IPMediumSignal 31/100
118.233.66.151
Location
Taipei, NWT
ASN
AS38841
KBRO
First Seen
Jan 20, 2025
Last Seen
Apr 5, 2026
Found in 14 reports. Confidence: medium. · Confidence scores are heuristic. Verify before acting on results.
IPv4 Address
Network layer indicator observed in threat reports.
MISP Category
Network Activity
Confidence
31%
Signal Score
31 / 100
IDS Rule
No
Threat Context
Tags
MITRE ATT&CK
MITRE ATT&CK TTPs
Network Information
Country
Taiwan, Province of China
RegionTaipei, NWT
ASNAS38841
OrganizationKBRO
Feed Intelligence Summary
14 reports31% confidence
14
Source reports
31%
Confidence score
Category tags
abuseactive scanactive scanningasiaattackbad reputationbotnetbotnet activitybrute forcebrute force attackcommand and controlcowrie honeypotcredential accesscredential stuffingctadata exfiltrationdata store exposureddosddos attacksdecoy systemdistributed attacksexploitation activityidentity & access exploitationindicatorinjection activityinternet of thingsiot botnetiot securityiot/ics attacklateral movementlogin attemptmalicious activitymalicious softwaremalwaremirai botnetnetworknetwork probingnetwork scanningnetwork securitypassword attacksprocess injectionprotocol exploitationreconnaissanceresearchedscannersftp attackssh attackssh monitoringt1021.004t1040t1041t1055t1071.001t1078t1110t1110.001t1110.002t1110.003t1110.004t1486t1496t1499.002t1499.003t1565t1595t1595.001t1595.002t1595.003taiwantaiwan, province of chinatcp/23telecommunicationstelnet threatthreat actorthreat intelligencetor nodetw
Activity Timeline
Apr 5Apr 5
Threat Activity Heatmap
· Peak: 2026-04-05LessMore
Mon
Wed
Fri
24h
0
Dormant
7d
0
Dormant
30d
0
Dormant
3mo
1
Minimal
Threat ScoreLow Risk
31
SIGNAL
Signal Score
31%
Confidence
14
Reports
First seenJan 20, 2025
Last seenApr 5, 2026
GeolocationTW
CountryTaiwan, Province of China
LocationTaipei, NWT
ASNAS38841
OrgKBRO
Coords25.0504, 121.5324
VirusTotal
Not checked
WHOIS
- description
- 2025-03-01T17:35:11.360Z Honeypot : Cowrie : Source: 118.233.66.151 Data: login attempt [root/ubnt] failed
- references
- https://github.com/telekom-security/tpotce, https://raw.githubusercontent.com/ahamed-rizvan/IOCs/refs/heads/main/Malicous%20IP%20Address.txt
Export & API
STIX 2.1 Bundle
CSV Export
Permalink
IOC Journey
mediumFirst detected 1 year ago · Last seen 2 months ago
Appeared in 14 threat reports