IOC Radar
IPMediumSignal 37/100

121.101.134.202

Location
IndonesiaIndonesia
Wonosobo, JT
ASN
AS131706
PT SELARAS CITRA TERABIT
First Seen
May 24, 2021
Last Seen
May 27, 2026
May 24
First Seen
1857d ago
May 27
Last Seen
28d ago
14
Reports
source reports
37%
Confidence
medium
Found in 14 reports. Confidence: medium. · Confidence scores are heuristic. Verify before acting on results.
IPv4 Address
Network layer indicator observed in threat reports.
MISP Category
Network Activity
Confidence
37%
Signal Score
37 / 100
IDS Rule
No
Threat Context
Tags
MITRE ATT&CK

MITRE ATT&CK TTPs

26 techniques

Network Information

CountryIDIndonesia
RegionWonosobo, JT
ASNAS131706
OrganizationPT SELARAS CITRA TERABIT

IP Category

Proxy
Proxy server

Feed Intelligence Summary

14 reports37% confidence
14
Source reports
37%
Confidence score
Category tags
abuseaccess controlactive scanactive scanningasiabad reputationbotnetbotnet activitybotnet iocsbotnet miraibotnet propagationbrute forcecommand and controlcommunication protocolconnected devicescredential accesscredential stuffingdata exfiltrationdata store exposureddosddos attackddos attacksdenial of servicedevice managementdistributed attacksexploitationexploitation activityexploited hostgorillabothackingididentity & access exploitationindicatorindonesiaindustrial iotinitial accessinjection activityinternet of thingsiocsiot analyticsiot applicationsiot botnetiot devicesiot platformsiot securityiot/ics attackipv4irclinuxmalicious softwaremalwaremirai botnetmirai internetnetworknetwork attacksnetwork protocolnetwork scanningnetwork securityoutlawprocess injectionprotocol exploitationproxyreconnaissanceresearchedscannerscanning activitysecurity policysmart devicesssh attackt1021t1021.001t1040t1053.005t1055t1059t1059.004t1071t1071.001t1078t1078.001t1105t1110.002t1190t1203t1486t1496t1497t1497.001t1498.001t1499.002t1499.003t1565t1595.001t1595.002t1595.003tcp protocoltelnet threatthingsthreat actorthreat preventiontor nodetwitterxmrig

Activity Timeline

1 total obs
May 27May 27

Threat Activity Heatmap

· Peak: 2026-05-27
Less
More
Mon
Wed
Fri
Jun
·
Jul
·
·
·
Aug
·
·
·
Sep
·
·
·
·
Oct
·
·
·
Nov
·
·
·
Dec
·
·
·
·
Jan
·
·
·
Feb
·
·
·
Mar
·
·
·
·
Apr
·
·
·
May
·
·
·
Jun
·
·
24h
0
Dormant
7d
0
Dormant
30d
1
Minimal
3mo
1
Minimal
Threat ScoreLow Risk
37
SIGNAL
Signal Score
37%
Confidence
14
Reports
First seenMay 24, 2021
Last seenMay 27, 2026
GeolocationID
CountryIndonesia
LocationWonosobo, JT
ASNAS131706
OrgPT SELARAS CITRA TERABIT
Coords-7.5356, 110.5961
Proxy

VirusTotal

Not checked

WHOIS

raw
inetnum: 121.101.128.0 - 121.101.135.255 netname: TERABIT-ID descr: PT SELARAS CITRA TERABIT descr: Internet Service Provider descr: Jl Mahakam III No 66B descr: Kedungsari, Magelang Utara descr: Magelang 56114 country: ID admin-c: RAR4-AP admin-c: PM454-AP tech-c: RAR4-AP tech-c: PM454-AP status: ALLOCATED PORTABLE remarks: Send Spam & Abuse Reports to: [email protected] mnt-by: MNT-APJII-ID mnt-lower: MAINT-ID-TERABIT mnt-routes: MAINT-ID-TERABIT mnt-irt: IRT-TERABIT-ID last-modified: 2013-04-30T09:43:15Z source: APNIC irt: IRT-TERABIT-ID address: PT SELARAS CITRA TERABIT address: Jl Mahakam III No 66B address: Kedungsari, Magelang Utara address: Magelang 56114 e-mail: [email protected] abuse-mailbox: [email protected] admin-c: RAR4-AP tech-c: RAR4-AP auth: # Filtered mnt-by: MAINT-ID-TERABIT last-modified: 2018-05-31T22:29:38Z source: APNIC person: Pieter Maharia address: Caren Lor No.11 address: Bener, Purworejo 54183 address: Jawa Tengah country: ID phone: +62-275-324609 fax-no: +62-275-324609 e-mail: [email protected] nic-hdl: PM454-AP mnt-by: MAINT-ID-TERABIT last-modified: 2012-01-09T03:24:47Z source: APNIC person: Rozaq Arif Rofian address: Jl. Surat No.5 Mungkid II address: Mungkid, Magelang 56551 address: Jawa Tengah country: ID phone: +62-293-5530644 fax-no: +62-293-3280769 e-mail: [email protected] nic-hdl: RAR4-AP mnt-by: MAINT-ID-TERABIT last-modified: 2012-01-09T03:24:08Z source: APNIC inetnum: 121.101.134.0 - 121.101.134.255 netname: TERABIT-ID-JAWA descr: Infrastruktur Terabit Jawa country: ID admin-c: RAR4-AP tech-c: RAR4-AP status: ASSIGNED NON-PORTABLE mnt-by: MAINT-ID-TERABIT mnt-irt: IRT-TERABIT-ID last-modified: 2022-10-18T11:44:33Z source: IDNIC irt: IRT-TERABIT-ID address: PT SELARAS CITRA TERABIT address: Jl Mahakam III No 66B address: Kedungsari, Magelang Utara address: Magelang 56114 e-mail: [email protected] abuse-mailbox: [email protected] admin-c: RAR4-AP tech-c: RAR4-AP auth: # Filtered mnt-by: MAINT-ID-TERABIT last-modified: 2012-01-12T02:19:50Z source: IDNIC person: Rozaq Arif Rofian address: Jl. Surat No.5 Mungkid II address: Mungkid, Magelang 56551 address: Jawa Tengah country: ID phone: +62-293-5530644 fax-no: +62-293-3280769 e-mail: [email protected] nic-hdl: RAR4-AP mnt-by: MAINT-ID-TERABIT last-modified: 2012-01-09T03:24:08Z source: IDNIC
references
https://1275.ru/ioc/gs-25-19131-mirai-botnet-iocs_11023, https://1275.ru/ioc/gs-25-19129-mirai-botnet-iocs_11015, https://1275.ru/ioc/gs-25-19128-mirai-botnet-iocs_11001, https://1275.ru/ioc/gs-25-19127-mirai-botnet-iocs_10989, https://1275.ru/ioc/gs-25-19125-mirai-botnet-iocs_10956, https://1275.ru/ioc/gs-25-19126-mirai-botnet-iocs_10970, https://1275.ru/ioc/gs-25-18122-mirai-botnet-iocs_10913, https://1275.ru/ioc/gs-25-18120-mirai-botnet-iocs_10854, https://1275.ru/ioc/gs-25-18119-mirai-botnet-iocs_10829, https://1275.ru/ioc/gs-25-18118-mirai-botnet-iocs_10825, https://1275.ru/ioc/gs-25-17115-mirai-botnet-iocs-2_10696, https://1275.ru/ioc/gs-25-17115-mirai-botnet-iocs_10682, https://1275.ru/ioc/gs-25-17113-mirai-botnet-iocs_10658, https://1275.ru/ioc/gs-25-17112-mirai-botnet-iocs_10640, https://1275.ru/ioc/gs-25-1490-mirai-botnet-iocs_10200

Export & API

STIX 2.1 Bundle
CSV Export
Permalink

IOC Journey

medium
First detected 5 years ago · Last seen 28 days ago
Appeared in 14 threat reports