IOC Radar
IPMediumSignal 56/100

118.179.158.84

Location
BangladeshBangladesh
Dhaka, C
ASN
AS23956
Dhakacom Limited
First Seen
Jun 25, 2024
Last Seen
May 8, 2026
Jun 25
First Seen
718d ago
May 8
Last Seen
36d ago
16
Reports
source reports
56%
Confidence
medium
Found in 16 reports. Confidence: medium. · Confidence scores are heuristic. Verify before acting on results.
IPv4 Address
Network layer indicator observed in threat reports.
MISP Category
Network Activity
Confidence
56%
Signal Score
56 / 100
IDS Rule
No
Threat Context
Tags
MITRE ATT&CK

MITRE ATT&CK TTPs

32 techniques

Network Information

CountryBDBangladesh
RegionDhaka, C
ASNAS23956
OrganizationDhakacom Limited

Feed Intelligence Summary

16 reports56% confidence
16
Source reports
56%
Confidence score
Category tags
abuseactive scanactive scanningadbhoney honeypotantispamaptasiaattackbad reputationbad web botbangladeshbdblocklist_allbotnetbotnet activitybrute forcebrute force attackbrute-forcec2command & controlcommand and controlcommunication protocolcowriecowrie honeypotcredential accesscredential harvestingcredential stuffingdata exfiltrationdata exfiltration attemptsdata store exposuredatabase securitydecoy systemdionaea honeypotdistributed attackselasticpot honeypotelasticsearch monitoringexploitation activityexploitation attemptexploitation attemptsftp brute forcehackinghttp brute forceidentity & access exploitationimapimap attackindicatorinjection activityiot securitylog4jmailoney honeypotmalicious activitymalicious softwaremalwaremalware behaviourmalware capturemalware deployment attemptsnetworknetwork scanningnetwork securitynetwork trafficpassword attacksphishingphishing attackphishing trapprocess injectionreconnaissanceremote accessresearchedresource hijackingscannerscanning activitysentrypeer botnetsftpsftp access attemptsftp attacksip brute forcesmtpsmtp attackersocial engineeringspamsshssh attackssh monitoringt1021t1040t1041t1055t1059t1071t1071.001t1078t1110t1110.001t1110.002t1110.003t1110.004t1133t1190t1204.002t1486t1496t1497t1499.001t1499.002t1499.003t1565t1566.001t1566.002t1566.003t1566.004t1583t1595t1595.001t1595.002t1595.003tannertargeting databasetelecommunicationsthreat actorthreat intelligencetor nodevoipvoip attackweb spam

Activity Timeline

1 total obs
May 8May 8

Threat Activity Heatmap

· Peak: 2026-05-08
Less
More
Mon
Wed
Fri
Jun
·
·
·
Jul
·
·
·
Aug
·
·
·
Sep
·
·
·
·
Oct
·
·
·
Nov
·
·
·
Dec
·
·
·
·
Jan
·
·
·
Feb
·
·
·
Mar
·
·
·
·
Apr
·
·
·
May
·
·
·
Jun
24h
0
Dormant
7d
0
Dormant
30d
0
Dormant
3mo
1
Minimal
Threat ScoreMedium Risk
56
SIGNAL
Signal Score
56%
Confidence
16
Reports
First seenJun 25, 2024
Last seenMay 8, 2026
GeolocationBD
CountryBangladesh
LocationDhaka, C
ASNAS23956
OrgDhakacom Limited
Coords23.7272, 90.4093

VirusTotal

Not checked

WHOIS

description
2025-04-12T12:43:31.671Z Honeypot : Heralding : Source: 118.179.158.84 : Username/Password: adminDatos/password Port: 1080 Message: 2025-04-12 12:43:31.671870,a2d28c16-eeb2-4bf3-be62-52c21eb4c07b,c582ceb7-a3e7-4083-bacd-e871a4f499b0,118.179.158.84,56763,99.18.26.18,1080,socks5,adminDatos,password,
raw
inetnum: 118.179.128.0 - 118.179.191.255 netname: AMBERIT-BD descr: Amber IT Limited descr: Internet Service Provider descr: TeleNetwork Solution Provider descr: System Integrator descr: DHAKA country: BD org: ORG-DL5-AP admin-c: SA14-AP tech-c: AILA12-AP abuse-c: AD852-AP status: ALLOCATED PORTABLE remarks: -------------------------------------------------------- remarks: To report network abuse, please contact mnt-irt remarks: For troubleshooting, please contact tech-c and admin-c remarks: Report invalid contact via www.apnic.net/invalidcontact remarks: -------------------------------------------------------- mnt-by: APNIC-HM mnt-lower: MAINT-AMBERIT-BD mnt-routes: MAINT-AMBERIT-BD mnt-irt: IRT-AMBERIT1-BD last-modified: 2025-10-22T23:56:44Z source: APNIC irt: IRT-AMBERIT1-BD address: Amber IT Limited address: Navana Tower (7th Floor) address: 45 Gulshan South C/A,Circle 1 address: Dhaka-1212 address: Bangladesh e-mail: [email protected] abuse-mailbox: [email protected] admin-c: SA14-AP admin-c: FA36-AP tech-c: FA36-AP auth: # Filtered remarks: [email protected] remarks: [email protected] was validated on 2025-10-13 remarks: [email protected] was validated on 2025-10-13 mnt-by: MAINT-AMBERIT-BD last-modified: 2025-11-18T00:38:33Z source: APNIC organisation: ORG-DL5-AP org-name: Amber IT Limited org-type: LIR country: BD address: Navana Tower (7th floor) address: 45 Gulshan South C/A,Circle 1 phone: +8801713396444 fax-no: +88-02-8819221 e-mail: [email protected] mnt-ref: APNIC-HM mnt-by: APNIC-HM last-modified: 2025-10-22T23:56:57Z source: APNIC role: ABUSE DHAKACOMBD country: ZZ address: dhakaCom Limited address: Navana Tower (7th Floor) address: 45 Gulshan South C/A,Circle 1 address: Dhaka-1212 address: Bangladesh phone: +000000000 e-mail: [email protected] admin-c: SA14-AP admin-c: FA36-AP tech-c: FA36-AP nic-hdl: AD852-AP remarks: Generated from irt object IRT-DHAKACOM-BD remarks: [email protected] was validated on 2025-10-13 remarks: [email protected] was validated on 2025-10-13 abuse-mailbox: [email protected] mnt-by: APNIC-ABUSE last-modified: 2025-10-13T07:57:29Z source: APNIC person: Amber IT Limited Administrator nic-hdl: AILA12-AP e-mail: [email protected] address: AmberIT address: Navana Tower(7th Floor), address: 45 Gulshan 1, Dhaka-1212 address: Bangladesh phone: +8801713396444 fax-no: +88-02-8819221 country: BD mnt-by: MAINT-AMBERIT-BD last-modified: 2025-10-22T23:56:40Z source: APNIC person: Showkat Aziz address: House 02, Road 09, Block G address: Banani, Dhaka 1213 country: BD phone: +880-2-9550555 e-mail: [email protected] nic-hdl: SA14-AP mnt-by: MAINT-BD-AMBERIT last-modified: 2015-08-24T13:39:57Z source: APNIC route: 118.179.158.0/24 origin: AS23956 descr: Dhakacom Limited Navana Tower (7th floor) 45 Gulshan South C/A,Circle 1 mnt-by: MAINT-AMBERIT-BD last-modified: 2025-10-22T23:56:47Z source: APNIC
references
https://github.com/telekom-security/tpotce

Export & API

STIX 2.1 Bundle
CSV Export
Permalink

IOC Journey

medium
First detected 1 year ago · Last seen 1 month ago
Appeared in 16 threat reports