IOC Radar
IPMediumSignal 82/100

108.181.63.2

Location
United StatesUnited States
Chicago, Illinois
ASN
AS40676
TELUS Communications Inc.
First Seen
May 27, 2026
Last Seen
Jun 12, 2026
May 27
First Seen
16d ago
Jun 12
Last Seen
today
14
Reports
source reports
82%
Confidence
medium
Found in 14 reports. Confidence: medium. · Confidence scores are heuristic. Verify before acting on results.
IPv4 Address
Network layer indicator observed in threat reports.
MISP Category
Network Activity
Confidence
82%
Signal Score
82 / 100
IDS Rule
No
Threat Context
Tags
MITRE ATT&CK

MITRE ATT&CK TTPs

1 techniques

Network Information

CountryUSUnited States
RegionChicago, Illinois
ASNAS40676
OrganizationTELUS Communications Inc.

Feed Intelligence Summary

14 reports82% confidence
14
Source reports
82%
Confidence score
Category tags
abuseactive scanbad reputationbad web botblocklistblocklist_allbotnet activitybrute forcebrute force attackerbrute-forcebruteforcecowrieddosddos attackdigital oceandionaeaexploitation activityexploited hostfattfraud voipftp brute-forcehackinginbound scanindicatoriot securityiot targetednetworknorth americap0fping of deathportscanresearchresearchedscams & fraudscannerscannerssensor-taggedservice scansipsshssh-brutet1595tannerthreat actortpotunited statesusvultrweb app attack

Activity Timeline

1 total obs
Jun 12Jun 12

Threat Activity Heatmap

Less
More
Mon
Wed
Fri
Jun
·
·
·
Jul
·
·
·
Aug
·
·
·
Sep
·
·
·
·
Oct
·
·
·
Nov
·
·
·
Dec
·
·
·
·
Jan
·
·
·
Feb
·
·
·
Mar
·
·
·
·
Apr
·
·
·
May
·
·
·
Jun
24h
1
Minimal
7d
1
Minimal
30d
1
Minimal
3mo
1
Minimal
Threat ScoreHigh Risk
82
SIGNAL
Signal Score
82%
Confidence
14
Reports
First seenMay 27, 2026
Last seenJun 12, 2026
GeolocationUS
CountryUnited States
LocationChicago, Illinois
ASNAS40676
OrgTELUS Communications Inc.
Coords41.8758, -87.6206

VirusTotal

Not checked

WHOIS

description
Auto-submitted attacker IPs from 6-region honeypot mesh (cowrie/dionaea/heralding/suricata).
raw
TELUS Communications Inc. TELUS (NET-108-180-0-0-1) 108.180.0.0 - 108.181.255.255 Psychz Networks PROFUSE (NET-108-181-0-0-1) 108.181.0.0 - 108.181.255.255

Export & API

STIX 2.1 Bundle
CSV Export
Permalink

IOC Journey

medium
First detected 16 days ago · Last seen today
Appeared in 14 threat reports