IOC Radar
IPMediumSignal 87/100

107.173.37.85

Location
United StatesUnited States
Los Angeles, California
ASN
AS36352
ColoCrossing
First Seen
Oct 21, 2023
Last Seen
May 31, 2026
Oct 21
First Seen
964d ago
May 31
Last Seen
11d ago
16
Reports
source reports
87%
Confidence
medium
Found in 16 reports. Confidence: medium. · Confidence scores are heuristic. Verify before acting on results.
IPv4 Address
Network layer indicator observed in threat reports.
MISP Category
Network Activity
Confidence
87%
Signal Score
87 / 100
IDS Rule
No
Threat Context
Tags
MITRE ATT&CK

MITRE ATT&CK TTPs

1 techniques

Network Information

CountryUSUnited States
RegionLos Angeles, California
ASNAS36352
OrganizationColoCrossing

Feed Intelligence Summary

16 reports87% confidence
16
Source reports
87%
Confidence score
Category tags
abuseactive scanbad reputationbad web botbotnet activitybrute forcebrute force attackerbrute-forcebruteforcecowriecredential accesscredential stuffingddosddos attackdigital oceandionaeaexploitexploitation activityfattftp brute-forcehackingidentity & access exploitationinjection activitynetworknorth americap0fphishingportscanproxyresearchedscannerscannerssensor-taggedservice scanspamsql injectionsshssh attackt1110.002tannertargeting databasetpotunited statesusvulnerability scanvulnerability-exploitationvultrweb app attackweb spam

Activity Timeline

1 total obs
May 31May 31

Threat Activity Heatmap

· Peak: 2026-05-31
Less
More
Mon
Wed
Fri
Jun
·
·
·
Jul
·
·
·
Aug
·
·
·
Sep
·
·
·
·
Oct
·
·
·
Nov
·
·
·
Dec
·
·
·
·
Jan
·
·
·
Feb
·
·
·
Mar
·
·
·
·
Apr
·
·
·
May
·
·
·
Jun
24h
0
Dormant
7d
0
Dormant
30d
1
Minimal
3mo
1
Minimal
Threat ScoreHigh Risk
87
SIGNAL
Signal Score
87%
Confidence
16
Reports
First seenOct 21, 2023
Last seenMay 31, 2026
GeolocationUS
CountryUnited States
LocationLos Angeles, California
ASNAS36352
OrgColoCrossing
Coords34.0549, -118.2430

VirusTotal

Not checked

WHOIS

description
The following is the full list of names given to Vye32GsS2g38eKhmaKrLdDjgrnf2YBT4/FGx8SNCa4txePA
raw
NetRange: 107.172.0.0 - 107.175.255.255 CIDR: 107.172.0.0/14 NetName: CC-17 NetHandle: NET-107-172-0-0-1 Parent: NET107 (NET-107-0-0-0-0) NetType: Direct Allocation OriginAS: Organization: HostPapa (HOSTP-7) RegDate: 2013-12-27 Updated: 2024-02-02 Comment: Geofeed https://geofeeds.oniaas.io/geofeeds.csv Ref: https://rdap.arin.net/registry/ip/107.172.0.0 OrgName: HostPapa OrgId: HOSTP-7 Address: 325 Delaware Avenue Address: Suite 300 City: Buffalo StateProv: NY PostalCode: 14202 Country: US RegDate: 2016-06-06 Updated: 2025-10-05 Ref: https://rdap.arin.net/registry/entity/HOSTP-7 OrgAbuseHandle: NETAB23-ARIN OrgAbuseName: NETABUSE OrgAbusePhone: +1-905-315-3455 OrgAbuseEmail: [email protected] OrgAbuseRef: https://rdap.arin.net/registry/entity/NETAB23-ARIN OrgTechHandle: NETTE9-ARIN OrgTechName: NETTECH OrgTechPhone: +1-905-315-3455 OrgTechEmail: [email protected] OrgTechRef: https://rdap.arin.net/registry/entity/NETTE9-ARIN RTechHandle: NETTE11-ARIN RTechName: NETTECH-COLOCROSSING RTechPhone: +1-800-518-9716 RTechEmail: [email protected] RTechRef: https://rdap.arin.net/registry/entity/NETTE11-ARIN RAbuseHandle: NETAB27-ARIN RAbuseName: NETABUSE-COLOCROSSING RAbusePhone: +1-800-518-9716 RAbuseEmail: [email protected] RAbuseRef: https://rdap.arin.net/registry/entity/NETAB27-ARIN

Export & API

STIX 2.1 Bundle
CSV Export
Permalink

IOC Journey

medium
First detected 2 years ago · Last seen 11 days ago
Appeared in 16 threat reports