IOC Radar
IPMediumSignal 72/100

109.168.7.119

Location
ItalyItaly
Campitello di Fassa, Trentino-Alto Adige
ASN
AS5602
Irideos IT Ptp93
First Seen
Nov 12, 2024
Last Seen
May 14, 2026
Nov 12
First Seen
579d ago
May 14
Last Seen
32d ago
7
Reports
source reports
72%
Confidence
medium
Found in 7 reports. Confidence: medium. · Confidence scores are heuristic. Verify before acting on results.
IPv4 Address
Network layer indicator observed in threat reports.
MISP Category
Network Activity
Confidence
72%
Signal Score
72 / 100
IDS Rule
No
Threat Context
Tags
MITRE ATT&CK

MITRE ATT&CK TTPs

7 techniques

Network Information

CountryITItaly
RegionCampitello di Fassa, Trentino-Alto Adige
ASNAS5602
OrganizationIrideos IT Ptp93

Feed Intelligence Summary

7 reports72% confidence
7
Source reports
72%
Confidence score
Category tags
abuseactive scanactive scanningbad reputationbrute forcebrute force attackbrute force attackercredential accesscredential stuffingeuropeexploitation activityexploited hosthackingidentity & access exploitationindicatorititalynetworkpassword attacksportscanreconnaissanceresearchedscannerscannersservice scant1110.001t1110.002t1110.003t1110.004t1595.001t1595.002t1595.003vultr

Activity Timeline

1 total obs
May 14May 14

Threat Activity Heatmap

· Peak: 2026-05-14
Less
More
Mon
Wed
Fri
Jun
·
·
Jul
·
·
·
Aug
·
·
·
Sep
·
·
·
·
Oct
·
·
·
Nov
·
·
·
Dec
·
·
·
·
Jan
·
·
·
Feb
·
·
·
Mar
·
·
·
·
Apr
·
·
·
May
·
·
·
Jun
·
24h
0
Dormant
7d
0
Dormant
30d
0
Dormant
3mo
1
Minimal
Threat ScoreHigh Risk
72
SIGNAL
Signal Score
72%
Confidence
7
Reports
First seenNov 12, 2024
Last seenMay 14, 2026
GeolocationIT
CountryItaly
LocationCampitello di Fassa, Trentino-Alto Adige
ASNAS5602
OrgIrideos IT Ptp93
Coords46.4758, 11.7411

VirusTotal

Not checked

WHOIS

description
IPv4 hosts detected port scanning Vultr Tokyo (Japan) honeypot
raw
inetnum: 109.168.7.0 - 109.168.7.255 netname: IRIDEOS-IT-PTP93 descr: IP per xDSL GBE country: IT admin-c: ICR22-RIPE tech-c: ICR22-RIPE status: ASSIGNED PA mnt-by: AS5602-MNT created: 2011-02-07T10:32:32Z last-modified: 2019-12-11T14:30:58Z source: RIPE # Filtered role: Retelit Contact Role address: Retelit Digital Services S.p.A. address: Via Pola, 9 address: I-20124 Milano - ITALY phone: +39 02 438191 remarks: Role account for Retelit remarks: **************************************** remarks: * For ABUSE/SPAM/INTRUSION issues * remarks: * please send mail to [email protected] * remarks: **************************************** org: ORG-TM2-RIPE admin-c: SC23232-RIPE admin-c: FG13235-RIPE tech-c: SC1267-RIPE tech-c: SM1688-RIPE tech-c: SC27847-RIPE nic-hdl: ICR22-RIPE abuse-mailbox: [email protected] mnt-by: RETELIT-MNT created: 2019-03-06T09:12:07Z last-modified: 2025-11-04T15:11:24Z source: RIPE # Filtered route: 109.168.0.0/18 descr: Irideos S.p.A. origin: AS3302 mnt-by: IRIDEOS-MNT created: 2023-02-17T10:35:37Z last-modified: 2023-02-17T10:35:37Z source: RIPE route: 109.168.0.0/18 descr: Irideos Spa origin: AS5602 mnt-by: AS5602-MNT created: 2020-05-26T03:01:55Z last-modified: 2020-05-26T03:01:55Z source: RIPE

Export & API

STIX 2.1 Bundle
CSV Export
Permalink

IOC Journey

medium
First detected 1 year ago · Last seen 1 month ago
Appeared in 7 threat reports