IOC Radar
IPMediumSignal 46/100

111.90.151.167

Location
MalaysiaMalaysia
Kuala Lumpur, Wilayah Persekutuan Kuala Lumpur
ASN
AS45839
Shinjiru Technology Sdn Bhd
First Seen
Jun 6, 2023
Last Seen
Jun 7, 2026
Jun 6
First Seen
1104d ago
Jun 7
Last Seen
7d ago
8
Reports
source reports
46%
Confidence
medium
Found in 8 reports. Confidence: medium. · Confidence scores are heuristic. Verify before acting on results.
IPv4 Address
Network layer indicator observed in threat reports.
MISP Category
Network Activity
Confidence
46%
Signal Score
46 / 100
IDS Rule
No
Threat Context
Tags
MITRE ATT&CK

MITRE ATT&CK TTPs

99 techniques

Network Information

CountryMYMalaysia
RegionKuala Lumpur, Wilayah Persekutuan Kuala Lumpur
ASNAS45839
OrganizationShinjiru Technology Sdn Bhd

Feed Intelligence Summary

8 reports46% confidence
8
Source reports
46%
Confidence score
Category tags
abuseactive scanningaerospace & defenseapi callapplication layer protocolaptapt28australiabitcoinblockchainbotnetbrute forcebrute force attackc servercivil servicescobaltstrikecode executioncode injectioncommand and controlcommand executioncommodity contracts intermediationcommunication technologiescredential accesscredential harvestingcredential stuffingcredential theftcross-site scriptingcrypto exchangecrypto miningcrypto walletcryptocurrencycvecyber intelligencedata encryptiondata exfiltrationdecentralized financedefensedefense contractingdefense logisticsdefense systemsdefense technologydigital currencydistributed attackseastern europeeseteset researcheuropeeurope/asiaexploitexploitationextortionfancy bearfigurefirstfleet managementfrancefreight servicesftp brute forcegovernment technologyhasheshordeimpactindicatorinfrastructure acquisitionreconnaissanceinhibit systemiocsitalylateral movementlojaxmalaysiamalicious softwaremalwaremaritime transportmdaemonmilitary operationsmobile carriersmobile networksnational securitynetworknetwork reconnaissancenetwork scanningnetwork service scanningoperating systemoperation roundpresspaexecparispasspassenger transportationpassword attacksphishingphishing attackprocess injectionpsexecpublic administrationpublic infrastructurepublic policyqakbotrail transportransom demandransomhubransomwareransomware-as-a-servicereconnaissanceregulatory agenciesremote accessremote servicesresearchedrussiasednitsiemsocial engineeringsofacysoftware exploitationspearphishingspypress cspypress.hordespypress.mdaemonspypress.roundcubespypress.zimbrassh attackstrongsystem discoverysystem disruptionsystem locationt1003t1003.001t1005t1018t1020t1021.001t1027t1027.003t1033t1041t1046t1047t1053.005t1055t1056t1057t1059t1059.001t1059.003t1059.004t1059.007t1068t1069.001t1070t1070.001t1071t1071.001t1076t1078t1078.002t1078.004t1082t1083t1087t1105t1106t1110t1110.001t1110.002t1110.003t1110.004t1112t1114t1114.001t1119t1120t1132t1133t1134t1134.001t1134.002t1134.004t1135t1140t1187t1189t1190t1192t1199t1203t1204t1204.001t1204.002t1218t1218.011t1486t1490t1496t1497t1499.002t1499.003t1539t1547.001t1556t1562.001t1562.004t1563t1565t1566t1566.001t1566.002t1566.003t1566.004t1569.002t1574t1574.001t1583t1587t1587.001t1588t1588.002t1589t1590.001t1595t1595.001t1595.002t1595.003t1608.001t1614telecom servicestelecommunicationstipstransportation and warehousingtransportation infrastructuretransportation technologyukrainevanhelsingvanhelsing ransomware emulationvanhelsing ransomware simulationvulnerabilityweb exploitationwebmailwebmail server compromisewindows apixsszero-day exploitzero-day vulnerabilityzimbrazimbra exploit

Activity Timeline

1 total obs
Jun 7Jun 7

Threat Activity Heatmap

· Peak: 2026-06-07
Less
More
Mon
Wed
Fri
Jun
·
·
·
Jul
·
·
·
Aug
·
·
·
Sep
·
·
·
·
Oct
·
·
·
Nov
·
·
·
Dec
·
·
·
·
Jan
·
·
·
Feb
·
·
·
Mar
·
·
·
·
Apr
·
·
·
May
·
·
·
Jun
24h
0
Dormant
7d
0
Dormant
30d
1
Minimal
3mo
1
Minimal
Threat ScoreMedium Risk
46
SIGNAL
Signal Score
46%
Confidence
8
Reports
First seenJun 6, 2023
Last seenJun 7, 2026
GeolocationMY
CountryMalaysia
LocationKuala Lumpur, Wilayah Persekutuan Kuala Lumpur
ASNAS45839
OrgShinjiru Technology Sdn Bhd
Coords2.5000, 112.5000

VirusTotal

Not checked

WHOIS

description
CC=MY ASN=AS45839 shinjiru technology sdn bhd
raw
inetnum: 111.90.128.0 - 111.90.159.255 netname: SHINJIRU-MY descr: Shinjiru Technology Sdn Bhd country: MY country: MY org: ORG-STSB2-AP admin-c: STSB2-AP tech-c: STSB2-AP abuse-c: AS2566-AP status: ALLOCATED PORTABLE mnt-by: APNIC-HM mnt-lower: MAINT-SHINJIRU-MY mnt-routes: MAINT-SHINJIRU-MY mnt-irt: IRT-SHINJIRU-MY last-modified: 2020-07-14T16:45:53Z source: APNIC irt: IRT-SHINJIRU-MY address: 19-2, Wisma Laxton, Jln Desa, Tmn Desa, Jln Klang Lama,, Kuala Lumpur Wilayah Persekutuan 58100 e-mail: [email protected] abuse-mailbox: [email protected] admin-c: STSB2-AP tech-c: STSB2-AP auth: # Filtered remarks: [email protected] was validated on 2024-12-19 remarks: [email protected] was validated on 2025-03-12 mnt-by: MAINT-SHINJIRU-MY last-modified: 2025-03-12T02:03:37Z source: APNIC organisation: ORG-STSB2-AP org-name: Shinjiru Technology Sdn Bhd org-type: LIR country: MY address: No. 19-2, Wisma Laxton, Jalan Desa, Taman Desa phone: +60379871191 fax-no: +60379872191 e-mail: [email protected] mnt-ref: APNIC-HM mnt-by: APNIC-HM last-modified: 2024-02-02T12:58:58Z source: APNIC role: ABUSE SHINJIRUMY country: ZZ address: 19-2, Wisma Laxton, Jln Desa, Tmn Desa, Jln Klang Lama,, Kuala Lumpur Wilayah Persekutuan 58100 phone: +000000000 e-mail: [email protected] admin-c: STSB2-AP tech-c: STSB2-AP nic-hdl: AS2566-AP remarks: Generated from irt object IRT-SHINJIRU-MY remarks: [email protected] was validated on 2024-12-19 remarks: [email protected] was validated on 2025-03-12 abuse-mailbox: [email protected] mnt-by: APNIC-ABUSE last-modified: 2025-03-12T02:03:56Z source: APNIC role: Shinjiru Technology Sdn Bhd administrator address: 19-2, Wisma Laxton, Jln Desa, Tmn Desa, Jln Klang Lama,, Kuala Lumpur Wilayah Persekutuan 58100 country: MY phone: +60379871191 fax-no: +60379871191 e-mail: [email protected] admin-c: STSB2-AP tech-c: STSB2-AP nic-hdl: STSB2-AP mnt-by: MAINT-SHINJIRU-MY last-modified: 2023-02-03T07:37:37Z source: APNIC route: 111.90.151.0/24 origin: AS19324 descr: Shinjiru Technology Sdn Bhd 19-2, Wisma Laxton, Jln Desa, Tmn Desa, Jln Klang Lama, mnt-by: MAINT-SHINJIRU-MY last-modified: 2020-09-11T06:27:34Z source: APNIC route: 111.90.151.0/24 origin: AS45839 descr: Shinjiru Technology Sdn Bhd 19-2, Wisma Laxton, Jln Desa, Tmn Desa, Jln Klang Lama, mnt-by: MAINT-SHINJIRU-MY last-modified: 2021-01-30T23:41:13Z source: APNIC
references
https://www.welivesecurity.com/en/eset-research/operation-roundpress, https://twitter.com/drb_ra/status/1665909837744549891, https://twitter.com/drb_ra/status/1665910228800372736, https://twitter.com/drb_ra/status/1666009952064765952, https://twitter.com/drb_ra/status/1666010028015271937, https://twitter.com/drb_ra/status/1666010071984230401, https://twitter.com/drb_ra/status/1666010093014380547, https://twitter.com/drb_ra/status/1666010198769639424, https://twitter.com/drb_ra/status/1666099073823408128, https://twitter.com/drb_ra/status/1666099219592269827, https://twitter.com/drb_ra/status/1666099373070221315, https://twitter.com/drb_ra/status/1666099412274384897, https://twitter.com/drb_ra/status/1666099475973300225, https://twitter.com/drb_ra/status/1666099653304098818, https://twitter.com/drb_ra/status/1666099693573767174, https://twitter.com/drb_ra/status/1666099745801265153, https://twitter.com/drb_ra/status/1666099793314344960, https://twitter.com/drb_ra/status/1666099861324804096, https://twitter.com/drb_ra/status/1666100051691593729, https://twitter.com/drb_ra/status/1666100141013495808, https://twitter.com/drb_ra/status/1666100253609836544, https://twitter.com/drb_ra/status/1666100319615344641, https://twitter.com/drb_ra/status/1666100384694149122, https://twitter.com/drb_ra/status/1666115602077843456, https://twitter.com/drb_ra/status/1666115630687301632, https://twitter.com/drb_ra/status/1666115657031725057, https://twitter.com/drb_ra/status/1666115673607618561, https://twitter.com/drb_ra/status/1666115701701062662, https://twitter.com/drb_ra/status/1666115737080016901, https://twitter.com/drb_ra/status/1666115762996621314, https://twitter.com/drb_ra/status/1666115792490967045, https://twitter.com/drb_ra/status/1666115818222940162, https://twitter.com/drb_ra/status/1666115842612908033, https://twitter.com/drb_ra/status/1666115886921531393, https://twitter.com/drb_ra/status/1666115908299890689, https://twitter.com/drb_ra/status/1666115935126663172, https://twitter.com/drb_ra/status/1666115970543374336, https://twitter.com/drb_ra/status/1666115996619350018, https://twitter.com/drb_ra/status/1666116026365276167, https://twitter.com/drb_ra/status/1666116054924288004, https://twitter.com/drb_ra/status/1666116082053136384, https://twitter.com/drb_ra/status/1666116104178085890, https://twitter.com/drb_ra/status/1666116138231529472, https://twitter.com/drb_ra/status/1666116166559858689, https://twitter.com/drb_ra/status/1666116195811041280, https://twitter.com/drb_ra/status/1666116215130009602, https://twitter.com/drb_ra/status/1666116234033627137, https://twitter.com/drb_ra/status/1666116262236246016, https://twitter.com/drb_ra/status/1666116283899822081, https://twitter.com/drb_ra/status/1666116305097818112, https://twitter.com/drb_ra/status/1666116323598909442, https://twitter.com/drb_ra/status/1666154435595075593, https://twitter.com/drb_ra/status/1666154485566124034, https://twitter.com/drb_ra/status/1666154563181608988, https://twitter.com/drb_ra/status/1666154589312122900, https://twitter.com/drb_ra/status/1666154601752428554, https://twitter.com/drb_ra/status/1666155017676390402, https://twitter.com/drb_ra/status/1666155041495961600, https://twitter.com/drb_ra/status/1666155091055747077, https://twitter.com/drb_ra/status/1666155194982203419, https://twitter.com/drb_ra/status/1666155207598776320, https://twitter.com/drb_ra/status/1666155235419488265, https://twitter.com/drb_ra/status/1666155385978224649, https://twitter.com/drb_ra/status/1666155444513931282, https://twitter.com/drb_ra/status/1666155460414652416, https://twitter.com/drb_ra/status/1666155476961067021, https://twitter.com/drb_ra/status/1666155495697022995, https://twitter.com/drb_ra/status/1666155558494171136, https://twitter.com/drb_ra/status/1666155667818676237, https://twitter.com/drb_ra/status/1666155680305119262, https://twitter.com/drb_ra/status/1666155689767469090, https://twitter.com/drb_ra/status/1666155699640909824, https://twitter.com/drb_ra/status/1666155717789614099, https://twitter.com/drb_ra/status/1666155728032104474, https://twitter.com/drb_ra/status/1666155737117077504, https://twitter.com/drb_ra/status/1666155753449684992, https://twitter.com/drb_ra/status/1666155776585465856, https://twitter.com/drb_ra/status/1666155791248654352, https://twitter.com/drb_ra/status/1666155801382092838, https://twitter.com/drb_ra/status/1666155812580884493, https://twitter.com/drb_ra/status/1666155822416646144, https://twitter.com/drb_ra/status/1666155863826890771, https://twitter.com/drb_ra/status/1666155909909708821, https://twitter.com/drb_ra/status/1666177804117868544, https://t.me/RedPacketSecurity, https://www.redpacketsecurity.com/brute-ratel-c4-detected-35-79-109-52-port-80/, https://www.redpacketsecurity.com/brute-ratel-c4-detected-13-230-243-50-port-80/, https://www.redpacketsecurity.com/cobalt-stike-beacon-detected-47-115-230-18-port-80/, https://www.redpacketsecurity.com/cobalt-stike-beacon-detected-175-178-113-63-port-4433/, https://www.redpacketsecurity.com/cobalt-stike-beacon-detected-39-105-143-177-port-7777/, https://www.redpacketsecurity.com/cobalt-stike-beacon-detected-213-232-112-218-port-80/, https://www.redpacketsecurity.com/cobalt-stike-beacon-detected-194-50-153-1-port-80/, https://www.redpacketsecurity.com/cobalt-stike-beacon-detected-107-182-25-147-port-666/, https://www.redpacketsecurity.com/cobalt-stike-beacon-detected-82-156-28-224-port-8899/, https://www.redpacketsecurity.com/cobalt-stike-beacon-detected-43-226-152-98-port-80/, https://www.redpacketsecurity.com/cobalt-stike-beacon-detected-116-62-188-205-port-6666/, https://www.redpacketsecurity.com/cobalt-stike-beacon-detected-1-14-76-152-port-8090/, https://www.redpacketsecurity.com/cobalt-stike-beacon-detected-43-138-215-2-port-443/, https://www.redpacketsecurity.com/cobalt-stike-beacon-detected-176-113-71-229-port-9443/, https://www.redpacketsecurity.com/cobalt-stike-beacon-detected-74-235-194-94-port-443/, https://www.redpacketsecurity.com/cobalt-stike-beacon-detected-124-222-64-203-port-80/, https://www.redpacketsecurity.com/cobalt-stike-beacon-detected-111-90-151-167-port-80/, https://www.redpacketsecurity.com/cobalt-stike-beacon-detected-175-178-42-176-port-9999/, https://www.redpacketsecurity.com/cobalt-stike-beacon-detected-194-68-26-49-port-10443/, https://www.redpacketsecurity.com/cobalt-stike-beacon-detected-101-200-197-112-port-443/, https://www.redpacketsecurity.com/cobalt-stike-beacon-detected-20-190-42-122-port-443/, https://www.redpacketsecurity.com/cobalt-stike-beacon-detected-1-14-63-190-port-444/, https://www.redpacketsecurity.com/cobalt-stike-beacon-detected-120-48-83-89-port-443/, https://www.redpacketsecurity.com/cobalt-stike-beacon-detected-84-54-50-144-port-80/, https://www.redpacketsecurity.com/cobalt-stike-beacon-detected-43-153-222-28-port-4646/, https://www.redpacketsecurity.com/cobalt-stike-beacon-detected-192-241-156-106-port-80/, https://www.redpacketsecurity.com/cobalt-stike-beacon-detected-123-60-2-196-port-8033/, https://www.redpacketsecurity.com/cobalt-stike-beacon-detected-213-232-112-218-port-443/, https://www.redpacketsecurity.com/cobalt-stike-beacon-detected-166-0-95-43-port-8443/, https://www.redpacketsecurity.com/cobalt-stike-beacon-detected-120-26-192-139-port-443/, https://www.redpacketsecurity.com/cobalt-stike-beacon-detected-47-98-220-25-port-9000/, https://www.redpacketsecurity.com/cobalt-stike-beacon-detected-120-79-3-140-port-9010/, https://www.redpacketsecurity.com/cobalt-stike-beacon-detected-121-36-242-11-port-80/, https://www.redpacketsecurity.com/cobalt-stike-beacon-detected-106-75-29-225-port-80/, https://www.redpacketsecurity.com/cobalt-stike-beacon-detected-43-138-231-237-port-50050/, https://www.redpacketsecurity.com/cobalt-stike-beacon-detected-175-178-90-192-port-6605/, https://www.redpacketsecurity.com/cobalt-stike-beacon-detected-45-81-39-175-port-10443/, https://www.redpacketsecurity.com/cobalt-stike-beacon-detected-81-68-215-53-port-4443/

Export & API

STIX 2.1 Bundle
CSV Export
Permalink

IOC Journey

medium
First detected 3 years ago · Last seen 7 days ago
Appeared in 8 threat reports