IPMediumSignal 100/100
122.10.91.37
Location
Hong Kong, Kowloon
ASN
AS134548
HK
First Seen
Feb 27, 2025
Last Seen
Nov 26, 2025
Found in 7 reports. Confidence: medium. · Confidence scores are heuristic. Verify before acting on results.
IPv4 Address
Network layer indicator observed in threat reports.
MISP Category
Network Activity
Confidence
99%
Signal Score
100 / 100
IDS Rule
No
Threat Context
Tags
MITRE ATT&CK
MITRE ATT&CK TTPs
Network Information
Country
Hong Kong
RegionHong Kong, Kowloon
ASNAS134548
OrganizationHK
IP Category
⬢
Hosting
Hosting provider
Feed Intelligence Summary
7 reports99% confidence
7
Source reports
99%
Confidence score
Category tags
abuseaccount compromiseaptapt groupasiaautomotive manufacturingbackdoorbeta versionbig game huntingbig-game huntingbodybotnetbrute forcebrute_forcebuttoncactuscisco securecivil servicesclosecloud servicescloud storagecobalt strikecobaltstrikecode executioncode injectioncommand and controlcommand executioncommunication technologiescontactcookiecouriercredential accesscredential harvestingcredential stuffingcredential_accessctadata accessdata copyingdata encryptiondata exfiltrationdata extortiondata leakdata leak sitedata theftdata transferdistributed attacksdouble extortiondropbox c2electronics manufacturingenergyenergy distributioneuropeexfiltrationextortionfindfooterformftpgermanygithubgithub iocsgovernment technologyhasheshkhong konghtranindicatorindustrial automationindustrial iotindustrial productioningress tool transferinitial accessinput validation bypassinterlockiocsjapanlateral movementlinklotus blossomlotus-blossommainmalicious downloadmalicious softwaremalwaremalware analysismalware distributionmanualmanufacturing technologymediametadata analysismetasploitmobile carriersmobile networksnetworknetwork iocsnetwork securitynetwork traffic analysisnetwork_reconnaissancenorth americaoil & gasopenpath traversalpersistence mechanismsphilippinesphishingphishing attackphp-cgipolandpower generationpower systemsprocess injectionprocess manufacturingprotocol exploitationpublic administrationpublic infrastructurepublic policyquality controlransomwareratregexpandsz dregulatory agenciesreloadremote accessremote access trojanremote servicesrenewable energyresearchedscriptservicedll tsmallsocial engineeringsocial media securityspanssh attackstarsupply chain managementsystem disruptiont1003t1005t1016t1021t1021.001t1027t1030t1040t1041t1049t1055t1059t1059.001t1059.005t1070t1071t1071.001t1076t1078t1078.001t1083t1087t1090t1102t1105t1110t1110.002t1113t1124t1133t1134t1140t1190t1204t1486t1490t1496t1499.001t1499.002t1499.003t1526t1543t1547t1563t1565t1566t1566.001t1566.002t1566.003t1569.002t1573t1574t1595taiwantaowutargeting:japantelecom servicestelecommunicationstelnet threattetraloaderthreat spotlightthreatstop storytrojan malwarettpstwitterunited statesvenom proxyvietnamweb application exploitationworldwide secrets blogwritezimbra
Activity Timeline
Nov 26Nov 26
Threat Activity Heatmap
· Peak: 2025-11-26LessMore
Mon
Wed
Fri
24h
0
Dormant
7d
0
Dormant
30d
0
Dormant
3mo
0
Dormant
Threat ScoreHigh Risk
100
SIGNAL
Signal Score
99%
Confidence
7
Reports
First seenFeb 27, 2025
Last seenNov 26, 2025
GeolocationHK
CountryHong Kong
LocationHong Kong, Kowloon
ASNAS134548
OrgHK
Coords22.3193, 114.1690
Hosting
VirusTotal
Not checked
WHOIS
- description
- CC=HK ASN=AS55933 cloudie limited
Export & API
STIX 2.1 Bundle
CSV Export
Permalink
IOC Journey
mediumFirst detected 1 year ago · Last seen 6 months ago
Appeared in 7 threat reports