13:00:23Z source: IDNIC
- references
- https://1275.ru/ioc/gs-25-19131-mirai-botnet-iocs_11023, https://1275.ru/ioc/gs-25-19129-mirai-botnet-iocs_11015, https://1275.ru/ioc/gs-25-19128-mirai-botnet-iocs_11001, https://1275.ru/ioc/gs-25-19127-mirai-botnet-iocs_10989, https://1275.ru/ioc/gs-25-19125-mirai-botnet-iocs_10956, https://1275.ru/ioc/gs-25-19126-mirai-botnet-iocs_10970, https://1275.ru/ioc/gs-25-18122-mirai-botnet-iocs_10913, https://1275.ru/ioc/gs-25-18120-mirai-botnet-iocs_10854, https://1275.ru/ioc/gs-25-18119-mirai-botnet-iocs_10829, https://1275.ru/ioc/gs-25-18118-mirai-botnet-iocs_10825, https://1275.ru/ioc/gs-25-17115-mirai-botnet-iocs-2_10696, https://1275.ru/ioc/gs-25-17115-mirai-botnet-iocs_10682, https://1275.ru/ioc/gs-25-17113-mirai-botnet-iocs_10658, https://1275.ru/ioc/gs-25-17112-mirai-botnet-iocs_10640, https://1275.ru/ioc/gs-25-1490-mirai-botnet-iocs_10200
Export & API
STIX 2.1 Bundle
CSV Export
Permalink
IOC Journey
mediumFirst detected 1 year ago · Last seen 3 months ago
Appeared in 11 threat reports